=============================================================================
Cobalt Strike v4.0 - Advanced Threat Tactics Software
=============================================================================
*** https://www.cobaltstrike.com ***
1. What is Cobalt Strike?
----------------------
Cobalt Strike is software for Adversary Simulations and Red Team Operations.
Adversary Simulations and Red Team Operations are security assessments that
replicate the tactics and techniques of an advanced adversary in a network.
While penetration tests focus on unpatched vulnerabilities and
misconfigurations, these assessments benefit security operations and incident
response.
Cobalt Strike gives you a post-exploitation agent and covert channels to
emulate a quiet long-term embedded actor in your customer's network.
Malleable C2 lets you change your network indicators to look like different
malware each time. These tools complement Cobalt Strike's solid social
engineering process, its robust collaboration capability, and unique reports
designed to aid blue team training.
2. Documentation
-------------
Documentation for Cobalt Strike is located on the Cobalt Strike website at:
https://www.cobaltstrike.com. Read the FAQ and the Manual for information
on how to use Cobalt Strike. Watching the free online training is highly
encouraged as well.
3. Install and Update
------------------
This package contains the launcher and supporting files to use the
Cobalt Strike product. Run the 'update' program to download the latest
version of the Cobalt Strike product. This step will also generate
an authorization file that allows Cobalt Strike to run.
Further information for each operating system is available at:
https://www.cobaltstrike.com/support
4. Legal
-----
Cobalt Strike (c) 2012-2020 Strategic Cyber LLC
Cobalt Strike is proprietary software. You must purchase a license to use it
or use it for the granted trial period only. Use of Cobalt Strike constitutes
acceptance of the End User License Agreement at:
https://www.cobaltstrike.com/license
5. Support
-------
Email [email protected] for help with this product.
6. Credits for third-party components
-------
Cobalt Strike makes use of code and/or content from the following sources:
Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK) - (c) 2017 The MITRE Corporation. (This work is reproduced and distributed with the permission of The MITRE Corporation.)
https://attack.mitre.org/
Apache FOP - (c) 1999-2010 The Apache Software Foundation (Apache 2.0 License)
http://xmlgraphics.apache.org/fop/
Apache JAMES Mime4j - (c) 2004-2010 The Apache Software Foundation (Apache 2.0 License)
http://james.apache.org/mime4j/
Draggable Tabbed Pane - (c) Tom Martin (Creative Commons 3.0 Share-Alike [Attribution Required] License)
http://stackoverflow.com/questions/60269/how-to-implement-draggable-tab-using-java-swing
ipcalf - (c) 2012-2014 Nathan Vander Wilt (MIT License)
https://github.com/natevw/ipcalf
ISO C9x compliant stdint.h for Microsoft Visual Studio - (c) 2006-2013 Alexander Chemeris (BSD License)
https://github.com/chemeris/msinttypes/blob/master/stdint.h
JGraphX - (c) JGraph Ltd 2006-2012 (BSD License)
http://www.jgraphx.com/
jQuery - (c) The jQuery Foundation 2012 (MIT License)
http://www.jquery.com/
Jsign 1.3 - (c) Emmanuel Bourg (Apache 2.0 License)
http://ebourg.github.com/jsign
libssh2 - SSH2 library - (c) Sara Golemon et al. (BSD License)
https://github.com/libssh2/libssh2
LibTomCrypt - developed by Tom St Denis (Public Domain/WTFPL)
http://libtom.org/?page=index&newsitems=5&whatfile=crypt
Metasploit Framework - (c) Rapid7 Inc. 2012 (BSD License)
http://www.metasploit.com/
mbed TLS 2.14.1 - (c) 2018 ARM Limited (Apache 2.0 License)
https://tls.mbed.org/
Mimikatz 2.2 - (c) Benjamin 'gentilkiwi' Delpy (Creative Commons Attribution 4.0)
License: http://creativecommons.org/licenses/by/4.0/
http://blog.gentilkiwi.com/
Mono Icon Set - (c) Gentleface Inc. (Royalty Free License to Strategic Cyber LLC)
http://www.gentleface.com/free_icon_set.html
msfgui - (c) Matt Weeks 2010-2012 (BSD License)
http://www.metasploit.com/
NanoHTTPD - (c) 2001,2005-2012 J. Elonen and (c) 2010 K. Togias (Modified BSD License)
http://elonen.iki.fi/code/nanohttpd/
PowerShell Native API Functions - (c) 2012, Matt Graeber (BSD License)
http://www.exploit-monday.com/2012/05/accessing-native-windows-api-in.html
Reflective DLL Injection - (c) 2011, Stephen Fewer of Harmony Security (BSD License)
https://github.com/stephenfewer/ReflectiveDLLInjection
Synthetica Look and Feel - (c) Jyloo Software (Commercial License to Strategic Cyber LLC)
http://www.jyloo.com/synthetica/
tango-icon-theme-package - Tango Desktop Project (Public Domain)
http://tango.freedesktop.org/
TightVNC Java Viewer - (c) GlavSoft LLC (Commercial License to Strategic Cyber LLC)
http://www.tightvnc.com/
UACME - (c) UACME Project, hFiref0x (BSD License)
https://github.com/hfiref0x/UACME/
Unmanaged PowerShell - (c) 2015, Lee Christensen (BSD License)
https://github.com/leechristensen/UnmanagedPowerShell
user-agent-utils 1.13 - (c) 2008, Harald Walker (BSD License)
https://github.com/HaraldWalker/user-agent-utils
WinPcap - (c) 2005-2010 CACE Technologies (BSD License)
http://www.winpcap.org/
XMLmind XSL-FO Converter - (c) 2002-2012 Pixware SARL (Developer License to Strategic Cyber LLC)
http://www.xmlmind.com/foconverter/
Cobalt Strike distributes the following third-party programs for deployment as needed:
TightVNC 1.3.10 - (c) 2000-2009 TightVNC Group and others (GPLv2 License)
https://github.com/rsmudge/vncdll
7. Licenses for third-party components
--------
Cobalt Strike is a commercial work developed at private expense. The end
user license agreement for the Cobalt Strike package is described in part 4
of this readme file.
Below are copies of the licenses assigned to the various components used by
Cobalt Strike.
BSD License
-----------
Copyright (c) <YEAR>, <OWNER>
All rights reserved.
Redistribution and use in source and binary forms, with or without modification, are permitted provided that the following conditions are met:
Redistributions of source code must retain the above copyright notice, this list of conditions and the following disclaimer.
Redistributions in binary form must reproduce the above copyright notice, this list of conditions and the following disclaimer in the documentation and/or other materials provided with the distribution.
Neither the name of the <ORGANIZATION> nor the names of its contributors may be used to endorse or promote products derived from this software without specific prior written permission.
THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
Modified BSD License
--------------------
Redistribution and use in source and binary forms, with or without
modification, are permitted provided that the following conditions
are met:
Redistributions of source code must retain the above copyright notice,
this list of conditions and the following disclaimer. Redistribu
没有合适的资源?快使用搜索试试~ 我知道了~
温馨提示
CS简介 CS 是Cobalt Strike的简称,是一款渗透测试神器,常被业界人称为CS神器。Cobalt Strike已经不再使用MSF而是作为单独的平台使用,它分为客户端与服务端,服务端是一个,客户端可以有多个,可被团队进行分布式协团操作。 CobaltStrike集成了端口转发、扫描多模式端口Listener、Windows exe程序生成、Windows dll动态链接库生成、java程序生成、office宏代码生成,包括站点克隆获取浏览器的相关信息等。 CS功能 Cobalt Strike可以使用 AggressorScripts脚本来加强自身,能够扩展菜单栏,Beacon命令行,提权脚本等。 Cobalt Strike通信配置文件是 Malleable C2,你可以修改CS的通讯特征,Beacon payload的一些行为。 Cobalt Strike可以引用其他的通讯框架ExternalC2,ExternalC2是由Cobalt Strike提出的一套规范/框架,它允许黑客根据需要对框架提供的默认HTTP(S)/DNS/SMB C2 通信通道进行扩展。
资源推荐
资源详情
资源评论


















