lum8rjack / caddy-c2Links
Caddy v2 module to filter requests based on C2 profiles
☆15Updated 3 months ago
Alternatives and similar repositories for caddy-c2
Users that are interested in caddy-c2 are comparing it to the libraries listed below
Sorting:
- Lateral Movement as loggedon User via Speech Named Pipe COM & ISpeechNamedPipe + COM Hijacking☆66Updated last month
- ☆83Updated last year
- An impacket-lite cli tool that combines many useful impacket functions using a single session.☆51Updated 3 weeks ago
- AzureAD beacon object files☆121Updated 7 months ago
- Local SYSTEM auth trigger for relaying☆143Updated 3 weeks ago
- A web assembly (WASM) phishing lure generator based on pre-built templates and written in Rust with some GenAI assistance. W.A.L.K. aims …☆89Updated 11 months ago
- Local SYSTEM auth trigger for relaying - X☆127Updated 3 weeks ago
- Beacon Object File (BOF) to obtain Entra tokens via authcode flow.☆102Updated 3 months ago
- ☆47Updated 4 months ago
- This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit typ…☆48Updated 2 months ago
- 🧠 The ultimate, community-curated resource for Beacon Object Files (BOFs) — tutorials, how-tos, deep dives, and reference materials.☆78Updated last week
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆108Updated last month
- Lurker is a cross-platform, companion implant to Cobalt Strike built with Go☆29Updated 10 months ago
- .NET Post-Exploitation Utility for Abusing Explicit Certificate Mappings in ADCS☆149Updated 6 months ago
- ☆133Updated 6 months ago
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆32Updated 7 months ago
- ForsHops☆145Updated 4 months ago
- ☆57Updated 5 months ago
- OAuth Device Code Phishing Toolkit☆66Updated 3 months ago
- A Python POC for CRED1 over SOCKS5☆153Updated 10 months ago
- tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it☆121Updated last month
- A third-party Gopher Assassin for the Havoc Framework.☆44Updated last year
- Your syscall factory☆124Updated last month
- Leveraging AWS Lambda Function URLs for C2 Redirection☆36Updated last year
- Sliver extension performing TCP redirection tasks without performing cross-process injection.☆66Updated 6 months ago
- Lateral Movement via the .NET Profiler☆82Updated 8 months ago
- BOF to decrypt Signal Desktop chat logs☆66Updated 5 months ago
- Lockless BOF☆76Updated 3 months ago
- Weaponizing DCOM for NTLM Authentication Coercions☆159Updated last month
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆140Updated 4 months ago