GithubHelp home page GithubHelp logo

psyrun / northstarc2 Goto Github PK

View Code? Open in Web Editor NEW

This project forked from engindemirbilek/northstarc2

0.0 0.0 0.0 4.35 MB

Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC #infosec #offensivesecurity #Trojan

License: GNU General Public License v3.0

Shell 2.05% PHP 50.40% C# 26.75% CSS 20.77% HTML 0.03%

northstarc2's Introduction

GPL 3.0
NorthStarC2 is an open-source command and control framework developed for penetration testing and red teaming purposes by Engin Demirbilek.

NorthStar C2 Framework consists of two applications, a server-side GUI web application for managing sessions and a client-side stager to communicate with C2 server.

Quick Installation

git clone https://github.com/EnginDemirbilek/NorthStarC2.git
cd NorthStarC2/
chmod +x install.sh
sudo ./install.sh

In order to install the NorthStar C2 properly and get the best experience possible, please refer to Wiki page

NorthStarC2 Features

This project is being maintained and updated constantly so make sure to check back for new features and modules! See Roadmap.

Languages ​​and technologies used in the NorthStar C2:
Client-Side: C # .NET
Server-Side: PHP, JS, HTML, CSS

Currently, the client-side application (NorthStar Stager) has the following functions:

  • Connecting to the C2 Server via HTTP or HTTPS,
  • Receiving commands from the server-side application and responding to the command via HTTP methods,
  • Encrypting the communication traffic with XOR and obfuscating it with Base64,
  • Copying itself to a different directory,
  • Persistance through start-up folders and schtasks,
  • Host Reconnaissance : Hostname, Username, Current Privileges, Exec Dir and Process ID,
  • Privilege Escalation : UAC bypass through eventvwr.exe,
  • Taking screenshots and saving them into a directory,
  • Uploading any file to the victim machine,
  • Downloading any file from the victim machine,
  • SAM dump via reg save command,
  • Changing the working directory,
  • View the files and folders in the directory,
  • Viewing the contents of the files,
  • Deleting files,
  • Send commands directly on cmd.exe.

Currently, server-side application has the following functions:

  • User-Friendly GUI with everything needed to manage sessions opened by the stager.

Contributors

During the development process these guys spent hours on this project:
Selçuk Demir and Hasan Ekin Dumanoğulları.

GUI Preview

alt text


alt text


alt text

Acknowledgements

For theme : RuangAdmin

For inspiration: Utku Şen

Muhammet Ates

Mr-Un1k0d3r

Boğaziçi University Management Information Systems Cyber Security Center

northstarc2's People

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.