收起资源包目录


























共 22 条
- 1
资源评论


故事讲予风听
- 粉丝: 8564
上传资源 快速赚钱
我的内容管理 展开
我的资源 快来上传第一个资源
我的收益
登录查看自己的收益我的积分 登录查看自己的积分
我的C币 登录后查看C币余额
我的收藏
我的下载
下载帮助


最新资源
- 信息网络安全专业技术人员继续教育培训.doc
- 中间件------.pdf
- 有关计算机求职信汇编五篇.docx
- 风扇气动噪声仿真技术:Fluent与LMS Virtual Lab结合FEMBEM法的应用
- 数学建模matlab.pptx
- 谭木匠网络营销策划书.doc
- 农村电子商务培训.pptx
- 网络培训学习收获感悟(精选8篇).docx
- 计算机组装与维护教学总结.docx
- 关于推进上海智慧城市建设的三点建议(最新整理).pdf
- 因特网、万维网、网格及云计算名词解释及分析.ppt
- 数据库系统原理重点简答题精粹.pdf
- 2023年江苏省中小学教师心理健康知识网络竞赛完整版.doc
- 区块链技术的工作原理.doc
- PQ并网功率控制:MMC模块化多电平换流器技术文档与仿真研究 - 电力电子
- 公司网络情况分析汇报.doc
资源上传下载、课程学习等过程中有任何疑问或建议,欢迎提出宝贵意见哦~我们会及时处理!
点击此处反馈



安全验证
文档复制为VIP权益,开通VIP直接复制
