• XSS.stack #1 – первый литературный журнал от юзеров форума

прочее Voila!! CobaltStrike 4.4 cracked[.]

r1z

Still(In)Secure
КИДАЛА
Регистрация
19.07.2019
Сообщения
938
Реакции
822
Гарант сделки
30
Пожалуйста, обратите внимание, что пользователь заблокирован
Hi guys;

Today CobaltStrike 4.4 Last edition has been cracked; so i'm sure alot of guys here waiting this day;

E9PHq27X0AAGRV8.jpg

1628663653143.png

Cobalt Strike 4.4 (August 04, 2021) is release:
  • + Add support for User Defined reflective loaders.
  • https://www.cobaltstrike.com/help-user-defined-reflective-loader
  • + Add support for User Defined sleep masking.
  • https://www.cobaltstrike.com/help-sleep-mask-kit
  • + Product licensing and Security enhancements.
  • + Avoid localhost Sysmon event 22 for Beacon meta-data resolution.
  • + Validate beacons with sleep_mask set have enough code cave space.
  • + Update Mimikatz (2.2.0 20210724)
  • + Update Cobalt Strike updater with cert/subdomain info
  • + Add client reconnection option
  • + Add buffering when sending data via NanoHTTPD
  • + Update beacon help for link command
  • + Update c2lint to return a result code
  • + Add new dialog to the UI to view the Malleable C2 profile
  • + Add an "allow" option to useragents filter; complements the block added in 4.3
  • + Add alias field for server to login dialog
  • + Add alias to connection dialog
  • + Add alias on connection tabs on main Cobalt Strike screen
  • + Enhance c2lint and UI handling of coding signing functionality
  • + Enhance failover host rotation strategy(http/s 200 response with invalid data is a failure)
  • + Add spear phishing email template parsing validation to Send client action
  • + UI: enhancement request for Connect dialog to remember last connected teamserver
  • + Add better C2 linting for code signing configuration
  • + Checksum failure when building beacon using compiled Artifact kit
  • + Vulnerability report: Team server crashes when bombarded with too large screenshots. (added TeamServer.prop config)
  • + Fix error in arsenal build scripts (add bin/bash directive)
  • + Fix various places in the UI where required table row selection was not edited.
  • + Fix beacon error when a host entry of a listener contains a space at the end (trim host entry strings)
  • + Clicking into the screenshots/keystrokes tabs doesn't immediately focus the list
  • + Fix host rotation 'strategy' option documentation missing from 'listener_create_ext' aggressor function

For more sure and saftey; it's better to check the files your self! so we are in darknet; and none of us trust strangers; (you can create a jar package using java ida IntelliJ once you check the files!
In the next week i'm going to make the most important parts in this version which is stable in evading EDR/AV technique, keep tunned!

cs-idea.png


NOTE for all XSS members who vote in the contest and not!!
don't forget to vote for participate in xss.pro Context! 7days left & you have ability to vote for 3 Participate !! no only 1

https://xss.pro/threads/55078/

Код:
https://up.labstack.com/zQD87FRI

mirror download:
https://mirrorace.org/m/13c99

7af9c759ac78da920395debb443b9007fdf51fa66a48f0fbdaafb30b00a8a858 Cobalt Strike 4.4 Licensed (cobaltstrike.jar)
pass: r1z.xss
 
Последнее редактирование:
Пожалуйста, обратите внимание, что пользователь заблокирован
It's more safe to share without packed; i mention this above the source picture; for pack use: java ida IntelliJ
would be even nicer to share a packed version of it ? Thank you
 
  1. even nicer** he didnt say it isnt nice enough! where is the complaint?
    • this is the source code, and it needs to be packaged
    • would be even nicer to share a packed version of it ?
my english not best. in my country we say спасибо
 
Пожалуйста, обратите внимание, что пользователь заблокирован
even after he gives it away for free you still complain
Will update this today with JAR file; but guys... don't forget to vote for participate in xss.pro Context!

7days left & you have ability to vote for 3 Participate !! https://xss.pro/threads/55078/
 
Пожалуйста, обратите внимание, что пользователь заблокирован
it needs to be modified to avoid the EICAR strings in the stager, but also needs its teamserver and its c2lint.
Watch out what is inside teamserver bash file:

Bash:
java -XX:ParallelGCThreads=4 -Dcobaltstrike.server_port=50050 -Djavax.net.ssl.keyStore=./cobaltstrike.store -Djavax.net.ssl.keyStorePassword=123456 -server -XX:+AggressiveHeap -XX:+UseParallelGC -classpath ./cobaltstrike.jar server.TeamServer $*
 
Пожалуйста, обратите внимание, что пользователь заблокирован


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх