9 repository-uri
Command and control infrastructure for managing compromised systems.
Explore 9 awesome GitHub repositories matching part of an awesome list · C2 Frameworks. Refine with filters or upvote what's useful.
The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to
Comprehensive framework for exploit development and system compromise.
Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and manages agents written in PowerShell, Python, C#, Go, and C across Windows, Linux, and macOS, using encrypted communication channels over HTTP, HTTPS, and SMB. The framework executes over 400 built-in modules for reconnaissance, privilege escalation, credential theft, and lateral movement, and provides a modular engine for authoring custom attack modules. What sets Empire apart is its multi-language agent deployment system, which allows operators to choose implants that suit each
Post-exploitation and adversary simulation framework.
Villain este un framework de comandă și control și un orchestrator distribuit conceput pentru gestionarea conexiunilor reverse TCP și HoaxShell. Servește ca manager de reverse shell și instrument de generare de payload-uri, permițând coordonarea accesului remote pe mai multe sisteme țintă. Proiectul se distinge printr-o arhitectură distribuită care sincronizează sesiunile remote active și transmite mesaje către instanțele de server conectate pentru operațiuni colaborative. Include un motor de execuție fileless care rulează scripturi direct în memoria remote prin HTTP pentru a evita scrierea fișierelor pe discul țintă. Framework-ul acoperă generarea de payload-uri pentru diverse sisteme de operare folosind template-uri și codificări personalizabile. Oferă capabilități de gestionare a sesiunilor, inclusiv upgrade-uri de shell interactiv către pseudo-terminale, persistența sesiunii și monitorizarea stabilității pentru a preveni crash-urile shell-ului remote. Transferul de date este gestionat printr-un serviciu automat de HTTP smuggling pentru încărcarea fișierelor în sesiunile active.
C2 framework for managing multiple reverse shell sessions.
Hoaxshell is a command and control system for Windows remote command execution. It provides a framework for generating and managing reverse shell payloads that utilize an HTTP beaconing protocol, where victim clients periodically poll a handler to receive and execute instructions. The project distinguishes itself through its ability to bypass PowerShell Constrained Language Mode using specialized payload generation. It supports encrypted command and control via TLS certificate injection and provides mechanisms for remote session recovery, allowing a handler to reestablish control over active
PowerShell-based C2 framework with SSL encryption support.
:hammer: A modern, cross-platform machine manager
Tool for managing reverse shell connections.
RedGuard - Excellent C2 Front Flow Control tool
C2 traffic control tool for evading security monitoring and EDR.
Reverse proxy tool for C2 communication in restricted networks.