A collection of Cobalt Strike Aggressor scripts.
☆114Jan 3, 2022Updated 4 years ago
Alternatives and similar repositories for cobaltstrike-aggressor-scripts
Users that are interested in cobaltstrike-aggressor-scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆112Feb 17, 2025Updated last year
- Quickly generate every payload type for each listener and optionally host via HTTP.☆22Aug 23, 2021Updated 4 years ago
- Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection☆329May 17, 2024Updated 2 years ago
- Bake shellcode to get malicious.exe☆28Jul 25, 2023Updated 3 years ago
- Agressor script that lists available Cobalt Strike beacon commands and colors them based on their type☆215Mar 18, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Certified Red Team Operator (CRTO) Cheatsheet and Checklist☆253Mar 16, 2024Updated 2 years ago
- Cobalt Strike notifications via NTFY.☆15Sep 24, 2024Updated last year
- LSTAR - CobaltStrike Translated to EN☆23Jun 15, 2023Updated 3 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆92Dec 15, 2022Updated 3 years ago
- A C# port from Invoke-GhostTask☆120Jan 5, 2024Updated 2 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆220Oct 9, 2022Updated 3 years ago
- Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.☆146Sep 8, 2022Updated 3 years ago
- Automated Active Directory lab running on Proxmox☆91Aug 8, 2025Updated 11 months ago
- Cobalt Strike User-Defined Reflective Loader with AV/EDR Evasion in mind☆492Jul 12, 2023Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ☆29May 10, 2024Updated 2 years ago
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking☆289Jun 8, 2023Updated 3 years ago
- Permanently disable EDRs as local admin☆129Dec 19, 2025Updated 7 months ago
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆46Sep 25, 2024Updated last year
- ☆47Jun 21, 2023Updated 3 years ago
- Some notes and examples for cobalt strike's functionality☆1,137Feb 8, 2022Updated 4 years ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆722Mar 4, 2023Updated 3 years ago
- ☆42Nov 25, 2025Updated 8 months ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆147Dec 16, 2023Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- TCP Port Redirection Utility☆786Jan 31, 2023Updated 3 years ago
- Section Mapping Process Injection (secinject): Cobalt Strike BOF☆105Jan 7, 2022Updated 4 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆93Nov 5, 2021Updated 4 years ago
- The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.☆128Jun 22, 2020Updated 6 years ago
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆119Dec 21, 2025Updated 7 months ago
- Moriarty is designed to enumerate missing KBs, detect various vulnerabilities, and suggest potential exploits for Privilege Escalation in…☆516Aug 7, 2024Updated last year
- ☆84May 19, 2024Updated 2 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆147Mar 9, 2024Updated 2 years ago
- Sp00fer blog post -☆24Jul 19, 2022Updated 4 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Cobalt Strike BOF for beacon/shellcode injection using fork & run technique with Draugr synthetic stack frames☆156Nov 23, 2025Updated 8 months ago
- ☆570Mar 28, 2024Updated 2 years ago
- Creating a repository with all public Beacon Object Files (BoFs)☆662Mar 2, 2026Updated 4 months ago
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆211Jun 10, 2024Updated 2 years ago
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,403Oct 27, 2023Updated 2 years ago
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,106Apr 19, 2023Updated 3 years ago
- Example of using Sleep to create better named pipes.☆41Jul 25, 2023Updated 3 years ago