一个 Cobalt Strike 插件,用于快速生成可以规避杀软的 Beacon。目前可以绕过 Windows Defender。
下载地址:http://github.com/yutianqaq/CSx4Ldr
Install
cd /home/kali
git clone https://github.com/yutianqaq/CSx4Ldr
cd CSx4Ldr
wget https://ziglang.org/builds/zig-linux-x86_64-0.12.0-dev.3033+031f23117.tar.xz
tar -xf zig-linux-x86_64-0.12.0-dev.3033+031f23117.tar.xz
修改第 65 行 (path/to/zig
-> /home/kali/CSx4Ldr/zig/
)
修改第 73 行 (path/
-> /home/kali
)
$cmd = "path/to/zig build-exe /tmp/temp.zig -fstrip -fsingle-threaded --name x4Ldr -target x86_64-windows";
...[snip]...
exec($cmd, $null, "path");
加载后,将出现在 Attack -> CSx4Ldr
还可以使用快捷键 Ctrl + J
References
https://github.com/RCStep/CSSG
https://github.com/hack2fun/BypassAV