Over a year ago, I left my position at WithSecure to start a new journey, create something new, and do my own thing. Today, I'm excited to publicly announce what I've been working on all this time.
Introducing 0xC2, a cross-platform C2 framework targeting Windows, Linux, and
Cube0x0
1,324 posts
0xC2.io -founder
πΈπͺ
- When you spend 2-months of your private time writing a full-featured C2 framework including C++ GUI, Backend, and a C++ PIC agent with custom functions only to end up clueless about what to do with it
- Scanner and automated exploitation of the CVE-2021-42287/CVE-2021-42278. Yet another low effort domain user to domain admin exploit github.com/cube0x0/noPac
- Let me introduce you to KrbRelay, the only public tool for relaying Kerberos tickets and the only relaying framework written in C#. No-fix LPE + No-fix Cross-Session, VDI deployments has never been more broken. Demo at Images/demo.mp4 ! github.com/cube0x0/KrbRelβ¦
- Impacket implementation of CVE-2021-1675 π₯
- Elevate to SYSTEM from a Service Account with Impersonate privileges by only using C# code and the built-in RPC runtime! Great research from @tiraniddo googleprojectzero.blogspot.com/2021/10/windowβ¦
- Took a break from the LSASS parser project to create a PoC in C# for CVE-2021-36934 aka #HiveNightmare/#SeriousSam with a built-in hive parser github.com/cube0x0/CVE-20β¦
- github.com/cube0x0/SharpS⦠now with more potato. Locally trigger system or cross-session user authentication
- LocalPoato SMB relaying client β ADCS relaying clientβ LDAP relaying clientβ RPC over SMB relaying clientβ All in C# π
- C# LPE implementation released CVE-2021-1675 and execute-assembly goes bbrrrrrrrr github.com/cube0x0/CVE-20β¦
- C# port of Mimikatz/Pypykatz minidump parser released, shoutout to @SkelSec @gentilkiwi @b4rtik github.com/cube0x0/MiniDuβ¦
- A new blog post about relaying YubiKeys is up and tools have been uploaded to GitHub! This would not have been possible without the previous work of @_EthicalChaos_ so big thanks to him cube0x0.github.io/Relaying-YubiKβ¦
- I'll be taking a break from C# dev and focus on C2 and malware dev instead for a while. First up is Kerberoasting BOF github.com/cube0x0/BofRoaβ¦














