A collection of Cobalt Strike Aggressor scripts.
☆115Jan 3, 2022Updated 4 years ago
Alternatives and similar repositories for cobaltstrike-aggressor-scripts
Users that are interested in cobaltstrike-aggressor-scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆112Feb 17, 2025Updated last year
- Quickly generate every payload type for each listener and optionally host via HTTP.☆22Aug 23, 2021Updated 5 years ago
- Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection☆331May 17, 2024Updated 2 years ago
- Bake shellcode to get malicious.exe☆29Jul 25, 2023Updated 3 years ago
- Agressor script that lists available Cobalt Strike beacon commands and colors them based on their type☆216Mar 18, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Certified Red Team Operator (CRTO) Cheatsheet and Checklist☆268Mar 16, 2024Updated 2 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆222Oct 9, 2022Updated 3 years ago
- Cobalt Strike notifications via NTFY.☆15Sep 24, 2024Updated 2 years ago
- LSTAR - CobaltStrike Translated to EN☆23Jun 15, 2023Updated 3 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆94Dec 15, 2022Updated 3 years ago
- A C# port from Invoke-GhostTask☆120Jan 5, 2024Updated 2 years ago
- Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.☆147Sep 8, 2022Updated 4 years ago
- Cobalt Strike User-Defined Reflective Loader with AV/EDR Evasion in mind☆495Jul 12, 2023Updated 3 years ago
- ☆29May 10, 2024Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking☆285Jun 8, 2023Updated 3 years ago
- Permanently disable EDRs as local admin☆131Dec 19, 2025Updated 9 months ago
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆45Sep 25, 2024Updated 2 years ago
- ☆47Jun 21, 2023Updated 3 years ago
- Some notes and examples for cobalt strike's functionality☆1,138Feb 8, 2022Updated 4 years ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆721Mar 4, 2023Updated 3 years ago
- ☆40Nov 25, 2025Updated 10 months ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆147Dec 16, 2023Updated 2 years ago
- TCP Port Redirection Utility☆787Jan 31, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Section Mapping Process Injection (secinject): Cobalt Strike BOF☆105Jan 7, 2022Updated 4 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆93Nov 5, 2021Updated 4 years ago
- The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.☆130Jun 22, 2020Updated 6 years ago
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆118Dec 21, 2025Updated 9 months ago
- Moriarty is designed to enumerate missing KBs, detect various vulnerabilities, and suggest potential exploits for Privilege Escalation in…☆515Aug 7, 2024Updated 2 years ago
- ☆84May 19, 2024Updated 2 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆147Mar 9, 2024Updated 2 years ago
- Sp00fer blog post -☆24Jul 19, 2022Updated 4 years ago
- Cobalt Strike BOF for beacon/shellcode injection using fork & run technique with Draugr synthetic stack frames☆157Nov 23, 2025Updated 10 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆571Mar 28, 2024Updated 2 years ago
- Creating a repository with all public Beacon Object Files (BoFs)☆675Mar 2, 2026Updated 6 months ago
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆209Jun 10, 2024Updated 2 years ago
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,418Oct 27, 2023Updated 2 years ago
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,107Apr 19, 2023Updated 3 years ago
- Example of using Sleep to create better named pipes.☆41Jul 25, 2023Updated 3 years ago
- Heavily obfuscated ASP web shell generation tool.☆173Apr 26, 2024Updated 2 years ago