fox-it / cobaltstrike-extraneous-spaceLinks
Historical list of {Cobalt Strike,NanoHTTPD} servers
☆121Updated 6 years ago
Alternatives and similar repositories for cobaltstrike-extraneous-space
Users that are interested in cobaltstrike-extraneous-space are comparing it to the libraries listed below
Sorting:
- Automates credential skimming from service accounts in Windows Registry☆77Updated 5 years ago
- Toolset for research malware and Cobalt Strike beacons☆211Updated 6 months ago
- The Outlook HTML Leak Test Project☆131Updated 7 years ago
- Post Exploitation agent which uses a browser to do C2 operations.☆102Updated 7 years ago
- A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.☆172Updated 7 months ago
- Splunk Dashboard for CobaltStrike logs☆89Updated 4 years ago
- Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.☆141Updated 7 years ago
- This project is just a dumping ground for random scripts I've developed.☆139Updated last year
- Aggregation of Cobalt Strike's aggressor scripts.☆142Updated 7 years ago
- A PoC Java Stager which can download, compile, and execute a Java file in memory.☆108Updated 7 years ago
- BlueKeep scanner supporting NLA☆167Updated 6 years ago
- A WebDAV PROPFIND C2 tool☆119Updated 6 years ago
- A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会☆165Updated 6 years ago
- Test CVE-2018-0296 and extract usernames☆106Updated 6 years ago
- PowerShell oneliner to retrieve wdigest passwords from the memory☆220Updated 7 years ago
- ☆32Updated 7 years ago
- Python tool to inject fake updates into unencrypted WSUS traffic☆114Updated 9 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- ☆82Updated 4 years ago
- DNS-Persist is a post-exploitation agent which uses DNS for command and control.☆211Updated 7 years ago
- a simple portforwarder in ps1 with embeded c# code☆90Updated 7 years ago
- This is a Metasploit module which exploits CVE-2017-11882 using the POC released here : https://embedi.com/blog/skeleton-closet-ms-office…☆97Updated 7 years ago
- Proof of Concept exploit for CVE-2017-8570☆185Updated 7 years ago
- A DNS tunnel utilizing the Burp Collaborator☆102Updated 5 years ago
- A collection of PowerShell Modules for BloodHound/Empire Orchestration☆108Updated 8 years ago
- PowerAvails is a unit of collection of Powershell modules that help you get done many things☆118Updated 6 years ago
- APT || Execution || Launch || APTs || ( Authors harr0ey, bohops )☆110Updated 7 years ago
- The PowerThIEf, an Internet Explorer Post Exploitation library☆130Updated 7 months ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆135Updated 7 years ago
- initial commit☆44Updated 10 months ago