Skip to content
View coldfusion39's full-sized avatar
Block or Report

Block or report coldfusion39

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Cobalt Strike

142 repositories

BOF combination of KillDefender and Backstab

C 153 38 Updated Mar 23, 2023

Cobalt Strike Beacon Object Files (BOFs) written in rust with rust core and alloc.

Rust 228 26 Updated Feb 8, 2024

Beacon Object Files for roasting Active Directory

C 215 38 Updated Feb 21, 2022

Beacon Object File PoC implementation of KillDefender

C 209 30 Updated Apr 12, 2022

KaynLdr is a Reflective Loader written in C/ASM

C 510 103 Updated Dec 3, 2023

A BOF for enumerating version information for DLLs associated for a Beacon process.

C 12 4 Updated Nov 23, 2021

Cobalt Strike Get clipboard plugin

C 12 3 Updated Aug 11, 2023

tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"

Python 140 21 Updated Nov 26, 2021

Move CS beacon to GPU memory when sleeping

C++ 213 38 Updated Nov 19, 2021

Cobalt Strike User Defined Reflective Loader (UDRL). Check branches for different functionality.

C 132 32 Updated Jul 20, 2022

A Visual Studio template used to create Cobalt Strike BOFs

C 260 50 Updated Nov 17, 2021

POC tool to convert CobaltStrike BOF files to raw shellcode

C 167 27 Updated Nov 5, 2021

DLL Hijack Search Order Enumeration BOF

C 130 21 Updated Nov 3, 2021

A BOF to parse the imports of a provided PE-file, optionally extracting symbols on a per-dll basis.

C 81 10 Updated Oct 28, 2021

This project is 'bridge' between the sleep and python language. It allows the control of a Cobalt Strike teamserver through python without the need for for the standard GUI client. NOTE: This proje…

Python 161 26 Updated Apr 12, 2023

Cobalt Strike BOF projects

C 4 Updated Mar 29, 2021

PIC lsass dumper using cloned handles

C 568 103 Updated Oct 18, 2022

BOF implementation of the research by @jonasLyk and the drafted PoC from @LloydLabs

C 170 23 Updated Oct 3, 2021

all credits go to @mgeeky

C 58 11 Updated Oct 14, 2021

A compilation of Aggressor/Sleep scripts for operational purposes that I've made.

12 2 Updated Sep 17, 2021

Cobalt Strike User-Defined Reflective Loader with AV/EDR Evasion in mind

C 398 67 Updated Jul 12, 2023

THIS REPO IS PART OF WHAT ORCA TOLD ME TO UPLOAD

C 68 27 Updated Sep 25, 2021

A faithful transposition of the key features/functionality of @itm4n's PPLDump project as a BOF.

C 135 25 Updated Sep 24, 2021

CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)

C 273 55 Updated Sep 28, 2021

Syscall BOF to arbitrarily add/detract process token privilege rights.

C 52 19 Updated Sep 14, 2021

Experiment on reproducing Obfuscate & Sleep

C 128 60 Updated Mar 14, 2021

A shellcode function to encrypt a running process image when sleeping.

C 324 58 Updated Sep 11, 2021

A demo of the relevant blog post: https://www.arashparsa.com/hook-heaps-and-live-free/

C 183 39 Updated Sep 9, 2021

Section Mapping Process Injection (secinject): Cobalt Strike BOF

C 85 22 Updated Jan 7, 2022

Cobalt Strike Malleable Profile Inline Patch Template: A Position Independent Code (PIC) Code Template For Creating Shellcode That Can Be Appended In Stage / Post-Ex Blocks. Made for C Programmers

C 37 18 Updated Sep 3, 2020