# harleyQu1nn/AggressorScripts

Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources

Repository: https://github.com/harleyQu1nn/AggressorScripts
Canonical: https://ross.abutalabs.com/products/aggressorscripts
Language: C#
License Family: other
Topics: cna, aggressor-scripts, red-team, scripts, aggressor, cobalt-strike
Last push: 2023-06-30T15:26:52+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 3421, "days_push": 1160, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1530, forks 303 (observed 2026-08-28T04:04:59.260597+00:00)

## What it is
A curated collection of Aggressor scripts (.cna) for Cobalt Strike 3.0+, aggregated from multiple community sources. The scripts automate red-team tasks such as payload generation, AV/EDR detection, web delivery, and process enumeration.

## Use cases
- generate staged and stageless payloads from HTTP/HTTPS listeners
- detect antivirus software installed on target hosts
- identify EDR solutions running on local or remote hosts
- perform stageless web delivery via CertUtil.exe
- color-code process listings in Cobalt Strike
- keep a quick reference of red team commands and tips

## When to choose
- you operate Cobalt Strike and want ready-made Aggressor scripts for common red-team workflows
- you need quick payload generation, AV/EDR enumeration, or web delivery automation
- you want a consolidated script collection instead of hunting individual scripts across repos

## When to avoid
- you do not use Cobalt Strike or its Aggressor scripting engine
- you need actively maintained or officially supported tooling (no license, sporadic updates)
- you require scripts for defensive/blue-team operations

## Facets
- artifact type: library
- maturity: maintenance
- function: security, penetration-testing, developer-tools, workflow-automation
- domain: security, penetration-testing, developer-tools
- platform: cross-platform, cli
- tags: aggressor-scripts, cobalt-strike, red-team, cna, offensive-security, post-exploitation

## Member repositories
- harleyQu1nn/AggressorScripts (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:04:59.260597+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T04:31:24.906795+00:00, confidence not recorded.
  - readme: https://github.com/harleyQu1nn/AggressorScripts (fetched 2026-08-28T04:04:59.260597+00:00, sha 1a398cba92c9)
- Data as of 2026-08-30T08:39:29.467469+00:00.
