An aggressor plugin extension for Cobalt Strike which enables pypykatz to interface with the beacons remotely
![](https://www.deeplearningdaily.com/wp-content/uploads/2021/08/an-aggressor-plugin-extension-for-cobalt-strike-which-enables-pypykatz-to-interface-with-the-beacons-remotely_6110563ae3188-375x210.jpeg)
Aggrokatz is an aggressor plugin extension for Cobalt Strike which enables pypykatz to interface with the beacons remotely and allows it to parse LSASS dump files and registry hive files to extract credentials and other secrets stored without downloading the file and without uploading any suspicious code to the beacon.
aggrokatz
is an Aggressor plugin extension for CobaltStrike
which enables pypykatz
to interface with the beacons remotely.
The current version of aggrokatz
allows pypykatz
to parse LSASS dump files and Registry hive files to extract credentials and other secrets stored without downloading the file and without uploading any suspicious code to the beacon (Cobalt Strike is already there anyhow).
In the future this project aims to provide additional features for covert operations such as searching and decrypting all DPAPI