ewby / Mockingjay_BOF
Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique
☆149Updated last year
Alternatives and similar repositories for Mockingjay_BOF:
Users that are interested in Mockingjay_BOF are comparing it to the libraries listed below
- Library of BOFs to interact with SQL servers☆158Updated 2 months ago
- ☆123Updated last year
- ☆138Updated last year
- ☆78Updated last year
- ☆122Updated 5 months ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆82Updated last year
- Modified versions of the Cobalt Strike Process Injection Kit☆92Updated last year
- ☆95Updated last year
- ApexLdr is a DLL Payload Loader written in C☆109Updated 7 months ago
- ☆151Updated last year
- A C# port from Invoke-GhostTask☆112Updated last year
- ☆93Updated 5 months ago
- ☆115Updated last year
- I have documented all of the AMSI patches that I learned till now☆74Updated last year
- Lateral Movement via the .NET Profiler☆79Updated 2 months ago
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆117Updated 4 months ago
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆204Updated last year
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆73Updated last month
- AzureAD beacon object files☆109Updated 2 months ago
- Simple BOF to read the protection level of a process☆114Updated last year
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking☆224Updated last year
- Execute commands in other Sessions☆85Updated 6 months ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆100Updated last year
- ☆85Updated 9 months ago
- Winsocket for Cobalt Strike.☆97Updated last year
- To audit the security of read-only domain controllers☆114Updated last year
- Just another C2 Redirector using CloudFlare.☆86Updated 9 months ago