6
0
mirror of https://github.com/avast/ioc synced 2024-06-30 02:31:23 +00:00
ioc-collection/CobaltStrike/README.md
2021-07-08 01:35:11 +02:00

11 lines
497 B
Markdown

# Cobalt Strike tools and yara rules
More technical informations at <https://decoded.avast.io/threatintel/decoding-cobalt-strike-understanding-payloads/>
### Table of Contents
* [api_hashes](api_hashes) - API hash generator, win10 hash list
* [checksum8](checksum8) - checksum8 generator, request query list
* [ida_scripts](ida_scripts) - IDAPython helper scripts
* [payload_tools](payload_tools) - extractor and parser for payloads
* [yara_rules](yara_rules) - CS hunting yara rules