yanghaoi / CobaltStrike_CNALinks
使用多种WinAPI进行权限维持的CobaltStrike脚本,包含API设置系统服务,设置计划任务,管理用户等。
☆543Updated 3 years ago
Alternatives and similar repositories for CobaltStrike_CNA
Users that are interested in CobaltStrike_CNA are comparing it to the libraries listed below
Sorting:
- 创建隐藏计划任务,权限维持,Bypass AV☆547Updated 3 years ago
- Bypass_AV msf免杀,ShellCode免杀加载器 ,免杀shellcode执行程序 ,360&火绒&Windows Defender☆223Updated 3 years ago
- Some demos to bypass EDRs or AVs by 78itsT3@m☆354Updated 3 years ago
- 重构了Cobaltstrike Beacon,行为对国内主流杀软免杀,支持4.1以上的版本。 A cobaltstrike Beacon bypass anti-virus, supports 4.1+ version.☆316Updated 2 years ago
- 远程shellcode加载&权限维持+小功能☆298Updated last year
- Syscall免杀☆510Updated last year
- dump lsass进程工具☆556Updated 2 years ago
- cs4.4修改去特征狗狗版(美化ui,去除特征,自带bypass核晶截图等..)☆573Updated 2 years ago
- 基于 OPSEC 的 CobaltStrike 后渗透自动化链☆437Updated last year
- 免杀shellcode加载器☆459Updated 4 years ago
- Burp插件,Malleable C2 Profiles生成器;可以通过Burp代理选中请求,生成Cobalt Strike的profile文件(CSprofile)☆282Updated 3 years ago
- 域信息收集工具☆403Updated 2 years ago
- 域内自动化信息搜集利用工具☆425Updated last year
- GO免杀shellcode加载器混淆AES加密☆254Updated 3 years ago
- 将dll exe 等转成shellcode 最后输出exe 可定制加载器模板 支持白文件的捆绑 shellcode 加密☆365Updated 2 years ago
- Redis-Attack By Replication (通过主从复制攻击Redis)☆343Updated 2 years ago
- 一款可以在不出网的环境下进行反向代理及cs上线的工具☆489Updated 2 years ago
- 自己开的cs插件☆243Updated 2 years ago
- 基于Golang实现的Shellcode内存加载器,共实现3中内存加载shellcode方式,UUID加载,MAC加载和IPv4加载,目前能过主流杀软(包括Windows Defender)☆253Updated 3 years ago
- 适用于Cobalt Strike的插件☆556Updated 4 years ago
- python写的一款免杀工具(shellcode加载器)BypassAV,国内杀软全过(windows denfend)2021-9-13☆280Updated 9 months ago
- CVE-2022-39197 漏洞补丁. CVE-2022-39197 Vulnerability Patch.☆317Updated 2 years ago
- useful-code☆187Updated last year
- 免杀某60、火绒、pythonShellcode-loader☆55Updated 2 years ago
- 从零开始学免杀☆438Updated 3 years ago
- 数据库综合利用工具☆546Updated 3 years ago
- 永久免杀加载器移步另一个项目https://github.com/snnxyss/new_in_swor 一个简单内网渗透工具免杀 目前免杀fscan,mimikatz,frp,elevationstation,bypassuac, 一键killAV 。请使用In-Swor…☆388Updated last year
- 一种另辟蹊径的免杀执行系统命令的木马☆493Updated last year
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆338Updated 3 years ago
- This is my FirstRepository☆338Updated 2 years ago