awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目MCP 服务器关于排名机制媒体报道
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to sharpc2/sharpc2

Open-source alternatives to SharpC2

30 open-source projects similar to sharpc2/sharpc2, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best SharpC2 alternative.

  • nathanlopez/stitchnathanlopez 的头像

    nathanlopez/Stitch

    3,532在 GitHub 上查看↗

    Stitch is a command and control framework and post-exploitation toolkit designed for managing multiple remote systems from a central server. It functions as a remote administration tool and payload builder, enabling the execution of commands and the deployment of agents across different operating systems. The project features a cross-platform builder for generating custom executable agents with configurable network bindings and boot behaviors. It utilizes encrypted communication channels to secure traffic between the controller and remote clients, and it supports the execution of dynamic scri

    Pythoncross-platformkeyloggerlinux
    在 GitHub 上查看↗3,532
  • bishopfox/sliverBishopFox 的头像

    BishopFox/sliver

    10,707在 GitHub 上查看↗

    Sliver is a command and control framework designed for adversary emulation and security assessment operations. It provides a centralized platform for managing remote systems, enabling security professionals to coordinate multi-operator sessions and maintain persistent, secure communication channels across diverse network environments. The framework distinguishes itself through its focus on stealth and infrastructure flexibility. It utilizes dynamic payload obfuscation to generate unique binaries and supports in-memory execution to minimize disk artifacts. Communication is secured through mutu

    Goadversarial-attacksadversary-simulationc2
    在 GitHub 上查看↗10,707
  • ne0nd0g/merlinNe0nd0g 的头像

    Ne0nd0g/merlin

    5,555在 GitHub 上查看↗

    Merlin is a cross-platform command and control framework and remote access tool. It provides a server and agent system for post-exploitation coordination, utilizing an HTTP/2 framework for secure communication and the execution of commands across multiple operating systems. The project features an in-memory code execution engine that runs assemblies and shellcode directly within a process to avoid writing files to disk. It implements a decentralized communication architecture through a peer-to-peer network, allowing agents to exchange data via direct bind or reverse connections. To evade det

    Go
    在 GitHub 上查看↗5,555

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Find more with AI search
  • n1nj4sec/pupyn1nj4sec 的头像

    n1nj4sec/pupy

    8,942在 GitHub 上查看↗

    Pupy is a command and control framework and post-exploitation suite used for remote administration and system management. It functions as a cross-platform tool for deploying payloads and controlling multiple remote agents through encrypted communication channels. The framework features a multi-platform payload generator that creates custom executable files using configurable network launchers. It employs a network traffic obfuscator that stacks encryption and obfuscation protocols to hide communication from observation. The system provides capabilities for in-memory code execution, remote pr

    Pythonandroidbackdoorlinux
    在 GitHub 上查看↗8,942
  • fsecurelabs/c3FSecureLABS 的头像

    FSecureLABS/C3

    1,774在 GitHub 上查看↗

    C3 (Custom Command and Control) is a tool that allows Red Teams to rapidly develop and utilise esoteric command and control channels (C2). It's a framework that extends other red team tooling, such as the commercial Cobalt Strike (CS) product via ExternalC2, which is supported at release. It…

    C++
    在 GitHub 上查看↗1,774
  • nettitude/poshc2nettitude 的头像

    nettitude/PoshC2

    2,112在 GitHub 上查看↗

    PoshC2 is a proxy aware C2 framework used to aid penetration testers with red teaming, post-exploitation and lateral movement.

