
DNSRPC-BOF
Beacon Object File (BOF) implementation of the dnscmd.exe functionality used to obtain remote code execution on an ADIDNS server by exploiting the…

Beacon Object File (BOF) implementation of the dnscmd.exe functionality used to obtain remote code execution on an ADIDNS server by exploiting the…

Exploits unauthenticated RCE in Apache Gravitino < 1.2.1 via H2 JDBC INIT; hosts SQL/Java payloads, executes commands, and exfiltrates output over…


Run Beacon Object Files (BOFs) outside Cobalt Strike by parsing 64-bit COFF object files, with Beacon-compatible argument generation and helper…

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Docker projects to retain beacon source IPs using C2 relaying infra

Cobalt Strike 的 CVE-2024-35250 的 BOF。(请给我加个星,谢谢。)

Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.

Detects phi-structured C2 beacons that evade RITA and standard regularity-based detectors

Cobalt Strike Beacon Object File implementing CVE-2020-0796 SMBGhost local privilege escalation with dual weaponization paths for token theft and…

Reproduction of CVE-2022-39197, a remote code execution vulnerability in Cobalt Strike Beacon triggered by XSS via malformed usernames, with…

A suite of WiFi/Bluetooth offensive and defensive tools for the ESP32

Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.

BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel

LocalPotato NTLM reflection exploit (CVE-2023-21746) as a Cobalt Strike Beacon Object File

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

CVE-2024-26229 Beacon Object File version