mirror of
https://github.com/avast/ioc
synced 2024-06-29 18:21:19 +00:00
11 lines
497 B
Markdown
11 lines
497 B
Markdown
# Cobalt Strike tools and yara rules
|
|
|
|
More technical informations at <https://decoded.avast.io/threatintel/decoding-cobalt-strike-understanding-payloads/>
|
|
|
|
### Table of Contents
|
|
* [api_hashes](api_hashes) - API hash generator, win10 hash list
|
|
* [checksum8](checksum8) - checksum8 generator, request query list
|
|
* [ida_scripts](ida_scripts) - IDAPython helper scripts
|
|
* [payload_tools](payload_tools) - extractor and parser for payloads
|
|
* [yara_rules](yara_rules) - CS hunting yara rules
|