nickvourd / CS-Aggressor-Kit
Homemade Aggressor scripts kit for Cobalt Strike
☆62Updated 2 months ago
Alternatives and similar repositories for CS-Aggressor-Kit:
Users that are interested in CS-Aggressor-Kit are comparing it to the libraries listed below
- Repository of scripts from my blog post on bypassing the YARA rule Windows_Trojan_CobaltStrike_f0b627fc by generating alternative shellco…☆39Updated 6 months ago
- AdaptixFramework Extension Kit☆73Updated this week
- ☆47Updated last year
- Help red teams find opsec processes during engagements☆38Updated 5 months ago
- A Tool that aims to evade av with binary padding☆148Updated 10 months ago
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆45Updated last year
- ☆86Updated last year
- ☆86Updated last year
- ☆80Updated last year
- 针对多个框架的高度自定义的内存马一键打入工具 | A highly customized memory shell one-click injection tool for multiple frameworks☆47Updated last year
- Winsocket for Cobalt Strike.☆98Updated last year
- Library of BOFs to interact with SQL servers☆163Updated 3 weeks ago
- Powershell shellcode one-liner. Powershell免杀一句话上线器便捷生成☆53Updated last year
- Execute commands in other Sessions☆86Updated 9 months ago
- ☆57Updated 9 months ago
- Apache Solr Backup/Restore APIs RCE Poc (CVE-2023-50386)☆64Updated last year
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆205Updated last year
- CSharp reimplementation of Venoma, another C++ Cobalt Strike beacon dropper with custom indirect syscalls execution☆42Updated last year
- A simple Sleepmask BOF example☆99Updated 8 months ago
- An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are a…☆135Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆76Updated 2 years ago
- Simple LSASS Dumper created using C++ as an alternative to using Mimikatz memory dumper☆54Updated last year
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆32Updated 2 years ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆204Updated last year
- ASPX ShellCode Loader☆50Updated last year
- ☆70Updated last year
- Beacon Object File implementation of pwn1sher's KillDefender☆66Updated 2 years ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆238Updated 10 months ago
- ☆224Updated last year
- POC tool to extract all persistent clipboard history data from clipboard service process memory☆44Updated 9 months ago