es
Feedback
cobaltstrike

cobaltstrike

Ir al canal en Telegram

All about Cobalt Strike. New versions, articles and more.

Mostrar más
El país no está especificadoTecnologías y Aplicaciones42 376
1 682
Suscriptores
Sin datos24 horas
Sin datos7 días
Sin datos30 días
Archivo de publicaciones
Creating Object File Monstrosities with Sleep Mask and LLVM The Mutator kit is now part of the Cobalt Strike Arsenal Kit. It allows you to mutate BOFs, sleep masks and more with LLVM. 🔗 https://www.cobaltstrike.com/blog/introducing-the-mutator-kit-creating-object-file-monstrosities-with-sleep-mask-and-llvm

NIM loader Cobalt Strike https://github.com/yutianqaq/CSx3Ldr

Stealth redirector for your red team operation security https://github.com/D00Movenok/BounceBack

BOFRYPTOR: ENCRYPTING YOUR BEACON DURING BOF EXECUTION TO AVOID MEMORY SCANNERS https://github.com/securifybv/BOFRyptor

photo content

Taking a quick look at the new Aggressor callbacks in Cobalt Strike 4.9. https://rastamouse.me/cobalt-strike-aggressor-callbacks/

BooM 💥

Red Team C2 Log Visualization (include Cobalt Strike) https://github.com/cisagov/RedEye

https://github.com/Octoberfest7/CVE-2023-36874_BOF Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE

Winsocket implementation for Cobalt Strike. Used to communicate with the victim using winsockets instead of the traditional ways. https://github.com/WKL-Sec/Winsocky/

BOFMask BOFMask is a tool designed to conceal Cobalt Strike's Beacon payload while executing a Beacon Object File (BOF). By applying a XOR mask and modifying memory protection settings, BOFMask enables users to execute BOFs without exposing Beacon, thereby avoiding detection by EDR products that scan system memory. Research: https://securityintelligence.com/posts/how-to-hide-beacon-during-bof-execution/ Source: https://github.com/xforcered/bofmask

Reviewed, Modified RunCoff arguments. Added Cleanup for beacon compatability failure, and ran code beautifier on the C# https://github.com/trustedsec/CS_COFFLoader

Chinese Threat Actor Used Modified Cobalt Strike Variant to Attack Taiwanese Critical Infrastructure https://blog.eclecticiq.com/chinese-threat-actor-used-modified-cobalt-strike-variant-to-attack-taiwanese-critical-infrastructure