当前位置:网站首页>Cobalt Strike安装教程
Cobalt Strike安装教程
2022-06-24 20:21:00 【小胡yhu】
CobaltStrike
CobaltStrike是一款渗透测试神器,被业界人称为CS神器。CobaltStrike分为客户端与服务端,服务端是一个,客户端可以有多个,可被团队进行分布式协团操作。
CobaltStrike集成了端口转发、服务扫描,自动化溢出,多模式端口监听,windows exe 木马生成,windows dll 木马生成,java 木马生成,office 宏病毒生成,木马捆绑。钓鱼攻击包括:站点克隆,目标信息获取,java 执行,浏览器自动攻击等等强大的功能!
Cobaltstrike teamserver的启动:
开启Cobaltstrike teamserver和运行GUI界面均需要Java环境,电脑上必须把Java装好,自行百度。
解压之后,看到文件中有这几个文件。
直接运行
./teamserver 192.168.1.115 12345678
192.168.1.115 //网卡IP地址
12345678 //密码
启动客户端
# ./start.sh
这里host填kali的ip,密码就是刚刚我们启动的密码,用户名默认neo就行,端口也是默认50050。
启动后的客户端:
CobaltStrike的使用
CobaltStrike模块
· New Connection:打开一个新连接窗口
· Preferences:偏好设置,就是设置CobaltStrike外观的
· Visualization:将主机以不同的权限展示出来(主要以输出结果的形式展示)
· VPN Interfaces:设置VPN接口
· Listeners:创建监听器
· Script Interfaces:查看和加载CNA脚本
· Close:关闭
cobaltstrike
设置监听器
设置Attack
寻找靶机漏洞,执行命令
靶机上线
提权
边栏推荐
- 【Redis实现秒杀业务②】超卖问题的解决方案
- Custom control - round dot progress bar (imitating one key acceleration in security guard)
- [redis realizes seckill service ④] one order for one person, and cannot be purchased repeatedly
- Qiniu cloud uploads video to get the first frame of video
- A plug-in framework for implementing registration free and login verification with hook technology
- Easy to wear - drop down radio
- activity生命周期
- Mobile security tool apktool
- Practical operation notes - notebook plus memory and ash cleaning
- C#和C 的CAN通信实验
猜你喜欢

If the order has not been paid for 30 minutes, it will be automatically cancelled. How can I achieve this?

Registration method of native method in JNI

Tiktok wallpaper applet, starlight wallpaper applet version 2.0, upgraded version
最新QQ微信域名防红PHP程序源码+强制跳转打开

Thermodynamic diagram display correlation matrix

Xcode预览(Preview)显示List视图内容的一个Bug及解决

Text editor of QT project practice ---------- episode 11

2022安全员-C证考试模拟100题及在线模拟考试

108 pages (40000 words) proposal for future apartment intelligent design platform project (version 2022)

ros(25):rqt_ image_ View reports an error unable to load plugin for transport 'compressed', error string
随机推荐
Use of file class filenamefilter & filefilter in io
ServerSocket and socket connection
Input series
The problem of multiple callback of video ads stimulated by applets (offcolse problem)
QT (36) -rapidjson parsing nested JSON
Uniapp encapsulated incentive advertisement, screen insert advertisement and banner advertisement
Kibana installation via kubernetes visual interface (rancher)
[redis realizes seckill business ③] specific implementation of optimistic lock for oversold problem
Tiktok wallpaper applet v1.0.2 function, new arrival function
108 pages (40000 words) proposal for future apartment intelligent design platform project (version 2022)
Custom control - round dot progress bar (imitating one key acceleration in security guard)
移动安全工具-apktool
Registration method of native method in JNI
移动安全工具-dex2jar
Syntax highlighting of rich text
The picture of wechat official account can not be displayed normally
Mobile security tool jarsigner
最新QQ微信域名防红PHP程序源码+强制跳转打开
启动服务11111
2021-11-05