awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoServidor MCPAcerca deCómo clasificamosPrensa
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to daybr4ak/c2reverseproxy

Open-source alternatives to C2ReverseProxy

30 open-source projects similar to daybr4ak/c2reverseproxy, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best C2ReverseProxy alternative.

  • rapid7/metasploit-frameworkAvatar de rapid7

    rapid7/metasploit-framework

    38,415Ver en GitHub↗

    The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to

    Rubyhacktoberfest
    Ver en GitHub↗38,415
  • bc-security/empireAvatar de BC-SECURITY

    BC-SECURITY/Empire

    5,045Ver en GitHub↗

    Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and manages agents written in PowerShell, Python, C#, Go, and C across Windows, Linux, and macOS, using encrypted communication channels over HTTP, HTTPS, and SMB. The framework executes over 400 built-in modules for reconnaissance, privilege escalation, credential theft, and lateral movement, and provides a modular engine for authoring custom attack modules. What sets Empire apart is its multi-language agent deployment system, which allows operators to choose implants that suit each

    PowerShellc2empirehacktoberfest
    Ver en GitHub↗5,045
  • boku7/azureoutlookc2B

    boku7/azureOutlookC2

    0Ver en GitHub↗
    Ver en GitHub↗0
  • byt3bl33d3r/crackmapexecAvatar de byt3bl33d3r

    byt3bl33d3r/CrackMapExec

    9,144Ver en GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    Ver en GitHub↗9,144

Búsqueda con IA

Explora más repositorios increíbles

Describe lo que necesitas en lenguaje sencillo: la IA clasifica miles de proyectos open-source curados por relevancia.

Find more with AI search
  • byt3bl33d3r/silenttrinityAvatar de byt3bl33d3r

    byt3bl33d3r/SILENTTRINITY

    2,340Ver en GitHub↗

    An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR

    Boo
    Ver en GitHub↗2,340
  • deepingh0st/erebusAvatar de DeEpinGh0st

    DeEpinGh0st/Erebus

    1,564Ver en GitHub↗

    CobaltStrike后渗透测试插件

    PowerShellcobaltstrike
    Ver en GitHub↗1,564
  • empireproject/empireAvatar de EmpireProject

    EmpireProject/Empire

    7,813Ver en GitHub↗

    Empire is a command and control framework and post-exploitation toolkit used for network penetration testing. It serves as a centralized platform for coordinating remote agent communication and automating the delivery of security testing payloads to target systems. The project provides a suite of modules for host reconnaissance, lateral movement, and credential harvesting across corporate environments. It functions as a remote administration tool to maintain persistence and execute commands on compromised hosts. The framework incorporates capabilities for agent orchestration and the executio

    PowerShell
    Ver en GitHub↗7,813
  • emptymonkey/revshE

    emptymonkey/revsh

    0Ver en GitHub↗
    Ver en GitHub↗0
  • enkomio/alanframeworkE

    enkomio/AlanFramework

    0Ver en GitHub↗
    Ver en GitHub↗0
  • fortra/impacketAvatar de fortra

    fortra/impacket

    15,467Ver en GitHub↗

    Impacket is a collection of Python classes designed for the construction, manipulation, and analysis of low-level network packets and services. It functions as a framework for building custom network tools, providing a programmatic interface to interact with communication protocols and service architectures. The library provides primitives for managing authentication, session state, and remote procedure calls within network environments. By offering a modular class hierarchy, it allows for the assembly of network packets and the implementation of specialized communication stacks. The project

    Pythondcerpcdcomimpacket
    Ver en GitHub↗15,467
  • funnywolf/pystingerAvatar de FunnyWolf

    FunnyWolf/pystinger

    1,431Ver en GitHub↗

    Bypass firewall for traffic forwarding using webshell

    Pythoncobalt-strikeregeorgwebshell
    Ver en GitHub↗1,431
  • genetic-malware/ebowlaAvatar de Genetic-Malware

    Genetic-Malware/Ebowla

    764Ver en GitHub↗

    Framework for Making Environmental Keyed Payloads (NO LONGER SUPPORTED)

    Python
    Ver en GitHub↗764
  • ghost-ng/slingerG

    ghost-ng/slinger

    0Ver en GitHub↗
    Ver en GitHub↗0
  • ghostpack/rubeusAvatar de GhostPack

    GhostPack/Rubeus

    4,890Ver en GitHub↗

    Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full suite of operations for manipulating Kerberos tickets, exploiting delegation configurations, and performing credential attacks against Windows domains. The toolkit enables ticket extraction from logon sessions and memory, with real-time monitoring via Event Tracing for Windows. It supports forging golden and silver tickets with arbitrary privileges, as well as the creation of forged delegation contexts. Delegation attacks include abuse of constrained and unconstrained delegat

    C#kerberos
    Ver en GitHub↗4,890
  • gtfobins/gtfobins.github.ioAvatar de GTFOBins

    GTFOBins/GTFOBins.github.io

    12,669Ver en GitHub↗

    GTFOBins is a curated knowledge base documenting security-related techniques for Unix-based system binaries. It serves as a reference for offensive security research, detailing how standard, pre-installed system utilities can be repurposed to facilitate privilege escalation, restricted environment escapes, and post-exploitation workflows. The project distinguishes itself by cataloging insecure execution paths and misconfigured permissions inherent in common system tools. By identifying legitimate binary functions that can be leveraged to bypass security controls, the repository provides a str

