nccgroup / pybeacon
A collection of scripts for dealing with Cobalt Strike beacons in Python
☆167Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for pybeacon
- ☆189Updated 4 years ago
- Scripts for performing and detecting parent PID spoofing☆138Updated 4 years ago
- Macro-Enabled Excel File Generator (.xlsm) using the EPPlus Library.☆143Updated 4 years ago
- Executes position independent shellcode from an encrypted zip☆300Updated 3 years ago
- Apply a filter to the events being reported by windows event logging☆261Updated 3 years ago
- 64bit Windows 10 shellcode that injects all processes with Meterpreter reverse shells.☆127Updated last year
- A Cobalt Strike Beacon Object File (BOF) project which uses direct system calls to enumerate processes for specific loaded modules or pro…☆266Updated last year
- ☆161Updated last year
- Python interpreter for Cobalt Strike Malleable C2 Profiles. Allows you to parse, build and modify them programmatically.☆267Updated last week
- Load any Beacon Object File using Powershell!☆245Updated 2 years ago
- ☆147Updated 4 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆254Updated 2 years ago
- Aggressor scripts for phases of a pen test or red team assessment☆175Updated 2 months ago
- ☆111Updated 4 years ago
- Tool for interacting with outlook interop during red team engagements☆143Updated 3 years ago
- ☆164Updated 3 years ago
- C# Shellcode Runner to execute shellcode via CreateRemoteThread and SetThreadContext to evade Get-InjectedThread☆119Updated 5 years ago
- AzureC2Relay is an Azure Function that validates and relays Cobalt Strike beacon traffic by verifying the incoming requests based on a Co…☆209Updated 3 years ago
- MSBuild without MSbuild.exe☆128Updated 3 years ago
- Ps-Tools, an advanced process monitoring toolkit for offensive operations☆329Updated 3 years ago
- Evading WinDefender ATP credential-theft☆253Updated 4 years ago
- Spray a hash via smb to check for local administrator access☆140Updated 3 years ago
- Lateral Movement technique using DCOM and HTA☆228Updated 2 years ago
- Print Spooler Named Pipe Impersonation for Cobalt Strike☆258Updated 4 years ago
- Cobalt Strike Beacon Object Files☆159Updated 2 years ago
- Neutering Sysmon via driver unload☆221Updated 2 years ago
- lateral movement techniques that can be used during red team exercises☆265Updated 4 years ago
- Harvis is designed to automate your C2 Infrastructure.☆104Updated 2 years ago
- Cobalt Strike Beacon configuration extractor and parser.☆145Updated 3 years ago