HarmJ0y / Malleable-C2-Profiles
Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use.
☆17Updated 9 years ago
Related projects ⓘ
Alternatives and complementary repositories for Malleable-C2-Profiles
- Automating those tasks which can or should be automated☆60Updated 6 years ago
- Powershell Persistence Locator☆66Updated 8 years ago
- Cobalt Strike Field Manual - A quick reference for Windows commands that can be accessed in a beacon console.☆64Updated 6 years ago
- A sample bot for Cobalt Strike 3☆22Updated 8 years ago
- Cobalt Strike Field Manual - A quick reference for Windows commands that can be accessed in a beacon console.☆44Updated 6 years ago
- ☆83Updated 8 years ago
- Useful Threat Hunting Stuff☆31Updated 4 years ago
- Empire HTTP(S) C2 redirector setup script☆46Updated 6 years ago
- Collection of scripts for interacting with AD Kerberos from Linux☆71Updated 6 years ago
- ☆41Updated 6 years ago
- ☆19Updated 7 years ago
- InfoPath Phishing Repo Resource☆68Updated 7 years ago
- ☆58Updated 7 years ago
- Quick and dirty System (Power)Shell using NamedPipe impersonation.☆43Updated 8 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆75Updated 6 years ago
- A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro…☆19Updated 3 years ago
- This is a quick POC for using the Matt Nelson (enigma0x3) technique for generating a malicious .SettingContent-ms extension type for remo…☆50Updated 6 years ago
- Comprehensive Pivoting Framework☆20Updated 8 years ago
- SMB Named Pipe shell☆63Updated 7 years ago
- Implementing Kerberoast attack fully in python☆72Updated 6 years ago
- Executes lateral movement through PowerPoint DCOM objects☆19Updated 6 years ago
- Python script for analyis of the "Trust.csv" file generated by Veil PowerView. Provides graph based analysis and output.☆116Updated 4 years ago
- Generate ATT&CK Navigator layer file from PowerShell Empire agent logs☆48Updated 6 years ago
- Quick PoC I Wrote for Bypassing Next Gen AV Remotely for Pentesting☆41Updated 5 years ago
- CloudBurst is a red team framework for interacting with cloud providers to capture, compromise, and exfil data.☆36Updated 6 years ago
- Bloodhound Attack Path Automation in CobaltStrike☆29Updated 7 years ago
- PowerShell module to play with Kerberos S4U extensions☆51Updated 7 years ago
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago