halosgate-ps
System info BOF
A Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.
Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes
95 stars
5 watching
24 forks
Language: C
last commit: over 2 years ago Related projects:
| Repository | Description | Stars |
|---|---|---|
| | A Beacon Object File Visual Studio template project for creating malicious code executables | 145 |
| | Utilities for Cobalt Strike's Beacon Object Files to simplify working with shellcode and system processes | 112 |
| | Beacon object files for Cobalt Strike | 158 |
| | A collection of beacon object files designed to be used in a remote access tool like Cobalt Strike. | 170 |
| | A Cobalt Strike Beacon tool that spawns a sacrificial process to execute shellcode, using techniques like Arbitrary Code Guard and PPID spoofing to evade detection. | 440 |
| | A collection of Cobalt Strike Beacon Objectives (BOFs) that perform various tasks such as domain information retrieval, clipboard data extraction, WiFi enumeration, port scanning, and registry persistence. | 593 |
| | Removes API hooks from a malicious process | 54 |
| | A .NET runtime framework for developing and executing malicious C code in a managed environment. | 682 |
| | A Cobalt Strike BOF that exploits a vulnerability to add an admin user | 70 |
| | A proof-of-concept project demonstrating how to create and compile Cobalt Strike Beacon Object Files in Rust | 254 |
| | Loads and executes a malicious payload in a Windows system using PowerShell. | 245 |
| | A collection of compiled beacon object files from the CobaltStrike platform. | 101 |
| | A tool that bypasses AMSI in a remote process with code injection. | 377 |
| | A toolset for working with direct system calls in Cobalt Strike's Beacon Object Files via Syswhispers2 | 178 |
| | Converts Cobalt Strike BOF files to raw shellcode | 175 |