awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectServer MCPDespreCum realizăm clasamentulPresă
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
iagox86 avatar

iagox86/dnscat2

0
View on GitHub↗
3,839 stele·635 fork-uri·PHP·bsd-3-clause·12 vizualizări

Dnscat2

dnscat2 is a DNS tunneling tool and covert command and control server that encapsulates encrypted traffic within DNS queries and responses. It functions as an encrypted DNS proxy designed to bypass network firewalls and establish communication paths when standard outbound ports are blocked.

The project enables the creation of covert network channels by acting as an authoritative nameserver. It supports remote command execution through interactive shells and provides a mechanism for tunneling TCP network traffic to reach restricted remote hosts.

The system includes capabilities for multiplexed session management to organize concurrent client connections and utilizes pre-shared keys to secure data payloads. It further supports network perimeter evasion by routing TCP connections from local ports to remote destinations via the established DNS channel.

Features

  • DNS Tunnels - Encapsulates application data within DNS record requests and responses to bypass network firewalls.
  • DNS Tunneling Proxies - Provides a secure, encrypted proxy that encapsulates traffic within DNS protocols to bypass network restrictions.
  • Authoritative Name Servers - Implements a custom authoritative nameserver to intercept and decode specially crafted DNS queries.
  • Covert Domain Delegations - Delegates DNS queries to a custom server via a domain registrar to create a covert communication path.
  • Concurrent Remote Session Managers - Organizes concurrent client connections into separate interactive windows for command execution.
  • TCP-over-DNS Tunneling - Wraps raw TCP streams into chunks of DNS data to provide network-level connectivity.
  • Covert Backdoors - Maintains hidden communication links between clients and servers using non-standard DNS channels.
  • Defense Evasion - Establishes covert paths to remote systems to bypass security policies when outbound ports are blocked.
  • Multi-Protocol Command and Control - Provides command and control infrastructure that uses the DNS protocol for stealthy remote management.
  • Remote Command Execution Tools - Manages interactive shells and executes commands on remote hosts through a DNS-based tunnel.
  • Connection Multiplexing - Tracks multiple concurrent client connections through unique identifiers to route traffic to separate interactive shells.
  • Remote Port Forwarding - Maps local server ports to remote hosts by tunneling traffic through a DNS channel.
  • Secure Communication Channels - Protects data streams between endpoints using cryptographic keys and pre-shared secrets.
  • TCP and UDP Forwarders - Routes raw TCP network packets from local ports to remote destinations via a DNS channel.
  • Symmetric Encryption - Secures data payloads within DNS packets using symmetric cryptography with pre-shared keys.
  • Extensible Architectures - Provides a pluggable architecture to add new communication protocols or features without modifying core tunnel logic.
  • Exfiltration Tools - Creates encrypted command and control channels over DNS.
  • Command and Control - Establishes stealthy C2 tunnels using legitimate DNS traffic.
  • Command And Control Frameworks - Encrypted command and control channel over the DNS protocol.
  • Credential Harvesting - Exfiltrates data over DNS.
  • Forensics Analysis - Hosts communication through DNS tunnels.
  • Network Tunneling and Proxying - Tool for command-and-control over DNS.
  • Tunneling and Proxying - Tool for establishing C2 channels via DNS tunneling.

Istoric stele

Graficul istoricului de stele pentru iagox86/dnscat2Graficul istoricului de stele pentru iagox86/dnscat2

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Start searching with AI

Întrebări frecvente

Ce face iagox86/dnscat2?

dnscat2 is a DNS tunneling tool and covert command and control server that encapsulates encrypted traffic within DNS queries and responses. It functions as an encrypted DNS proxy designed to bypass network firewalls and establish communication paths when standard outbound ports are blocked.

Care sunt principalele funcționalități ale iagox86/dnscat2?

Principalele funcționalități ale iagox86/dnscat2 sunt: DNS Tunnels, DNS Tunneling Proxies, Authoritative Name Servers, Covert Domain Delegations, Concurrent Remote Session Managers, TCP-over-DNS Tunneling, Covert Backdoors, Defense Evasion.

Care sunt câteva alternative open-source pentru iagox86/dnscat2?

Alternativele open-source pentru iagox86/dnscat2 includ: samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… nathanlopez/stitch — Stitch is a command and control framework and post-exploitation toolkit designed for managing multiple remote systems… ehang-io/nps — nps is an intranet penetration proxy server that exposes internal network services to the public internet via secure… ginuerzh/gost — gost is a multi-protocol proxy tunnel and secure tunneling server designed to route network traffic through encrypted… bc-security/empire — Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and… bishopfox/sliver — Sliver is a command and control framework designed for adversary emulation and security assessment operations. It…

Alternative open-source pentru Dnscat2

Proiecte open-source similare, clasificate după numărul de funcționalități comune cu Dnscat2.
  • samratashok/nishangAvatar samratashok

    samratashok/nishang

    9,951Vezi pe GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    Vezi pe GitHub↗9,951
  • nathanlopez/stitchAvatar nathanlopez

    nathanlopez/Stitch

    3,532Vezi pe GitHub↗

    Stitch is a command and control framework and post-exploitation toolkit designed for managing multiple remote systems from a central server. It functions as a remote administration tool and payload builder, enabling the execution of commands and the deployment of agents across different operating systems. The project features a cross-platform builder for generating custom executable agents with configurable network bindings and boot behaviors. It utilizes encrypted communication channels to secure traffic between the controller and remote clients, and it supports the execution of dynamic scri

    Pythoncross-platformkeyloggerlinux
    Vezi pe GitHub↗3,532
  • ehang-io/npsAvatar ehang-io

    ehang-io/nps

    34,090Vezi pe GitHub↗

    nps is an intranet penetration proxy server that exposes internal network services to the public internet via secure TCP and UDP tunnels. It functions as a traffic forwarder and reverse proxy, enabling external access to local services, remote desktops, and internal APIs. The project is distinguished by a centralized web-based administration interface used to configure tunnels, manage user accounts, and monitor real-time bandwidth metrics. It supports domain-based request routing and provides a mechanism to secure public services using HTTPS encryption through digital certificates. The syste

    Godnsfirewallgo
    Vezi pe GitHub↗34,090
  • ginuerzh/gostAvatar ginuerzh

    ginuerzh/gost

    18,019Vezi pe GitHub↗

    gost is a multi-protocol proxy tunnel and secure tunneling server designed to route network traffic through encrypted connections. It functions as a traffic obfuscation gateway and a transparent proxy server capable of intercepting TCP and UDP traffic at the IP level. The project also includes a virtual network interface manager for creating TUN and TAP devices to intercept operating system packets. The system distinguishes itself through a chain-based request routing model, allowing traffic to pass through an ordered sequence of proxy nodes. It provides extensive transport-layer encapsulatio

    Godnsgogolang
    Vezi pe GitHub↗18,019
Vezi toate cele 30 alternative pentru Dnscat2→