AddUser-Bof

BOF tool

A Cobalt Strike BOF that exploits a vulnerability to add an admin user

Cobalt Strike BOF that Add an admin user

GitHub

70 stars
1 watching
13 forks
Language: C
last commit: almost 4 years ago

Related projects:

RepositoryDescriptionStars
rvrsh3ll/bof_collectionA collection of Cobalt Strike Beacon Objectives (BOFs) that perform various tasks such as domain information retrieval, clipboard data extraction, WiFi enumeration, port scanning, and registry persistence.593
mlcsec/asrenum-bofTools to detect and exploit vulnerabilities in Windows Attack Surface Reduction (ASR) settings142
cobalt-strike/bof-vsA Beacon Object File Visual Studio template project for creating malicious code executables145
byt3bl33d3r/bof-nimA tool that creates and executes Cobalt Strike Base of operations (BOF) files using the Nim programming language84
ccob/bof.netA .NET runtime framework for developing and executing malicious C code in a managed environment.682
crypt0p3g/bof-collectionA collection of beacon object files designed to be used in a remote access tool like Cobalt Strike.170
riccardoancarani/bofsUtilities for Cobalt Strike's Beacon Object Files to simplify working with shellcode and system processes112
guervild/bofsBeacon object files for Cobalt Strike158
wumb0/rust_bofA proof-of-concept project demonstrating how to create and compile Cobalt Strike Beacon Object Files in Rust254
boku7/halosgate-psA Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.95
netero1010/rdphijack-bofA tool for hijacking remote RDP sessions using the WinStationConnect API297
cobalt-strike/unhook-bofRemoves API hooks from a malicious process54
netero1010/quser-bofA proof-of-concept implementation of a Windows API-based backdoor using the quser.exe utility83
rsmudge/zerologon-bofAn implementation of a Zero Logon protocol Bounce Of Flood (ZoBoF) vulnerability exploitation technique157
like0x/adddefenderexclusions-bofA tool to add exclusions to a security system's defender to prevent false positives or unwanted alerts32