Skip to content
#

post-exploitation-toolkit

Here are 19 public repositories matching this topic...

The C2 Cloud is a robust web-based C2 framework, designed to simplify the life of penetration testers. It allows easy access to compromised backdoors, just like accessing an EC2 instance in the AWS cloud. It can manage several simultaneous backdoor sessions with a user-friendly interface.

  • Updated Feb 18, 2024
  • Python

A lightweight, modular post-exploitation framework for Linux and Windows. Manages interactive reverse-shell sessions over TCP/TLS/mTLS and provides plugins for enumeration, execution, pivoting, and operational tasks without deploying a separate agent or dropping enumeration binaries on target.

  • Updated Sep 12, 2026
  • Python

A sophisticated PowerShell C2 client for remote command execution and reporting. It includes a Windows reverse shell payload generator and handler using the HTTPS protocol. The client polls a Python-based web server (REST API) for commands, executes them locally, and returns the results.

  • Updated Jun 10, 2024
  • Python

Red in Pulse post-exploitation tool maintains macOS persistence by leveraging a design weakness in Background Task Management (BTM). It creates a service that blends into the `launchd` lifecycle as a legitimate Apple component, enabling scheduled reconnection after session loss while reducing exposure to signature-based detection.

  • Updated Aug 18, 2026
  • Objective-C

Add this topic to your repo

To associate your repository with the post-exploitation-toolkit topic, visit your repo's landing page and select "manage topics."

Learn more