C2Matrix
 Share
The version of the browser you are using is no longer supported. Please upgrade to a supported browser.Dismiss

View only
 
 
ABCDEFGHIJKLMNOPQRSTUVWXYZAAABACADAEAFAGAHAIAJAKALAMANAOAPAQAR
1
AdminLanguageUIChannelAgentsCapabilitiesSupport
2
NameEvaluatorDateLicensePrice
Version Reviewed
Implementation
ServerAgentMulti-UserUIAPITCPHTTPHTTP2HTTP3DNSDoHICMPFTPIMAPMAPISMBWindowsLinuxmacOSKey Exchange
Proxy Aware
DomainFront
Custom Profile
Jitter
Working Hours
Kill DateChainingLogging
ATT&CK Mapping
Dashboard
Actively Maint.
SlackTwitterSiteGitHubHow-ToNotes
3
Apfell@jorgeorchilles10/6/2019BSD3NA1.3DockerPythonPythonYesWebYesNoYesNoNoNoNoNoNoNoNoNoYesYes
Encrypted Key Exchange
NoYesYesNoNoNoNoYesYesYesYes
#ApFell bloodhoundgang.herokuapp.com
@its_a_feature_
https://github.com/its-a-feature/Apfell
https://docs.apfell.net/
4
C3BSD3NA1.0.0NoYes
#c3 bloodhoundgang.herokuapp.com
https://labs.mwrinfosecurity.com/tools/c3/
https://github.com/mwrlabs/C3
5
CALDERA@jorgeorchilles10/6/2019Apache 2NA2pip3PythonGoYesWebYesNoYesNoNoNoNoNoNoNoNoYesYesYesNoneYesNoYesYesNoNoYesYesYesYesYesNoNo
https://github.com/mitre/caldera
https://github.com/mitre/caldera/wiki
6
Cobalt Strike@TimMedin11/20/2019Commercial$3,5003.14binaryJavaJavaYesGUINoYesYesNoNoYesNoNoNoNoNoYesYesNoNoYesYesYesYesYesNoYesYesYesYesYesYes
https://www.cobaltstrike.com/
https://www.cobaltstrike.com/
7
Covenant@jorgeorchilles10/6/2019GNU GPL3NA0.3DockerC#C#YesWebYesNoYesNoNoNoNoNoNoNoNoYesYesNoNo
Encrypted Key Exchange
YesYesYesYesNoYesYesYesNoYesYes
#covenant bloodhoundgang.herokuapp.com
@cobbr_io
https://cobbr.io/tags#covenant
https://github.com/cobbr/Covenant
https://github.com/cobbr/Covenant/wiki
8
Empire@jorgeorchilles9/26/2019BSD3NA2.5install.shPython2PowerShellNoGUIYesNoYesNoNoNoNoNoNoNoNoYesYesYes
Encrypted Key Exchange
YesYesYesYesYesYesNoYesNoNoYes
#psempire bloodhoundgang.herokuapp.com
@BCSecurity1
https://github.com/BC-SECURITY/Empire
9
EvilOSX
@cabbagesalad2
11/12/2019GNU GPL3NA7.2.1pip3PythonPythonNoGUINoNoYesNoNoNoNoNoNoNoNoYesYesYesAESNoNoYesNoNoNoNoNoNoNoYesNo
https://github.com/Marten4n6/EvilOSX
10
Faction C2@jorgeorchilles10/30/2019BSD3NANAinstall.sh.NET.NETYesWebYesYesYesNoNoNoNoNoNoNoNoYesNoNoTLSYesNoYesYesNoYesNoYesNoYesYes
#factionc2 bloodhoundgang.herokuapp.com
