hunting-for-cobalt-strike-beacons

star 39

Detect Cobalt Strike beacon network activity using default TLS certificate signatures (serial 8BB00EE), JA3/JA3S/JARM fingerprints, HTTP C2 profile pattern matching, beacon jitter analysis, and named pipe detection via Zeek, Suricata, and Python PCAP analysis.

adriannoes By adriannoes schedule Updated 6/11/2026

Skill instructions (SKILL.md) could not be loaded from local cache or raw GitHub repository.

Install via CLI
npx skills add https://github.com/adriannoes/awesome-vibe-coding --skill hunting-for-cobalt-strike-beacons
Repository Details
star Stars 39
call_split Forks 5
navigation Branch main
article Path SKILL.md
More from Creator