
Veil
Veil 3.1.X (Check version info in Veil at runtime)

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

C2/post-exploitation framework

Nebula is a cloud C2 Framework, which at the moment offers reconnaissance, enumeration, exploitation, post exploitation on AWS, but still working to…

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

Tool to deploy a post-exploitation prompt at any time

FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.

An open source swiss army knife for arbitrary communication over application protocols


Tools for maintaining access to systems and proof-of-concept demonstrations.

[unmaintained] Post-exploitation tool

DarkAgent Remote Administration Tool RAT by DragonHunter

Achieving a Reverse Shell Exploit for Apache ActiveMQ (CVE_2023-46604)

A simple, extensible C&C beaconing system.