Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/loecho-sec/CobaltStrike_Script_Wechat_Push

CobatStrike-Script, Beacon上线,微信实时推送!
https://github.com/loecho-sec/CobaltStrike_Script_Wechat_Push

beacon cna cobalt-strike cs wechat

Last synced: 3 months ago
JSON representation

CobatStrike-Script, Beacon上线,微信实时推送!

Awesome Lists containing this project

README

        

# CobaltStrike Becon 上线提醒

## 0x01 起因:

因为最近在测试一些社工钓鱼方式的目标,每次等待Beacon回弹有点蛋疼!

就按照网上的一些方式,写了一个上线提醒的插件,通过微信Server酱提醒,效果测试后还可以!

## 0x02 测试配置

1. 远程上线一下:

![](https://loecho.oss-cn-beijing.aliyuncs.com/BlogImg20200421145137.png)

2. Beacon 回弹,server酱提醒!

![](https://loecho.oss-cn-beijing.aliyuncs.com/BlogImg20200421145927.png)

3.使用方法:

因为是通过客户端提醒的,我们可以通过CobaltStrike 自带的agscript来运行这个插件,在服务端后台运行:

**(0) 填入你的Server酱的Key,Server酱官网链接如下:**

http://sc.ftqq.com/3.version

**(1) 打开链接,登入Github账号,微信绑定公众号,在微信推送选项里就有key.**

**(2) 打开cna文件,添加Key:**

![](https://loecho.oss-cn-beijing.aliyuncs.com/BlogImg20200421150846.png)

**(3) 后台运行cna插件:**

```
./agscript [host] [port] [user] [pass]
```

- [host] 服务端IP
- [port] cs的端口号,默认50050
- [user] 用户名
- [pass] cs的密码
- [path] cna插件的路径

**(4) 配置成功后,你的Server酱会收到测试消息!**

**(5) 如果想通过其他webhook方式推送,自行修改!**