Getting started guide
- Download the release from the release tab - Found here
- Extract it and do not remove any files. The current release requires meta.snk, System.Management.Automation.dll. This will hopefully not be necessarry in future releases.
- Start it by running Alby.exe
- Start Alby.exe
- Choose 1 for the MSBuild menu like this:
- Choose option 2 for an Empire agent based bypass
- Copy your Empire payload from your Empire server that you can generate by using: usestager multi/launcher http generate (Note: Only copy the base64 encoded command)
- Enter the output filename you want and press enter. Use enter without typing anything to use the default.
- Enter your wanted output path and press enter.
- Now you get the needed command highlighted in green. Copy this command so that you don't need to type it.
- Copy the output bypass file to the host you want to test and run the command from step 7.