A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!
1.26k
stars
244
forks
source link
Implement find_api_return_address_on_stack to find thread start frame… #32
Closed
susMdT closed 1 year ago
… return addresses rather than hard coded 0x14/0x21 offsets