DeEpinGh0st/Erebus
CobaltStrike后渗透测试插件 observed · 2026-08-28
Health v2 · maintenance only
23/100
- Activity 0
- Release rhythm 8
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 2533
- days_rel: n/a
- days_push: 1770
- n_releases_24m: 0
Adoption not part of the score
1568 stars · 219 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Erebus is a post-exploitation plugin for Cobalt Strike written in PowerShell and Sleep (Aggressor Script). It bundles information gathering, privilege escalation exploits, credential theft, browser cookie stealing, and various post-exploitation utilities into the Cobalt Strike beacon menu.
Use cases
- enumerate local privilege escalation vulnerabilities on a Windows target
- run Potato-family UAC bypass and elevation exploits from Cobalt Strike
- steal browser cookies from common Chinese and mainstream browsers
- dump Windows credentials with an AV-evading mimikatz variant
- clear RDP login traces on a compromised host
- enable RDP or turn off the firewall on a target machine
- collect system and user information with Seatbelt-style gathering
When to choose
- you run Cobalt Strike 4.x and want an integrated post-exploitation toolkit
- you need quick Windows privilege escalation and credential access during authorized red-team engagements
- you want browser cookie theft and log-clearing utilities accessible from the beacon right-click menu
When to avoid
- you do not use Cobalt Strike as your C2 framework
- you need a maintained tool - the last release was October 2021 and some async features are known to be buggy
- you require support for non-Windows targets, since most modules are Windows-specific
Facets
plugin · maturity maintenance
penetration-testing security developer-tools security penetration-testing windows windows cross-platform cobalt-strike post-exploitation privilege-escalation red-team c2-plugin powershell offensive-security
1 source
- readme: https://github.com/DeEpinGh0st/Erebus · fetched 2026-08-28 · 5d31916c3139
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| DeEpinGh0st/Erebus | main | 23 |
For agents
markdown · JSON · MCP: product_card(name="DeEpinGh0st/Erebus")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem