Skip to content
View ayaz-z's full-sized avatar
☀️
☀️

Block or report ayaz-z

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

C2

179 repositories

A collection of awesome Command & Control (C2) frameworks, tools and resources for post-exploitation and red teaming assignments.

944 105 Updated Feb 26, 2021

Covenant is a collaborative .NET C2 framework for red teamers.

C# 4,607 824 Updated Jul 18, 2024

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

PowerShell 5,034 671 Updated Feb 8, 2026

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Go 5,504 849 Updated Apr 17, 2025

Cobalt Strike Malleable C2 Design and Reference Guide

1,749 302 Updated Dec 13, 2023

Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog post as a tutorial sample

Python 86 18 Updated Nov 8, 2023

Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC #infosec #offensivesecurity #Trojan

PHP 270 61 Updated Mar 11, 2024

Nebula is a cloud C2 Framework, which at the moment offers reconnaissance, enumeration, exploitation, post exploitation on AWS, but still working to allow testing other Cloud Providers and DevOps C…

Python 627 109 Updated May 28, 2025

Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share th…

Python 4,330 694 Updated May 21, 2025

The Havoc Framework

Go 8,158 1,170 Updated Dec 18, 2025

Adversary Emulation Framework

Go 10,683 1,452 Updated Feb 13, 2026

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

Python 8,937 1,859 Updated Mar 22, 2024

牛屎花 一款基于WEB界面的远程主机管理工具

Rust 892 159 Updated Jan 14, 2026

Metasploit Framework

Ruby 37,513 14,742 Updated Feb 13, 2026

Wiki to collect Red Team infrastructure hardening resources

4,441 915 Updated Oct 1, 2025

List of Awesome CobaltStrike Resources

4,380 764 Updated Sep 20, 2023

Tools and Techniques for Red Team / Penetration Testing

8,491 1,149 Updated Mar 18, 2025

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

10,120 2,338 Updated Sep 29, 2025

A post exploitation framework designed to operate covertly on heavily monitored environments

C 2,167 336 Updated Sep 29, 2021

A Powershell client for dnscat2, an encrypted DNS command and control tool.

PowerShell 427 124 Updated Aug 22, 2023
PHP 3,830 635 Updated Mar 14, 2024

An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR

Boo 2,316 428 Updated Dec 6, 2023

Github as C2 Demonstration , free API = free C2 Infrastructure

C++ 145 39 Updated Aug 2, 2023

Fully Undetectable telegram Rat dropper

Dart 35 23 Updated Nov 16, 2020

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

Python 476 67 Updated Sep 17, 2025

A light-weight first-stage C2 implant written in Nim (and Rust).

Rust 932 117 Updated Mar 28, 2025

RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.

Go 1,561 214 Updated Aug 20, 2024

RedDrop is a quick and easy web server for capturing and processing encoded and encrypted payloads and tar archives.

Python 57 6 Updated Dec 17, 2024

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

C 1,366 217 Updated Oct 27, 2023

AzureC2Relay is an Azure Function that validates and relays Cobalt Strike beacon traffic by verifying the incoming requests based on a Cobalt Strike Malleable C2 profile.

C# 234 50 Updated Feb 15, 2021