CoffLoader

BOF handler

An implementation of in-house CoffLoader supporting CobaltStrike standard BOF and BSS initialized variables.

GitHub

48 stars
2 watching
14 forks
Language: C
last commit: almost 2 years ago

Related projects:

Repository Description Stars
yaxser/coffloader2 A COFF file loader that executes COFF files and Cobalt Strike BOFs in-memory 206
cobalt-strike/unhook-bof Removes API hooks from a malicious process 54
0x3rhy/adduser-bof A Cobalt Strike BOF that exploits a vulnerability to add an admin user 70
yaxser/cobaltstrike-bof A collection of proof-of-concepts demonstrating lateral movement techniques using Windows and CobaltStrike 342
m57/cobaltstrike_bofs Exploits SeBackupPrivilege to dump remote system hives and credentials. 159
falconforceteam/bof2shellcode Converts Cobalt Strike BOF files to raw shellcode 175
trustedsec/coffloader Tools and utilities for loading, testing, and analyzing malicious COFF files 482
cobalt-strike/bof-vs A Beacon Object File Visual Studio template project for creating malicious code executables 145
boku7/halosgate-ps A Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system. 95
ccob/bof.net A .NET runtime framework for developing and executing malicious C code in a managed environment. 682
pwn1sher/cs-bofs A collection of compiled beacon object files from the CobaltStrike platform. 101
riccardoancarani/bofs Utilities for Cobalt Strike's Beacon Object Files to simplify working with shellcode and system processes 112
airbus-cert/invoke-bof Loads and executes a malicious payload in a Windows system using PowerShell. 245
boku7/spawn A Cobalt Strike Beacon tool that spawns a sacrificial process to execute shellcode, using techniques like Arbitrary Code Guard and PPID spoofing to evade detection. 440
octoberfest7/dropspawn_bof A CobaltStrike payload that uses DLL hijacking to spawn additional Beacons on Windows systems 219