Development Posted on September 28, 2016 (May 3, 2022) Cobalt Strike RCE. Active Exploitation Reported. Summary There is a remote code execution vulnerability in the Cobalt Strike team server. A hot fix that breaks this particular exploit chain is available. Read More
Development Posted on September 22, 2016 (September 30, 2022) Cobalt Strike 3.5 – UNIX Post Exploitation Cobalt Strike 3.5 is now available. This release adds an SSH client with a Beacon-like interface. This client allows you to conduct post-exploitation actions against Read More
Development Posted on July 15, 2016 (May 3, 2022) HOWTO: Reset Your Cobalt Strike License Key Time to time, I hand out Cobalt Strike license keys to non-customers. Sometimes these are to support an event (e.g., the National CCDC Red Team). Read More
Development Posted on May 18, 2016 (April 26, 2023) Cobalt Strike 3.3 – Now with less PowerShell.exe Cobalt Strike 3.3 - Now with less PowerShell.exe. :) [...]Read More... Read More
Development Posted on April 28, 2016 (May 3, 2022) User Exploitation at Scale Some hackers only think about access. It’s the precious. How to get that first shell? I don’t care too much about this. I’m concerned about Read More
Development Posted on January 27, 2016 (May 3, 2022) A Quick Guide to Bug Reports One of the hardest parts of being a developer is working with bug reports and support requests disguised as bug reports. Some people write very Read More
Development Posted on October 26, 2015 (May 3, 2022) Connection Refused Error in Cobalt Strike I’ve had several folks write to me asking about the Connection Refused error when they try to use Cobalt Strike. This one: Cobalt Strike 3.0 Read More
Development Posted on October 7, 2015 (May 3, 2022) Named Pipe Pivoting One of my favorite features in Cobalt Strike is its ability to pivot over named pipes. A named pipe is a way for two programs Read More
Development Posted on July 29, 2015 (October 19, 2022) Cobalt Strike 2.5 – Advanced Pivoting I spend a lot of my red time in the Access Manager role. This is the person on a red team who manages callbacks for Read More
Development Posted on April 8, 2015 (October 19, 2022) Cobalt Strike 2.4 – A Pittance for Post-Exploitation Cobalt Strike 2.4 is now available. If you use Beacon for post-exploitation, you’ll find a lot to like in this release. Here’s the highlights: Post-Exploitation Jobs Read More