redStack is a Boot-to-Breach red team lab on AWS. Mythic, Sliver, and Havoc C2 behind a production-style Apache redirector. Deployed via Terraform, to be used for training/self hosted environments.
https://t.co/sEnzOIbaSi
Released a lightweight C2 for testing. Kept v1 lean and focused on core functionality, but v2 will bring advanced features based on real feedback. Give it a spin and let me know what you need, building this for practitioners, not just as a project
https://t.co/6L1GGjzdKb
Venom C2 tool drop! 🐍
During a recent red team engagement we needed a simple python agent that needs no dependencies to setup persistence on some exotic boxes we landed on.
Some had EDR so we didn't want anything off-the-shelf.
The server, agent, and client were made mid-engagement and kept our foothold for weeks. I have no use for this anymore, so thought i'd share it instead of letting it evaporate into the /dev/null.
Link to boku7/venom GitHub repo : https://t.co/YKY3txKHA9
Added OnlyShell to #C2Matrix "A powerful Go-based multi-shell handler for managing multiple reverse shell connections simultaneously with features like shell type detection, background management, command broadcasting, and real-time interaction." https://t.co/FjTA5ANvpB
Introducing Wyrm, currently in pre-release - a bit of a hobby project which I am working towards v1.0 for, a Red Team C2 framework which one day will hopefully rival Cobalt Strike, Sliver, etc in terms of capability.
Come check it out here! https://t.co/bVcVbWkNEM
#redteam #cybersecurity #infosec #pentesting #pentest #wyrm #c2 #maldev #cyber #pentest
Added PhantomPipe: a POC C2 framework that uses Server‑Sent Events (SSE) and the MCP protocol for agent registration, command dispatch, and result collection. By tunneling through ngrok, you can quickly expose your C2 server to the public internet https://t.co/1DQQvq6JJO
🛠️ A serverless command & control (C2) framework
🗓️ Leverages Google Calendar APIs, as a covert communication channel between operators and a compromised system
https://t.co/X2byPDJqMQ
We've just pushed details on our latest #Nighthawk release (Sivako) https://t.co/iSoLVbsnJK - including async BOF support, native kerberos and more 🔥 https://t.co/yPUUBrA5pF
Empire v6.2 is Out!
Here are a few of the updates:
- Go and C# Agent Improvements
- Clean & reset server options
- Added port normalization
- Allow X-Empire-Token for API access
https://t.co/7Utqi0iYau
Great C2 talk at BlackHat 2025 by @UNC1739 Ghost Calls: Abusing Web Conferencing for Covert Command & Control
Slides: https://t.co/bMnhcLYUyX
Tool release: https://t.co/C6IfwFyvAe
This is a GRE PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion
https://t.co/Ou2gVyKWAh
Great C2 talk at BlackHat 2025 by @UNC1739 Ghost Calls: Abusing Web Conferencing for Covert Command & Control
Slides: https://t.co/bMnhcLYUyX
Tool release: https://t.co/C6IfwFyvAe