CoffLoader

BOF handler

An implementation of in-house CoffLoader supporting CobaltStrike standard BOF and BSS initialized variables.

GitHub

48 stars
2 watching
14 forks
Language: C
last commit: over 3 years ago

Related projects:

RepositoryDescriptionStars
yaxser/coffloader2A COFF file loader that executes COFF files and Cobalt Strike BOFs in-memory206
cobalt-strike/unhook-bofRemoves API hooks from a malicious process54
0x3rhy/adduser-bofA Cobalt Strike BOF that exploits a vulnerability to add an admin user70
yaxser/cobaltstrike-bofA collection of proof-of-concepts demonstrating lateral movement techniques using Windows and CobaltStrike342
m57/cobaltstrike_bofsExploits SeBackupPrivilege to dump remote system hives and credentials.159
falconforceteam/bof2shellcodeConverts Cobalt Strike BOF files to raw shellcode175
trustedsec/coffloaderTools and utilities for loading, testing, and analyzing malicious COFF files483
cobalt-strike/bof-vsA Beacon Object File Visual Studio template project for creating malicious code executables145
boku7/halosgate-psA Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.95
ccob/bof.netA .NET runtime framework for developing and executing malicious C code in a managed environment.682
pwn1sher/cs-bofsA collection of compiled beacon object files from the CobaltStrike platform.101
riccardoancarani/bofsUtilities for Cobalt Strike's Beacon Object Files to simplify working with shellcode and system processes112
airbus-cert/invoke-bofLoads and executes a malicious payload in a Windows system using PowerShell.245
boku7/spawnA Cobalt Strike Beacon tool that spawns a sacrificial process to execute shellcode, using techniques like Arbitrary Code Guard and PPID spoofing to evade detection.440
octoberfest7/dropspawn_bofA CobaltStrike payload that uses DLL hijacking to spawn additional Beacons on Windows systems219