{"repo":"t3l3machus/Villain","free":true,"listed":false,"github":"https://github.com/t3l3machus/Villain","clone":"git clone https://github.com/t3l3machus/Villain.git","description":"Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share them among connected sibling servers (Villain instances running on different machines).","language":"Python","stars":4431,"topics":["open-source","pentest","pentesting","readteaming","redteam-tools","redteam","cybersecurity","offensive-security","c2","hacking"],"license":null,"category":"security-tools","readme_excerpt":"Villain Purpose Villain is a high-level Stage 0/1 C2 framework that can handle multiple reverse TCP and HoaxShell-based shells, enhance their functionality with additional features (commands, utilities), and share them among connected sibling servers (Villain instances running on different machines). The framework's main features include: - Payload generation based on default, customizable and/or user defined payload templates (Windows & Linux), - A dynamically engaged pseudo-shell prompt that can quickly swift between shell sessions, - File uploads (via http), - Fileless execution of scripts against active sessions, - Auto-invoke ConPtyShell against a powershell r-shell session as a new process to gain a fully interactive Windows shell, - Multiplayer mode, - Session Defender (a feature that inspects user issued commands for mistakes / unintentional input that may cause a shell to hang). Video Presentations There’s no up-to-date presentation of Villain with its latest features, but these videos give a good overview of its functionality. [2022-11-30] John Hammond showcased the tool in this incredible video - youtube.com/watch?v=pTUggbSCqA0 [2023-03-30] Version 2.0.0 release demo, made by me - youtube.com/watch?v=NqZEmBsLCvQ :exclamation: Disclaimer --------------------------------- This project is in active development . Expect breaking changes with releases. Using this tool against hosts that you do not have explicit permission to test is illegal. You are responsible for any ","default_branch":null,"files":null,"tree":[],"storefront":"/r/t3l3machus","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/t3l3machus/Villain/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}