
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

A utility to safely generate malicious network traffic patterns and evaluate controls.

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

A tool to transform Chromium browsers into a C2 Implant

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

A beacon generator using Cobalt Strike and a variety of tools.

A Powershell client for dnscat2, an encrypted DNS command and control tool.

Egressbuster is a method to check egress filtering and identify if ports are allowed. If they are, you can automatically spawn a shell.

macOS Initial Access Payload Generator

A backdoor with a multitude of features.

Jasmin Ransomware is an advanced red team tool (WannaCry Clone) used for simulating real ransomware attacks. Jasmin helps security researchers to…

A basic emulation of an "RPC Backdoor"

DNS tunneling tool using PowerShell and Nslookup to exfiltrate data and deliver payloads via DNS TXT/MX records, bypassing Constrained Language Mode…

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

A python2 script for processing a PCAP file to decrypt C2 traffic sent to DOUBLEPULSAR implant

Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)