Cobalt-Strike / community_kitLinks
Cobalt Strike is a post-exploitation framework designed to be extended and customized by the user community. Several excellent tools and scripts have been written and published, but they can be challenging to locate. Community Kit is a central repository of extensions written by the user community to extend the capabilities of Cobalt Strike. The…
☆382Updated this week
Alternatives and similar repositories for community_kit
Users that are interested in community_kit are comparing it to the libraries listed below
Sorting:
- Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike & Empire.☆382Updated 2 years ago
- Useful C2 techniques and cheat sheets learned from engagements☆548Updated this week
- A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file form…☆1,010Updated last year
- ☆715Updated last year
- PowerShell Script Obfuscator☆568Updated last year
- ☆1,030Updated 6 months ago
- Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, common install directories,…☆269Updated last year
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,289Updated last year
- ☆235Updated 5 years ago
- Proof-of-concept obfuscation toolkit for C# post-exploitation tools☆569Updated 3 years ago
- C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.☆419Updated last year
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,091Updated 2 years ago
- GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsof…☆626Updated 5 months ago
- Simple & Powerful PowerShell Script Obfuscator☆578Updated 4 months ago
- PowerShell Ransomware Simulator with C2 Server☆488Updated last year
- ScareCrow - Payload creation framework designed around EDR bypass.☆336Updated 2 years ago
- This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)☆283Updated last year
- ☆470Updated 9 months ago
- Cobalt Strike C2 Reverse proxy that fends off Blue Teams, AVs, EDRs, scanners through packet inspection and malleable profile correlation☆983Updated 2 years ago
- a tool to help operate in EDRs' blind spots☆757Updated 9 months ago
- Open source C2 server created for stealth red team operations☆827Updated 2 years ago
- An in-depth approach to obfuscating the individual components of a PowerShell payload whether you're on Windows or Kali Linux.☆275Updated 3 years ago
- Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for…☆488Updated 2 years ago
- Materials for the workshop "Red Team Ops: Havoc 101"☆386Updated 11 months ago
- XLL Phishing Tradecraft☆424Updated 3 years ago
- Python version of the C# tool for "Shadow Credentials" attacks☆801Updated 4 months ago
- Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, …☆912Updated 10 months ago
- Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, common install directories,…☆724Updated last month
- A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.☆555Updated 4 years ago
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆474Updated 2 years ago