huoji120 / CobaltStrikeDetectedView external linksLinks
40行代码检测到大部分CobaltStrike的shellcode
☆293Jul 25, 2021Updated 4 years ago
Alternatives and similar repositories for CobaltStrikeDetected
Users that are interested in CobaltStrikeDetected are comparing it to the libraries listed below
Sorting:
- 检测绝大部分所谓的内存免杀马☆735Sep 15, 2022Updated 3 years ago
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆731Sep 1, 2021Updated 4 years ago
- 戎码之眼是一个window上的基于att&ck模型的威胁监控工具.有效检测常见的未知威胁与已知威胁.防守方的利剑☆536Oct 25, 2023Updated 2 years ago
- 绕3环的shellcode免杀框架☆574Mar 19, 2021Updated 4 years ago
- 红队行动中利用白利用、免杀、自动判断网络环境生成钓鱼可执行文件。☆366Jun 19, 2024Updated last year
- 免杀技术大杂烩---乱拳也打不死老师傅☆1,095Mar 29, 2021Updated 4 years ago
- 将shellcode用rsa加密并动态编译exe,自带几种反沙箱技术。☆521Jul 9, 2020Updated 5 years ago
- golang打包二进制进行免杀☆233Apr 7, 2021Updated 4 years ago
- 防火墙出网探测工具,内网穿透型socks5代理☆270Nov 12, 2021Updated 4 years ago
- 沙箱测试,测评国内常见沙箱的代码与结论☆107Jul 3, 2021Updated 4 years ago
- 利用NTLM Hash读取Exchange邮件☆441Jan 7, 2025Updated last year
- WINDOWS TELEMETRY权限维持☆258Jul 2, 2020Updated 5 years ago
- 清除Go编译时自带的信息☆855Jul 20, 2022Updated 3 years ago
- 用CSharp写的一款信息搜集工具,目前支持Navicat、TeamView、Xshell、SecureCRT产品的密码解密☆251Aug 26, 2020Updated 5 years ago
- AntSword(蚁剑)全参数流量XOR和Base64加伪装WebShell☆163Sep 28, 2021Updated 4 years ago
- Beacon.dll reverse☆141Sep 5, 2021Updated 4 years ago
- 提取DC日志,快速获取域用户对应IP地址☆308Mar 21, 2022Updated 3 years ago
- Flask 内存马☆312Mar 26, 2021Updated 4 years ago
- Hunts out CobaltStrike beacons and logs operator command output☆951Sep 4, 2024Updated last year
- (周瑜)Java - SpringBoot 持久化 WebShell(不仅仅是SpringBoot,适合任何符合JavaEE规范的服务)☆615Dec 29, 2021Updated 4 years ago
- 这是一个一键辅助抓取360安全浏览器密码的CobaltStrike脚本以及解密小工具,用于节省红队工作量,通过下载浏览器数据库、记录密钥来离线解密浏览器密码。☆638Apr 4, 2021Updated 4 years ago
- Bypass firewall for traffic forwarding using webshell☆1,432Sep 29, 2021Updated 4 years ago
- sharpwmi是一个基于rpc的横向移动工具,具有上传文件和执行命令功能。☆717Aug 3, 2021Updated 4 years ago
- 记录自己编写、修改的部分工具☆1,462Oct 19, 2025Updated 3 months ago
- CrossC2通信协议API实现☆84Jul 26, 2021Updated 4 years ago
- 创建服务持久化☆108Apr 26, 2021Updated 4 years ago
- 这个脚本主要提供对Exchange邮件服务器的账户爆破功能,集成了现有主流接口的爆破方式。☆339May 22, 2023Updated 2 years ago
- golang shellcode loader 远程图片隐写加载执行 无文件落地☆191Feb 12, 2022Updated 4 years ago
- 通过WindowsAPI获取用户凭证,并保存到文件中☆195Jun 18, 2024Updated last year
- CVE-2021-36798: CobaltStrike < 4.4 Dos☆103Sep 26, 2021Updated 4 years ago
- Struts2漏洞扫描利用工具 - Golang版. Struts2 Scanner Written in Golang☆573Jan 10, 2022Updated 4 years ago
- 主流供应 商的一些攻击性漏洞汇总☆807Nov 8, 2021Updated 4 years ago
- Windows对抗沙箱和虚拟机的方法总结☆402Apr 22, 2020Updated 5 years ago
- 内网域渗透小工具☆734Apr 20, 2021Updated 4 years ago
- Windows活动目录中的LDAP信息收集工具☆234Oct 9, 2021Updated 4 years ago
- OrcaC2是一款基于Websocket加密通信的多功能C&C框架,使用Golang实现。☆676Dec 30, 2022Updated 3 years ago
- 一个全新的敏感文件发现工具☆225Jan 10, 2021Updated 5 years ago
- Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的…☆929Jan 7, 2026Updated last month
- Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势☆1,404Jan 18, 2022Updated 4 years ago