CobaltStrike优质学习资源 - 渗透测试中心
2020-11-18 16:48:00 Author: www.cnblogs.com(查看原文) 阅读量:258 收藏

BypassAVBypassAV用于快速生成免杀的可执行文件BypassAVscrunBypassAV ShellCode Loader (Cobaltstrike/Metasploit) UseageBypassAVbeacon-c2-gobeacon-c2-go (Cobaltstrike/Metasploit)BypassAVC--Shellcodepython ShellCode Loader (Cobaltstrike&Metasploit) UseageReconred-team-scriptsperform some rudimentary Windows host enumeration with Beacon built-in commandsReconaggressor-powerviewAll functions listed in the PowerView about page are included in this with all arguments for each function. PowerViewReconPowerView3-AggressorPowerView Aggressor Script for CobaltStrike PowerViewReconAggressorScriptsSharphound-Aggressor- A user menu for the SharpHound ingestorReconServerScan内网横向信息收集的高并发网络扫描、服务探测工具。ExploitXSS-Fishing2-CS鱼儿在cs上线后自动收杆 / Automatically stop fishing in javascript after the fish is hookedExploitXSS-Phishingxss钓鱼,cna插件配合php后端收杆Exploitcustom_payload_generatorCobaltStrike3.0+ --> creates various payloads for Cobalt Strike's Beacon. Current payload formatsExploitCrossC2CrossC2 framework - Generator CobaltStrike's cross-platform beaconExploitGECCGo External C2 Client implementation for cobalt strike.ExploitCobaltstrike-MS17-010ms17-010 exploit tool and scanner.ExploitAES-PowerShellCodeStandalone version of my AES Powershell payload for Cobalt Strike.ExploitSweetPotato_CSCobaltStrike4.x --> SweetPotatoExploitElevateKitprivilege escalation exploitsExploitCVE-2018-4878CVE-2018-4878ExploitAggressor-ScriptsThe only current public is UACBypass, whose readme can be found inside its associated folder.ExploitCVE_2020_0796_CNA基于ReflectiveDLLInjection实现的本地提权漏洞ExploitDDEAutoCSsetup our stage(d) Web Delivery attackExploitgeaconImplement CobaltStrike's Beacon in Go (can be used in Linux)Persistencepersistence-aggressor-scriptpersistence-aggressor-scriptPersistencePeinject_dll弃用winexec函数,使用shellexecute函数,程序流不在卡顿,达到真正的无感。PersistenceTikiTorchTikiTorch follows the same concept(CACTUSTORCH) but has multiple types of process injection available, which can be specified by the user at compile time.PersistenceCACTUSTORCHA JavaScript and VBScript shellcode launcher. This will spawn a 32 bit version of the binary specified and inject shellcode into it.PersistenceUploadAndRunFrp上传frpc并且运行frpcPersistencepersistence-aggressor-scriptPersistence Aggressor ScriptAuxiliaryCobaltstrike-atexec利用任务计划进行横向,需要与135端口、445端口进行通信AuxiliarySharpCompileSharpCompile is an aggressor script for Cobalt Strike which allows you to compile and execute C# in realtime.AuxiliaryQuickrundownUtilizing QRD will allow an operator to quickly characterize what processes are both known and unknown on a host through the use of colors and notes about the processes displayed.AuxiliaryPhant0m_cobaltstrikeThis script walks thread stacks of Event Log Service process (spesific svchost.exe) and identify Event Log Threads to kill Event Log Service Threads. So the system will not be able to collect logs and at the same time the Event Log Service will appear to be running.AuxiliaryNoPowerShellNoPowerShell is a tool implemented in C# which supports executing PowerShell-like commands while remaining invisible to any PowerShell logging mechanisms.AuxiliaryEventLogMasterRDP EventLog MasterAuxiliaryANGRYPUPPYBloodhound Attack Path Execution for Cobalt StrikeAuxiliaryCobaltStrike_Script_Wechat_Push上线微信提醒的插件,通过微信Server酱提醒AuxiliaryCS-Aggressor-Scriptsslack