HTTP and HTTPS Beacon
The HTTP and HTTPS beacons download tasks with an HTTP GET request. These beacons send data back with an HTTP POST request. This is the default. You have incredible control over the behavior and indicators in this payload via Malleable C2.
HTTP(S) Listener Setup
To create a HTTP or HTTPS Beacon listener select Cobalt Strike -> Listeners on the main menu and press the Add button at the bottom of the Listeners tab display.
The New Listener panel displays.
Select Beacon HTTP or Beacon HTTPS as the Payload type and give the listener a Name. Make sure to give the new listener a memorable name as this name is how you will refer to this listener through Cobalt Strike’s commands and workflows.
Parameters
1) HTTP(S) Hosts
2) Host Rotation Strategy
3) Max Retry Strategy
4) HTTP Host (Stager)
5) Profile
6) HTTP Port (C2)
7) HTTP Port (Bind)
8) HTTP Host Header
9) HTTP Proxy
10) Guardrails
Last updated