0xthirteen / StayKit
Cobalt Strike kit for Persistence
☆470Updated 4 years ago
Alternatives and similar repositories for StayKit:
Users that are interested in StayKit are comparing it to the libraries listed below
- Cobalt Strike kit for Lateral Movement☆655Updated 4 years ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆472Updated 2 years ago
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆687Updated 4 months ago
- Collection of Beacon Object Files☆566Updated 2 years ago
- .NET Project for performing Authenticated Remote Execution☆390Updated last year
- Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks b…☆444Updated last year
- Various Cobalt Strike BOFs☆600Updated 2 years ago
- Convert Cobalt Strike profiles to modrewrite scripts☆587Updated last year
- Cobalt Strike script for ScareCrow payloads intergration (EDR/AV evasion)☆457Updated 2 years ago
- Cobalt Strike Shellcode Generator☆646Updated last week
- ☆291Updated 6 months ago
- ☆351Updated 3 years ago
- Cobalt Strike random C2 Profile generator☆638Updated 2 years ago
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆629Updated last year
- .NET project for installing Persistence☆462Updated 6 months ago
- A Cobalt Strike tool to audit Active Directory user accounts for weak, well known or easy guessable passwords.☆428Updated 2 years ago
- Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.☆378Updated last year
- .NET Project for Attacking vCenter☆540Updated 3 years ago
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,055Updated last year
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆726Updated last year
- Executes position independent shellcode from an encrypted zip☆300Updated 4 years ago
- Cobalt Strike Python API☆296Updated 2 years ago
- ☆505Updated 3 years ago
- Run shellcode from resource☆253Updated 4 years ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆353Updated 4 years ago
- A .NET Framework 4.0 Windows Agent☆460Updated last week