Skip to content
Please update to the latest release 0.77.2 to address Multiple CVEs.
Artifact Exchange

Artifact Exchange

The Velociraptor artifact exchange is a place for sharing community-contributed artifacts. You can use the Search function on this page to see if anyone has contributed an artifact that might address your need.

If you wish to contribute to the exchange, please read the contribution guidelines. You can begin the process of creating a fork of the repo, to which you can then add your artifact contribution, by clicking the button on the top-right of this page.

Security of the exchange

The artifact exchange is not officially supported by the Velociraptor team and contains contributions from the community. The quality, security and stability of artifacts from the exchange is not guaranteed. Some artifacts from the exchange will fetch external binaries and run them on your endpoints! These binaries are not reviewed or endorsed by the Velociraptor team or Rapid7!

Contributions to the exchange must meet a lower quality bar than built-in artifacts (for example lacking tests), which means that they may break at any time or not work as described! Responsibility for maintaining exchange artifacts rests entirely with the artifact’s author.

Collecting any of the artifacts in the exchange is purely at your own risk!. We strongly suggest users review exchange artifacts carefully before deploying them on their network!

Importing the artifact exchange

[click to expand]

You can import the entire content of the artifact exchange into your server’s artifact repository by running the built-in Server.Import.Extras artifact (which is also linked on the Velociraptor Welcome screen). This artifact allows you to choose to import additional artifacts from several external projects.

Alternatively, you can download the exchange artifacts in the form of a zipped artifact pack, that you can manually import via the Velocirator GUI (navigate to View Artifacts and click the Upload Artifact Pack button, as explained here).

Importing individual artifacts

[click to expand]

Be aware that a bulk import of the exchange will add several hundred artifacts of which many will likely be inapplicable to your particular environment, so if you’re just looking for something specific then you might prefer to copy individual artifacts definitions and paste them into new artifacts using the GUI’s artifact editor.

Share your own Artifact

The artifact exchange is a central place for you to share your own artifacts with the Velociraptor community and search for artifacts you can use in your own work.

Clicking "Contribute" below will allow you to add a new artifact yaml file to this repository. Please choose a good name for the yaml file, and add a good description.

You can also add tags to your artifact by adding hash tags to the description field.

Contribute