
secret_handshake
A prototype malware C2 channel using x509 certificates over mTLS

A prototype malware C2 channel using x509 certificates over mTLS

Open Source C&C Specification

Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC…

PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels


Extending of metasploit-framework

Uses Shodan API to pull down C2 servers to run known exploits on them.

tac_plus Pre-Auth Remote Command Execution Vulnerability (CVE-2023-45239 & CVE-2023-48643)

Exploit for CVE-2023-46604

A proof of concept demonstrating how to use the Hinge dating app as a C2.

PoC exploit for CVE-2023-6019 - Remote Code Execution via unauthenticated Ray Dashboard Jobs API.

PoC exploit for CVE-2026-23744 — unauthenticated RCE in MCPJam Inspector via unvalidated serverConfig command injection on /api/mcp/connect, enabling…

Open Source Implementation of Cobalt Strike's Malleable C2

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

Autonomous and modular system for network based information gathering and exploitation. WEB interface here: https://antecursor.fr/ More info…

Script lets you gather malicious software and c&c servers from open source platforms like Malshare, Malcode, Google, Cymon - vxvault, cybercrime…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Freedom Fighting Mode: open source hacking harness