mirror of
https://github.com/avast/ioc
synced 2024-06-16 11:58:39 +00:00
.. | ||
api_hashes | ||
checksum8 | ||
ida_scripts | ||
payload_tools | ||
yara_rules | ||
README.md |
Cobalt Strike tools and yara rules
More technical informations at https://decoded.avast.io/threatintel/decoding-cobalt-strike-understanding-payloads/
Table of Contents
- api_hashes - API hash generator, win10 hash list
- checksum8 - checksum8 generator, request query list
- ida_scripts - IDAPython helper scripts
- payload_tools - extractor and parser for payloads
- yara_rules - CS hunting yara rules