and webhooks reminderAuxiliaryAggressor-Scriptssurveying of powershell on targets (在对应的目标上检测powershell的相关信息)Auxiliarycs-magikImplements an events channel and job queue using Redis for Cobalt Strike.AuxiliaryAggressorScripts查看进程的时候讲av进程标注为红色AuxiliaryRavenCobaltStrike External C2 for WebsocketsAuxiliaryCobaltStrikeParserPython parser for CobaltStrike Beacon's configurationAuxiliaryfakelogonscreenFakeLogonScreen is a utility to fake the Windows logon screen in order to obtain the user's password.AuxiliarySyncDogMake bloodhound sync with cobaltstrike.SynthesisErebusCobaltStrike4.x --> Erebus CobaltStrike后渗透测试插件SynthesisCobalt-Strike-Aggressor-ScriptsCobaltStrike后渗透测试插件集合 UsageSynthesisAggressorScriptsAggressor scripts for use with Cobalt Strike 3.0+SynthesisRedTeamToolsRedTeamTools for use with Cobalt StrikeSynthesiscobalt-arsenalAggressor Scripts for Cobalt Strike 4.0+SynthesisMoveKitThe aggressor script handles payload creation by reading the template files for a specific execution type. introSynthesisStayKitThe aggressor script handles payload creation by reading the template files for a specific execution type. introSynthesisAggressorScriptsAggressorScriptsSynthesisAggressorScriptsCollection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sourcesSynthesisAggressorScriptsAggressorScriptsSynthesisAggressor-VYSECContains a bunch of CobaltStrike Aggressor ScriptsSynthesisAggressorAssessorAggressorAssessorSynthesisAggressorAssessorAggressorAssessorSynthesisaggressor-scriptsCollection of Cobalt Strike Aggressor ScriptsSynthesisAggressor-scriptsThis is just a random collection of Aggressor Scripts I've written for Cobalt Strike 3.x. (其中有一个debug脚本比较好用)SynthesisAggressor-ScriptCollection of Aggressor Scripts for Cobalt Strike(主要包含了提权和权限维持脚本)SynthesisAggressor-ScriptAggressor Script, Kit, Malleable C2 Profiles, External C2 and so onSynthesisaggressor_scripts_collectionCollection of various aggressor scripts for Cobalt Strike from awesome people. Will be sure to update this repo with credit to each person.SynthesisCobaltStrike-ToolKitgooglesearch.profile and script related to AD.SynthesisArsenalCobalt Strike 3.13 Arsenal KitSynthesiscobalt-arsenalMy collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+Synthesisaggressor_scriptscode execution via DCOM;the privilege escalation techniques included in ElevateKit;etc.Synthesisaggressor_scriptscode execution via DCOM;the privilege escalation techniques included in ElevateKit;etc.Synthesisaggressorcreating tunnels with netsh; changed default to bit.ly redirect to mcdonalds;using powershell to kill parent process;SynthesisCobaltStrikeCNAA collection of scripts - from various sources - see script for more info.SynthesisAggressorScriptsHighlights selected processes from the ps command in beacon;Loads various aliases into beacon;sets a few defaults for scripts to be used later..SynthesisAggressorAssessor从C2生成到横向移动的全辅助脚本套件SynthesisAggressorCollectionCollection of awesome Cobalt Strike Aggressor Scripts. All credit due to the authorsSynthesisCobaltstrike-Aggressor-Scripts-CollectionThe collection of tested cobaltstrike aggressor scripts.SynthesisaggressorScriptsCobaltStrike AggressorScripts for the lazySynthesiscobalt_strike_extension_kit集成了SharpHound,SharpRDP,SharpWMI等在内的各种内网工具,使用AggressorScripts构建workflow

文章来源: http://www.cnblogs.com/backlion/p/14000269.html
如有侵权请联系:admin#unsafe.sh