There are 4 repositories under bof topic.
Situational Awareness commands implemented using Beacon Object Files
An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memory.
Automated Hosting Information Hunting Tool - Windows 主机信息自动化狩猎工具
Loading BOF & ShellCode without executable permission memory.
WindowSpy is a Cobalt Strike Beacon Object File meant for automated and targeted user surveillance.
bof-launcher - library for loading, executing and in-memory masking BOFs on Windows (x64, x86) and Linux (x64, x86, aarch64, arm). Ready to use in C/Zig/Rust/Go/C++ applications.
Dumping SAM / SECURITY / SYSTEM registry hives with a Beacon Object File
Take a screenshot without injection for Cobalt Strike
Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.
Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations
Manual Map DLL injection implemented with Cobalt Strike's Beacon Object Files.
Cobalt Strike (CS) Beacon Object File (BOF) for kernel exploitation using AMD's Ryzen Master Driver (version 17).
Magical obfuscator, supports obfuscating EXE, BOF, and ShellCode.
An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are available.
Small toolkit for extracting information and dumping sensitive strings from Windows processes
Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.
Rust template/library for implementing your own COFF loader
Windows Thread Pool Injection Havoc Implementation
C# .Net 5.0 project to build BOF (Beacon Object Files) in mass
C# .Net Framework program that uses RunspaceFactory for Powershell command execution.
This is the source of our Return Oriented Programming tool.
A repo containing exercises and notes for the "Laboratorio di Sicurezza Informatica" course at UniBo
Repository to gather the BOF files I will be developing
Collection of personal Beacon Object Files (BOFs)
Python inline shellcode injector that could be used to run BOFs by leveraging BOF2shellcode