yeyintminthuhtut / Malleable-C2-Profiles-Collection
A collection of Malleable C2 profiles that work with Cobalt Strike 3.x.
☆28Updated 5 years ago
Alternatives and similar repositories for Malleable-C2-Profiles-Collection:
Users that are interested in Malleable-C2-Profiles-Collection are comparing it to the libraries listed below
- Leak windows system info through a docx file☆12Updated 4 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆35Updated 5 years ago
- Simple C2 over the Trello API☆38Updated 2 years ago
- Sound Research SECOMN service Privilege Escalation (windows 10)☆39Updated 4 years ago
- cobalt strike stuff I have gathered from around github☆31Updated 7 years ago
- Microsoft Applocker evasion tool☆38Updated 5 years ago
- quick 'n dirty poc based on PoC windows auth prompt in c# based on https://gist.githubusercontent.com/mayuki/339952/raw/2c36b735bc51861a3…☆31Updated 4 years ago
- Remote process dumping automation. Use it to dump Windows credentials remotely and extract clear text with Mimikatz offline☆35Updated 5 years ago
- Aggressor Script to Execute Assemblies from Github☆67Updated 4 years ago
- I used this to see if an EDR is running in Safe Mode☆35Updated 4 years ago
- My musings with C#☆28Updated 2 years ago
- C# POC code for the SessionEnv dll hijack by utilizing called functions of TSMSISrv.dll☆57Updated 5 years ago
- Convert Empire profiles to Apache mod_rewrite scripts☆28Updated 5 years ago
- Log converter from CS log to Ghostwriter CSV☆29Updated 4 years ago
- Automate Network sessions enumeration of connected users in the domain, to facilitate AD Reconnaissance for Adversary simulation & Red Te…☆15Updated 4 years ago
- SharpSvc is a simple code set to interact with the SC Manager API and is compatible with Cobalt Strike.☆25Updated last year
- Execute Mimikatz with different technique☆51Updated 3 years ago
- C++ POC code for the wlbsctrl.dll hijack on IKEEXT☆53Updated 5 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆46Updated 4 years ago
- all published scripts devloped by ahmed khlief☆20Updated 4 years ago
- An Ansible role to install cobalt-strike☆16Updated 4 years ago
- subTee gists code backups☆37Updated 7 years ago
- A repo to hold any bypasses I work on/study/whatever☆19Updated 4 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆33Updated 3 years ago
- Get or remove RunMRU values☆53Updated 5 years ago
- Ingests logs/dbs from cobalt and empire and outputs an excel report with activity, sessions, and credentials☆20Updated 4 years ago
- ☆52Updated 4 years ago
- AppXSVC Service race condition - privilege escalation☆27Updated 5 years ago
- Initial Commit of Coresploit☆56Updated 3 years ago
- Core bypass Windows Defender and execute any binary converted to shellcode☆43Updated 3 years ago