CodeX (@CodeXTF2)
  • Stars
    star
    1,565
  • Global Rank 19,665 (Top 0.7 %)
  • Followers 404
  • Following 44
  • Registered about 7 years ago
  • Most used languages
    Python
    50.0 %
    C
    12.5 %
    C++
    12.5 %
    Shell
    6.3 %
    PowerShell
    6.3 %
    C#
    6.3 %
    YARA
    6.3 %
  • Location 🇺🇸 United States
  • Country Total Rank 6,878
  • Country Ranking
    YARA
    26
    C
    569
    Python
    2,536
    PowerShell
    3,200
    C++
    3,935
    C#
    7,183

Top repositories

1

Burp2Malleable

Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles
Python
347
star
2

ScreenshotBOF

An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memory.
C
339
star
3

WindowSpy

WindowSpy is a Cobalt Strike Beacon Object File meant for automated and targeted user surveillance.
C
254
star
4

maldev-links

My collection of malware dev links
219
star
5

cobaltstrike-headless

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.
144
star
6

HavocNotion

A simple ExternalC2 POC for Havoc C2. Communicates over Notion using a custom python agent, handler and extc2 channel. Not operationally safe or stable, built as a PoC to showcase Havoc C2's modular C2 channel interface.
Python
81
star
7

PyHmmm

Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog post as a tutorial sample
Python
72
star
8

BusySleepBeacon

This is a simple project made to evade https://github.com/thefLink/Hunt-Sleeping-Beacons by using a busy wait instead of beacon's built in Sleep() call. Most of the structure e.g. Sleep hook, shellcode exec etc. are taken from mgeeky's https://github.com/mgeeky/ShellcodeFluctuation.
C++
29
star
9

evasion-adventures-files

Slides and POC demo for my talk at Divizion Zero on EDR evasion titled "Evasion Adventures"
C++
21
star
10

CobaltStrikeSoundBoard

Python
10
star
11

cobaltstrike-sleepmask-yara

Just a git repo for the sleepmask detection rule i found in https://codex-7.gitbook.io/codexs-terminal-window/blue-team/detecting-cobalt-strike/sleep-mask-kit-iocs
YARA
10
star
12

SharpAwareness

Light and more OPSEC friendly way for red teamers to gain quick situational awareness of both the host and the user.
C#
9
star
13

beacon_notify_discordhook

Probably the easiest way to setup new beacon notifications in Cobalt Strike
Python
8
star
14

goautodial-rce-exploit

Pops a shell on a goautodial server
Python
3
star
15

CodeXTF2

2
star
16

my-bashrc

My bashrc file
Shell
1
star
17

Simulated-User

Python
1
star
18

CodeXTF2.github.io

1
star
19

James-Server-RCE

Improved version of the james server RCE. Spawns a reverse shell that can bypass rbash ;)
Python
1
star
20

codexs-useful-utils

Misc utils I made here and there, collected in one place
PowerShell
1
star