    YAMLbinariesbind-shellblueteam
    Ver en GitHub↗12,669
  • k8gege/ladonAvatar de k8gege

    k8gege/Ladon

    5,297Ver en GitHub↗

    Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk security flaws and assets across network segments. It operates as a fileless security scanner, executing its engine and modules directly in memory to avoid leaving a disk footprint on target systems. The project is distinguished by its integration as a plugin for command beacons, specifically within the Cobalt Strike framework. This allows for memory-resident network discovery and vulnerability detection. It further supports stealth operations through payload and script obfuscatio

    C#brute-forceexpexploit
    Ver en GitHub↗5,297
  • kevin-robertson/powermadAvatar de Kevin-Robertson

    Kevin-Robertson/Powermad

    1,485Ver en GitHub↗

    PowerShell MachineAccountQuota and DNS exploit tools

    PowerShell
    Ver en GitHub↗1,485
  • lintstar/lstarAvatar de lintstar

    lintstar/LSTAR

    1,264Ver en GitHub↗

    LSTAR - CobaltStrike 综合后渗透插件

    PowerShellaggressor-scriptsattackcobalt-strike
    Ver en GitHub↗1,264
  • lolbas-project/lolbas-project.github.ioL

    LOLBAS-Project/LOLBAS-Project.github.io

    0Ver en GitHub↗
    Ver en GitHub↗0
  • mubix/post-exploitationAvatar de mubix

    mubix/post-exploitation

    1,582Ver en GitHub↗

    Post Exploitation Collection

    C
    Ver en GitHub↗1,582
  • nextronsystems/aptsimulatorAvatar de NextronSystems

    NextronSystems/APTSimulator

    2,750Ver en GitHub↗

    A toolset to make a system look as if it was the victim of an APT attack

    Batchfile
    Ver en GitHub↗2,750
  • outflanknl/c2-tool-collectionAvatar de outflanknl

    outflanknl/C2-Tool-Collection

    1,395Ver en GitHub↗

    A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

    C
    Ver en GitHub↗1,395
  • pennyw0rth/netexecAvatar de Pennyw0rth

    Pennyw0rth/NetExec

    5,274Ver en GitHub↗

    NetExec is a framework for concurrent credential spraying and remote command execution across network protocols. It provides input sanitization and command parsing to reduce injection risks, a plugin-based protocol abstraction that dispatches credentials and commands uniformly regardless of transport, and session and token lifecycle management for long-running multi-command operations. Results from concurrent executions are collected and normalized through a result aggregation pipeline. The framework includes a concurrent job scheduler that manages worker threads for parallel execution across

    Pythonactive-directoryhackinginfosec
    Ver en GitHub↗5,274
  • powershellmafia/powersploitAvatar de PowerShellMafia

    PowerShellMafia/PowerSploit

    12,880Ver en GitHub↗

    PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team operations. It provides a framework for auditing Windows system configurations and evaluating the effectiveness of security defenses within an enterprise environment. The framework focuses on techniques that leverage native system administration tools and scripting environments to perform operations. It includes capabilities for executing arbitrary commands, escalating user privileges, and maintaining system persistence through event subscriptions. By utilizing in-memory execu

    PowerShell
    Ver en GitHub↗12,880
  • rsmudge/elevatekitAvatar de rsmudge

    rsmudge/ElevateKit

    933Ver en GitHub↗

    The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.

    PowerShell
    Ver en GitHub↗933
  • samratashok/nishangAvatar de samratashok

    samratashok/nishang

    9,951Ver en GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    Ver en GitHub↗9,951
  • screetsec/thefatratAvatar de screetsec

    screetsec/TheFatRat

    11,038Ver en GitHub↗

    TheFatRat is a security exploitation framework designed to automate the creation, obfuscation, and deployment of payloads for penetration testing. It functions as a comprehensive toolkit that streamlines the exploitation lifecycle, enabling users to generate malicious executables, manage network listeners, and execute post-exploitation tasks through a unified command-line interface. The framework distinguishes itself by integrating various third-party exploitation utilities into a single, orchestrated workflow. It provides specialized capabilities for embedding code into legitimate binaries a

    Caccessibilityantivirusautorun
    Ver en GitHub↗11,038
  • t3l3machus/hoaxshellAvatar de t3l3machus

    t3l3machus/hoaxshell

    3,421Ver en GitHub↗

    Hoaxshell is a command and control system for Windows remote command execution. It provides a framework for generating and managing reverse shell payloads that utilize an HTTP beaconing protocol, where victim clients periodically poll a handler to receive and execute instructions. The project distinguishes itself through its ability to bypass PowerShell Constrained Language Mode using specialized payload generation. It supports encrypted command and control via TLS certificate injection and provides mechanisms for remote session recovery, allowing a handler to reestablish control over active

    Pythonhackingopen-sourcepenetration-testing
    Ver en GitHub↗3,421
  • t3l3machus/villainAvatar de t3l3machus

    t3l3machus/Villain

    4,398Ver en GitHub↗

    Villain is a command and control framework and distributed orchestrator designed for managing reverse TCP and HoaxShell connections. It serves as a reverse shell manager and payload generation tool, allowing for the coordination of remote access across multiple target systems. The project distinguishes itself through a distributed architecture that synchronizes active remote sessions and broadcasts messages across connected server instances for collaborative operations. It includes a fileless execution engine that runs scripts directly in remote memory over HTTP to avoid writing files to the

    Pythonc2cybersecurityhacking
    Ver en GitHub↗4,398
  • trygotry/dogcs4.4T

    TryGOTry/DogCs4.4

    0Ver en GitHub↗
    Ver en GitHub↗0