The Complete Guide to Hunting Cobalt Strike – Part 1: Detecting in Open Directories
Summary
Part 1 of the Cobalt Strike series: using AttackCapture to mine open directories for PowerShell loaders and configs, then pivoting via SSL certificates and fingerprints to map live C2 servers.
- Published
- Collected
Skip to content