https://www.factionc2.com/
https://github.com/FactionC2/
Ubuntu only
11
FlyingAFalseFlag
@jorgeorchilles11/12/2019GNU GPL3NAPOCpip3PythonC++NoCLINoNoYesNoNoNoNoNoNoNoNoYesNoNoNoneNoNoNoNoNoNoNoNoNoNoYesNo
https://github.com/monoxgas/FlyingAFalseFlag
PostOffice EWS SendGrid & Addendum VirusTotal
12
godoh
@cabbagesalad2
10/31/2019GNU GPL3NA1.6binaryGoGoNoCLINoNoNoNoNoNoYesNoNoNoNoYesYesYesNoneNoNoNoYesNoNoNoNoNoNoYesNo@leonjza
https://github.com/sensepost/goDoH
13
ibombshell@jorgeorchilles11/12/2019GNU GPL3NA0.0.3bpip3PythonPowerShellNoGUINoNoYesNoNoNoYesNoNoNoNoYesYesYesNoneYesNoNoNoNoNoNoNoNoNoYesNo
https://github.com/ElevenPaths/ibombshell
Works anywhere PowerShell does; GET requests
14
INNUENDO@daveaitel11/11/2019CommercialContact Sales1.7install.shPythonPythonYesWebYesNoYesNoNoYesNoYesYesYesYesYesYesYesYes
Encrypted Key Exchange
YesYesYesYesNoNoYesYesNoYesYesNo
https://www.immunityinc.com/products/innuendo/
15
Koadic C3@jorgeorchilles9/27/2019Apache 2NA0xA (10)pip3PythonJScript/VBScriptNoGUINoNoYesNoNoNoNoNoNoNoNoYesNoNoNoneNoNoNoNoNoYesNoYesNoNoYesNoNo
https://github.com/zerosum0x0/koadic
https://www.hackingarticles.in/koadic-com-command-control-framework/
Requires valid cert for HTTPS
16
MacShellSwift
@Adam_Mashinchi
11/13/2019NANAN/ApythonPythonSwiftNoCLINoNoYesNoNoNoNoNoNoNoNoNoNoYesTLSNoNoNoNoNoNoNoNoNoNoYesNo@cedowensNo
https://github.com/cedowens/MacShellSwift/tree/master/MacShellSwift
17
Metasploit@busterbcook12/4/2019BSD3NA5.0.62RubyRubyC/Java/PHP/PythonYesCLIYesYesYesNoNoNoNoNoNoNoNoYesYesYesYesRSAYesYesNoNoNoNoYesYesNoNoYesmetasploit.slack.com@metasploit
https://metasploit.com
https://github.com/rapid7/metasploit-framework
18
Merlin@jorgeorchilles11/4/2019GNU GPL3NA0.8.0BinaryGoGoNoGUINoNoYesYesYesNoNoNoNoNoNoYesYesYesaPAKE OPAQUENoNoNoYesNoYesNoYesNoNoYes
#merlin bloodhoundgang.herokuapp.com
@merlin_c2
http://medium.com/@Ne0nd0g
https://github.com/Ne0nd0g/merlin
https://www.hackingarticles.in/command-and-control-guide-to-merlin/
Domain Front possible by custom compile; QUIC (UDP) Channel; Proxy capable but hard coded and only HTTP
19
Nuages@jorgeorchilles11/12/2019NANAPOCsetup.shPythonC#YesGUIYesNoYesNoNoNoNoNoNoNoNoYesNoNoAESNoNoNoNoNoNoNoNoNoNoYesNo
https://github.com/p3nt4/Nuages
https://github.com/p3nt4/Nuages/wiki
Everything is custom built.