    PowerShell
    在 GitHub 上查看↗2,112
  • bats3c/shad0wbats3c 的头像

    bats3c/shad0w

    2,175在 GitHub 上查看↗

    A post exploitation framework designed to operate covertly on heavily monitored environments

    C
    在 GitHub 上查看↗2,175
  • nyan-x-cat/asyncrat-c-sharpNYAN-x-CAT 的头像

    NYAN-x-CAT/AsyncRAT-C-Sharp

    2,837在 GitHub 上查看↗
    C#adminasynchronousbackdoor
    在 GitHub 上查看↗2,837
  • cobbr/covenantcobbr 的头像

    cobbr/Covenant

    4,699在 GitHub 上查看↗

    Covenant is a .NET-based command and control framework designed for red team operations and adversary simulation. It serves as a collaborative platform for coordinating security assessments, managing remote implants, and executing tasks on compromised systems through a centralized server. The project is distinguished by its dynamic payload generator, which compiles and obfuscates executable binaries and scripts on the fly to bypass detection. It further separates itself through a collaborative environment that allows multiple authenticated operators to share a synchronized state, track operat

    C#
    在 GitHub 上查看↗4,699
  • bc-security/empireBC-SECURITY 的头像

    BC-SECURITY/Empire

    5,045在 GitHub 上查看↗

    Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and manages agents written in PowerShell, Python, C#, Go, and C across Windows, Linux, and macOS, using encrypted communication channels over HTTP, HTTPS, and SMB. The framework executes over 400 built-in modules for reconnaissance, privilege escalation, credential theft, and lateral movement, and provides a modular engine for authoring custom attack modules. What sets Empire apart is its multi-language agent deployment system, which allows operators to choose implants that suit each

    PowerShellc2empirehacktoberfest
    在 GitHub 上查看↗5,045
  • iagox86/dnscat2iagox86 的头像

    iagox86/dnscat2

    3,839在 GitHub 上查看↗

    dnscat2 is a DNS tunneling tool and covert command and control server that encapsulates encrypted traffic within DNS queries and responses. It functions as an encrypted DNS proxy designed to bypass network firewalls and establish communication paths when standard outbound ports are blocked. The project enables the creation of covert network channels by acting as an authoritative nameserver. It supports remote command execution through interactive shells and provides a mechanism for tunneling TCP network traffic to reach restricted remote hosts. The system includes capabilities for multiplexe

    PHP
    在 GitHub 上查看↗3,839
  • byt3bl33d3r/silenttrinitybyt3bl33d3r 的头像

    byt3bl33d3r/SILENTTRINITY

    2,340在 GitHub 上查看↗

    An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR

    Boo
    在 GitHub 上查看↗2,340
  • zerosum0x0/koadicZ

    zerosum0x0/koadic

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • zer0yu/awesome-cobaltstrikezer0yu 的头像

    zer0yu/Awesome-CobaltStrike

    4,419在 GitHub 上查看↗

    This project is a curated collection of tools, scripts, and technical guides designed to enhance offensive security operations using Cobalt Strike. It serves as a resource hub for managing command and control infrastructure and deploying security engagements. The collection includes toolkits for evading endpoint detection and response systems, alongside libraries for automating red team tasks such as reconnaissance and host enumeration. It provides resources for developing post-exploitation frameworks, specifically focusing on the creation of reflective libraries and memory-resident code. Th

    在 GitHub 上查看↗4,419
  • samratashok/nishangsamratashok 的头像

    samratashok/nishang

    9,951在 GitHub 上查看↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    在 GitHub 上查看↗9,951
  • ridter/intranet_penetration_tipsRidter 的头像

    Ridter/Intranet_Penetration_Tips

    4,606在 GitHub 上查看↗

    This project is a technical guide and reference for internal network penetration testing. It serves as a collection of procedures for exploiting and navigating private corporate networks during security assessments. The repository provides specialized manuals and cheat sheets focused on active directory attacks, lateral movement, and privilege escalation. It includes a post-exploitation playbook for maintaining system persistence and clearing forensic traces. The documentation covers a broad range of security capabilities, including initial access, network pivoting and tunneling, and interna

