RomanEmelyanov / CobaltStrikeForensicLinks
Toolset for research malware and Cobalt Strike beacons
☆211Updated 8 months ago
Alternatives and similar repositories for CobaltStrikeForensic
Users that are interested in CobaltStrikeForensic are comparing it to the libraries listed below
Sorting:
- Static based decoders for malware samples☆94Updated 5 years ago
- Ex-pv8's☆64Updated 6 years ago
- Splunk Dashboard for CobaltStrike logs☆90Updated 4 years ago
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆121Updated 6 years ago
- A collection of scripts for dealing with Cobalt Strike beacons in Python☆168Updated 4 years ago
- Aggregation of Cobalt Strike's aggressor scripts.☆141Updated 7 years ago
- Community maintained list of most popular HIPS service and process names on a Windows Platform.☆43Updated 3 years ago
- a tool to make it easy and fast to test various forms of injection☆173Updated 6 years ago
- Simulating Adversary Operations☆96Updated 7 years ago
- DLL Password Filter Implant with Exfiltration Capabilities☆138Updated 5 years ago
- A tool for detecting VBA stomping.☆100Updated 3 years ago
- Constrained Language Mode + AMSI bypass all in one☆160Updated 6 years ago
- Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.☆141Updated 7 years ago
- An Insider Threat Toolkit☆154Updated 6 years ago
- CobaltStrike External C2 for Websockets☆198Updated 6 years ago
- Python api for usage with cobalt strike's External C2 specification☆241Updated 2 years ago
- Petaq - Purple Team Command & Control Server☆105Updated 2 years ago
- Post Exploitation agent which uses a browser to do C2 operations.☆103Updated 7 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆264Updated 6 years ago
- A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.☆172Updated 8 months ago
- ☆229Updated 7 years ago
- Slides from my talk in "Hackinparis" 2019 edition☆91Updated 6 years ago
- APT || Execution || Launch || APTs || ( Authors harr0ey, bohops )☆110Updated 7 years ago
- PowerAvails is a unit of collection of Powershell modules that help you get done many things☆118Updated 6 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆148Updated 5 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 5 years ago
- ☆82Updated 4 years ago
- APT34/OILRIG leak☆233Updated 6 years ago
- ☆83Updated 8 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆77Updated 7 years ago