20
PoshC2@jorgeorchilles11/13/2019BSD3NA5install.shPython
PowerShell/C#/Python
YesCLIYesNoYesNoNoNoNoNoNoNoNoYesYesYesTLSYesYesYesYesNoYesYesYesNoNoYesposhc2.slack.com
@Nettitude_Labs
https://poshc2.readthedocs.io/en/latest/
https://github.com/nettitude/PoshC2/
Many payloads. PoshC2 is current, older version is at: https://github.com/nettitude/PoshC2_Old/
21
PowerHub@jorgeorchilles11/15/2019MITNA1.3pip3PythonPowerShellYesWebNoNoYesNoNoNoNoNoNoNoNoYesNoNoTLSYesNoNoNoNoNoNoYesNoNoYesNo@mr_mitm
https://github.com/AdrianVollmer/PowerHub
https://github.com/AdrianVollmer/PowerHub/wiki
22
Prismatica@0sm0s1z11/13/2019MITNA0.01Docker
Javascript/Python
JScript/.NET/RustYesGUIYesYesYesNoNoNoNoNoNoNoNoYesYesYesNoneYesNoYesYesNoNoYesYesNoYesYesNo@PPrismatica
http://prismatica.io/
https://github.com/Project-Prismatica
A few issues came up when poking this. Prismatica is a marketplace and not a c2 in and of itself. Prismatica has multliple c2 applications that can be used, but I haven't been able to get them working. Git merge errors and sparse/incomplete instructions have made getting accurate information about this c2 cumbersome.
23
PupyBSD3NAPythonPythonNoCLINoYesYesNoYesNo@n1nj4sec
https://github.com/n1nj4sec/pupy
https://www.hackingarticles.in/command-control-tool-pupy/
24
QuasarRATMITNAYes
https://github.com/quasar/QuasarRAT
25
Red Team Toolkit
@dmay3r11/22/2019Commercial$7,0002.63install.shPythonC++NoCLINoNoYesNoNoNoNoNoNoNoNoYesYesNoNo
Encrypted Key Exchange
YesYesYesNoNoNoYesYesNoNoYes
@SilentBreakSec
https://silentbreaksecurity.com/red-team-toolkit/slingshot/
26
redViperNANAYes
https://github.com/itsKindred/redViper
27
SCYTHE
@Adam_Mashinchi
11/13/2019CommercialContact Sales2.5BinaryPythonCYesWebYesYesYesNoNoYesNoNoNoNoNoYesYesYesYes
Encrypted Key Exchange
YesYesYesYesNoYesYesYesYesYesYesNo@scythe_io
https://scythe.io
28
SilentTrinity@0sm0s1z11/13/2019GNU GPL3NA0.4.6devpip3PythonIronPythonYesCLINoNoYesNoNoNoNoNoNoNoNoYesNoNoECDHENoYesNoYesNoNoNoYesNoNoYes
#silenttrinity bloodhoundgang.herokuapp.com
@byt3bl33d3r
https://github.com/byt3bl33d3r/SILENTTRINITY
https://github.com/byt3bl33d3r/SILENTTRINITY/wiki
29
Sliver@jorgeorchilles11/5/2019GNU GPL3NA0.0.6-alphaBinaryGoGoYesCLINoYesYesNoNoYesNoNoNoNoNoYesYesYesmTLSNoNoNoNoNoNoNoNoNoNoYes
@LittleJoeTables @rkervell @bishopfox
https://github.com/BishopFox/sliver
Good for evasion
30
ThrowbackGNU GPL2NANo
https://github.com/silentbreaksec/Throwback
No updates in 5 years
31
Trevor C2
@cabbagesalad2
10/16/2019BSD3NA1.1pip3PythonPython/PowerShellNoCLINoNoYesNoNoNoNoNoNoNoNoYesYesYesAESNoNoYesYesNoNoNoNoNoNoYes
@HackingDave
https://github.com/trustedsec/trevorc2/
32
VoodooCommercial$2,000Yess2universe.slack.com
https://www.voodooops.com/
33
WEASEL@jorgeorchilles12/3/2019MITNA1pip3PythonPythonNoCLINoNoNoNoNoYesNoNoNoNoNoNoYesYesYesAESNoNoNoNoNoNoNoNoNoNoYes@ucsenoi
https://github.com/facebookincubator/WEASEL
Beacons via DNS
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
Loading...