    在 GitHub 上查看↗4,606
  • h0mbre/dalih0mbre 的头像

    h0mbre/Dali

    71在 GitHub 上查看↗
    Python
    在 GitHub 上查看↗71
  • cobbr/c2bridgeC

    cobbr/C2Bridge

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • chvancooten/nimplantchvancooten 的头像

    chvancooten/NimPlant

    951在 GitHub 上查看↗

    NimPlant - A light first-stage C2 implant written in Nim|Rust and Python

    Rust
    在 GitHub 上查看↗951
  • facebookincubator/weaselfacebookincubator 的头像

    facebookincubator/WEASEL

    732在 GitHub 上查看↗

    WEASEL is a small in-memory implant using Python 3 with no dependencies. The beacon client sends a small amount of identifying information about its host to a DNS zone you control. WEASEL server can task clients to execute pre-baked or arbitrary commands.

    Python
    在 GitHub 上查看↗732
  • cedowens/macshellswiftcedowens 的头像

    cedowens/MacShellSwift

    125在 GitHub 上查看↗

    Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedric Owens

    Swift
    在 GitHub 上查看↗125
  • antoniococo/sharpyshellantonioCoco 的头像

    antonioCoco/SharPyShell

    1,066在 GitHub 上查看↗

    SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications

    Pythonaspnetcsharpencryption
    在 GitHub 上查看↗1,066
  • epinna/weevely3epinna 的头像

    epinna/weevely3

    3,526在 GitHub 上查看↗

    Weaponized web shell

    Python
    在 GitHub 上查看↗3,526
  • fortynorthsecurity/wmimplantF

    FortyNorthSecurity/WMImplant

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • fozavci/petaqc2fozavci 的头像

    fozavci/petaqc2

    104在 GitHub 上查看↗

    PetaQ is a malware which is being developed in .NET Core/Framework to use websockets as Command & Control (C2) channels. It's designed to provide a Proof of Concept (PoC) websocket malware to the adversary simulation exercises (Red & Purple Team exercises).

    C#
    在 GitHub 上查看↗104
  • engindemirbilek/northstarc2EnginDemirbilek 的头像

    EnginDemirbilek/NorthStarC2

    269在 GitHub 上查看↗

    Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC #infosec #offensivesecurity #Trojan

    PHP
    在 GitHub 上查看↗269
  • empireproject/empireEmpireProject 的头像

    EmpireProject/Empire

    7,813在 GitHub 上查看↗

    Empire is a command and control framework and post-exploitation toolkit used for network penetration testing. It serves as a centralized platform for coordinating remote agent communication and automating the delivery of security testing payloads to target systems. The project provides a suite of modules for host reconnaissance, lateral movement, and credential harvesting across corporate environments. It functions as a remote administration tool to maintain persistence and execute commands on compromised hosts. The framework incorporates capabilities for agent orchestration and the executio

    PowerShell
    在 GitHub 上查看↗7,813
  • havocframework/havocHavocFramework 的头像

    HavocFramework/Havoc

    8,182在 GitHub 上查看↗

    Havoc is a post-exploitation framework used for red team operations. It provides a centralized command and control system for managing remote agents through persistent network connections and customizable communication profiles. The framework focuses on security evasion and stealth, utilizing indirect syscall execution, return address spoofing, and hardware-breakpoint patching to bypass endpoint detection and response tools. It includes a payload generation workflow to create executable shellcode or DLLs for initial remote access. The system covers a broad range of operational capabilities,

    Go
    在 GitHub 上查看↗8,182
  • elevenpaths/ibombshellElevenPaths 的头像

    ElevenPaths/ibombshell

    323在 GitHub 上查看↗

    Tool to deploy a post-exploitation prompt at any time

    Python
    在 GitHub 上查看↗323
  • byt3bl33d3r/gcatbyt3bl33d3r 的头像

    byt3bl33d3r/gcat

    1,351在 GitHub 上查看↗

    Gcat A stealthy Python based backdoor that uses Gmail as a command and control server

    Python
    在 GitHub 上查看↗1,351