fern89 / C2Links
A basic C2 framework written in C
☆60Updated last year
Alternatives and similar repositories for C2
Users that are interested in C2 are comparing it to the libraries listed below
Sorting:
- An ICMP channel for Beacons, implemented using Cobalt Strike’s External C2 framework.☆111Updated 4 months ago
- TypeLib persistence technique☆139Updated last year
- Beacon Object File (BOF) Template☆61Updated last year
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆125Updated 2 years ago
- PrimitiveInjection by using Read, Write and Allocation Primitives.☆53Updated 7 months ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆96Updated 2 years ago
- A nice process dumping tool☆81Updated 3 years ago
- Dumping App Bound Protected Credentials & Cookies Without Privileges.☆166Updated 8 months ago
- ☆62Updated last year
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆86Updated 2 years ago
- ApexLdr is a DLL Payload Loader written in C☆116Updated last year
- Windows C++ Implant for Exploration C2☆45Updated last week
- ☆84Updated 2 years ago
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆64Updated 2 years ago
- ☆125Updated 2 years ago
- Title is self explaining, well theres few methods we can do to read locked file and play with it...☆83Updated last month
- ☆49Updated 9 months ago
- Arsenal of modules to beacon postex☆94Updated 2 months ago
- NSecSoftBYOVD POC☆54Updated 4 months ago
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆40Updated 2 years ago
- Loading Fileless Remote PE from URI to memory with argument passing and ETW patching and NTDLL unhooking and No New Thread technique☆75Updated 3 years ago
- Run native PE or .NET executables entirely in-memory. Build the loader as an .exe or .dll—DllMain is Cobalt Strike UDRL-compatible☆264Updated 7 months ago
- bring your own vulnerable driver☆112Updated 2 years ago
- Use the Netlogon Remote Protocol (MS-NRPC) to dump the target hash.☆62Updated 11 months ago
- BOF to run PE in Cobalt Strike Beacon without console creation☆181Updated 2 months ago
- Sliver agent rewritten in C++☆49Updated last year
- UAC Bypass via CMUACUtil & PEB Enumeration, Undetected for now.☆51Updated last year
- Moonwalk++: Simple POC Combining StackMoonwalking and Memory Encryption☆190Updated last month
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆61Updated 3 years ago
- A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.☆128Updated last week