当前位置:网站首页>【内网渗透】cobaltstrike流量加密
【内网渗透】cobaltstrike流量加密
2022-07-21 05:08:00 【3Ss安全前线】
文章目录
cobaltstrike流量加密
生成免费的ssl证书
keytool -genkey -alias sanss -keyalg RSA -validity 36500 -keystore sanss.store
sanss sanss.store 这两个字符串都要记住,因为修改profile要使用填写相关的地区信息,这些信息填写后再profile上还要使用
填写完最后选择y会生成一个文件
放到cobaltstrike目录下
创建profile文件写入如下
set sample_name "moonsec POS Malware";
set sleeptime "5000"; # use a ~30s delay between callbacks
set jitter "10"; # throw in a 10% jitter
set useragent "Mozilla/5.0 (Windows NT 6.1; rv:24.0) Gecko/20100101
Firefox/24.0";
#设置证书
https-certificate {
set CN "sanss";
set O "sanss";
set C "sanss";
set L "sanss";
set OU "sanss";
set ST "sanss";
set validity "365";
}#设置
code-signer{
set keystore "sanss.store";
set password "abcd1234.";
set alias "sanss";
}#指定 DNS beacon 不用的时候指定到 IP 地址
set dns_idle "8.8.4.4";
#每个单独 DNS 请求前强制睡眠时间
set dns_sleep "0";
#通过 DNS 上载数据时主机名的最大长度[0-255]
set maxdns "235";
http-post {
set uri "/windebug/updcheck.php /aircanada/dark.php /aero2/fly.php
/windowsxp/updcheck.php /hello/flash.php";
client {
header "Accept" "text/plain";
header "Accept-Language" "en-us";
header "Accept-Encoding" "text/plain";
header "Content-Type" "application/x-www-form-urlencoded";
id {
netbios;
parameter "id";
}
output {
base64;
prepend "&op=1&id=vxeykS&ui=Josh @
PC&wv=11&gr=backoff&bv=1.55&data=";
print;
} }
server {
output {
print;
} } }
http-get {
set uri "/updates";
client {
metadata {
netbiosu;
prepend "user=";
header "Cookie";
} }
server {
header "Content-Type" "text/plain";
output {
base64;
print;
} } }
把这里修改一下,修改成自己生成的
测试证书是否可用
./c2lint sanss.profile
再修改teamserver默认端口
之后启动带上证书就可以了
边栏推荐
- Thinkphp6 uses easywechat5 X official account development (II)
- 鼠标禁用样式(cursor: not-allowed)无效和鼠标禁用事件(pointer-events: none)冲突
- Nodejs+Express使用 cors 中间件解决跨域问题
- tp5导入excel到数据库
- 【PHP代码审计】Pikachu靶场漏洞入门分析
- Flutter error record: navigator dart‘: Failed assertion: line 4041 pos 12: ‘!_ debugLocked‘: is not true.
- Zero dimensional interior ballistic equations of solid rocket motor
- BUUCTF(misc)
- OpenFoam小技巧
- thinkphp5.1 利用 PHPMailer 发送邮件
猜你喜欢
【逆向分析】基础入门-简单控制台登录
[geek challenge 2019] easy, love, baby SQL
Wechat applet request:fail -2:net:: err_ FAILED
Nvm、Nrm使用教程
Nodejs+express uses CORS middleware to solve cross domain problems
Attack and defense World Web Zone difficulty level: 2 (upload1, web2, web_php_include, supersqli, warmup)
BUUCTF-web-随便注
tp5导入excel到数据库
1. Vite acquaintance and vite construction project
Thinkphp6 learning experience
随机推荐
线性薛定谔方程实现界面推移
From going to IOE to cipu, cloud computing in China should go its own way
PHP数组根据关联数组的键进行降序排列
php(tp框架)使用阿里云OSS存储
Derivation of Jacobian characteristic system for two-dimensional inviscid flow
Flutter error record: navigator dart‘: Failed assertion: line 4041 pos 12: ‘!_ debugLocked‘: is not true.
Invalid mouse disabled style (cursor: not allowed) conflicts with mouse disabled events (pointer events: none)
Yar framework implements RPC
OpenFoam小技巧
Nodejs waits for a period of time
BUUCTF [SUCTF 2019]EasySQL
Storage principle of JS data type in memory
OpenFoam中的VOF相变方程
【逆向分析】基础入门-简单控制台登录
固体火箭发动机零维内弹道方程组
ThinkPHP6 学习心得
The text file is transferred to the external server through the web proxy server and returned after modification
PHP的魔术方法
NPM related information
Attack and defense World Web Zone difficulty level: 3 (ics-05, MFW, easytornado)