Cobalt-Strike / community_kitLinks
Cobalt Strike is a post-exploitation framework designed to be extended and customized by the user community. Several excellent tools and scripts have been written and published, but they can be challenging to locate. Community Kit is a central repository of extensions written by the user community to extend the capabilities of Cobalt Strike. The…
☆386Updated this week
Alternatives and similar repositories for community_kit
Users that are interested in community_kit are comparing it to the libraries listed below
Sorting:
- Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike & Empire.☆384Updated 2 years ago
- Useful C2 techniques and cheat sheets learned from engagements☆556Updated last month
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,304Updated 2 years ago
- A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file form…☆1,036Updated last year
- Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, common install directories,…☆270Updated 2 years ago
- ☆243Updated 5 years ago
- ☆715Updated last year
- C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.☆424Updated last year
- Proof-of-concept obfuscation toolkit for C# post-exploitation tools☆575Updated 3 years ago
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,095Updated 2 years ago
- This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)☆283Updated last year
- PowerShell Script Obfuscator☆578Updated 2 years ago
- Cobalt Strike C2 Reverse proxy that fends off Blue Teams, AVs, EDRs, scanners through packet inspection and malleable profile correlation☆985Updated 3 years ago
- ☆1,052Updated 2 weeks ago
- Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for…☆493Updated 2 years ago
- Simple & Powerful PowerShell Script Obfuscator☆584Updated 5 months ago
- XLL Phishing Tradecraft☆430Updated 3 years ago
- ScareCrow - Payload creation framework designed around EDR bypass.☆347Updated 2 years ago
- An in-depth approach to obfuscating the individual components of a PowerShell payload whether you're on Windows or Kali Linux.☆280Updated 3 years ago
- Materials for the workshop "Red Team Ops: Havoc 101"☆387Updated last year
- "Golden" certificates☆707Updated last year
- PowerShell Ransomware Simulator with C2 Server☆492Updated last year
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆232Updated 2 months ago
- Malicious shortcut generator for collecting NTLM hashes from insecure file shares.☆344Updated last year
- A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.☆552Updated 4 years ago
- Python version of the C# tool for "Shadow Credentials" attacks☆812Updated last month
- Some notes and examples for cobalt strike's functionality☆1,117Updated 3 years ago
- a tool to help operate in EDRs' blind spots☆764Updated 11 months ago
- ☆472Updated 11 months ago
- SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.☆1,176Updated 6 months ago