IncludeSecurity / c2-vulnerabilities
PoCs of RCEs against open source C2 servers
☆53Updated 3 months ago
Alternatives and similar repositories for c2-vulnerabilities:
Users that are interested in c2-vulnerabilities are comparing it to the libraries listed below
- Create Anti-Copy DRM Malware☆50Updated 4 months ago
- I have documented all of the AMSI patches that I learned till now☆68Updated last year
- ☆73Updated last year
- ApexLdr is a DLL Payload Loader written in C☆105Updated 6 months ago
- To audit the security of read-only domain controllers☆114Updated last year
- A simple ExternalC2 POC for Havoc C2. Communicates over Notion using a custom python agent, handler and extc2 channel. Not operationally …☆83Updated 2 years ago
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆73Updated 11 months ago
- Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique☆150Updated last year
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆82Updated last year
- CVE-2024-40711-exp☆38Updated 3 months ago
- A spin-off research project. Cobalt Strike x Notion collab 2022☆53Updated 2 years ago
- AV/EDR evasion via direct system calls.☆107Updated last year
- A Cobalt Strike memory evasion loader for redteamers☆95Updated last year
- Useful Cobalt Strike Beacon Object Files (BOFs) used during red teaming and penetration testing engagements.☆87Updated 2 years ago
- TeamServer and Client of Exploration Command and Control Framework☆82Updated this week
- ☆62Updated 11 months ago
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆51Updated last year
- ☆77Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆51Updated 2 weeks ago
- ☆138Updated last year
- Cobalt Strike User Defined Reflective Loader (UDRL). Check branches for different functionality.☆135Updated 2 years ago
- Winsocket for Cobalt Strike.☆99Updated last year
- ☆122Updated last year
- Parses Cobalt Strike malleable C2 profiles.☆48Updated 2 weeks ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆96Updated last year
- ☆61Updated 2 years ago
- POC tools for exploring SMB over QUIC protocol☆122Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago