
squidmagic
analyze a web-based network traffic 🕶 to detect central command and control servers

analyze a web-based network traffic 🕶 to detect central command and control servers

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)

DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2) via DNS…

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

Arsenal is just a quick inventory and launcher for hacking programs

Database Driven DNS Server with a Web UI

Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS…

netshell features all in version 2 powershell

Powerful framework for rogue access point attack.

A remote access trojan over DNS

DNS rebinding attack tool exploiting multiple A records to bypass same-origin policy and exfiltrate data from internal network services via browser…

Exploit for CVE-2025-50505 in Clash Verge Rev, demonstrating local privilege escalation and remote code execution via unauthenticated API, including…

Exploit for CVE-2015-6357 Cisco FireSIGHT Management Center Certificate Validation Vulnerability

DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3

Framework for Man-In-The-Middle attacks

A Powershell client for dnscat2, an encrypted DNS command and control tool.

Educational RCE exploit for CVE-2021-26700 in VS Code npm extension, demonstrating DNS tunneling to a Caldera C2 server via malicious package.json…

🕳 godoh - A DNS-over-HTTPS C2