https://github.com/byt3n33dl3/athenahoundad
Adversary Emulation crossplatform framework agent designed using the version of .NET. EXEC Service EXE wrapper for Shellcodes.
Science Score: 13.0%
This score indicates how likely this project is to be science-related based on various indicators:
-
○CITATION.cff file
-
✓codemeta.json file
Found codemeta.json file -
○.zenodo.json file
-
○DOI references
-
○Academic publication links
-
○Academic email domains
-
○Institutional organization owner
-
○JOSS paper metadata
-
○Scientific vocabulary similarity
Low similarity (13.1%) to scientific vocabulary
Keywords
Repository
Adversary Emulation crossplatform framework agent designed using the version of .NET. EXEC Service EXE wrapper for Shellcodes.
Basic Info
Statistics
- Stars: 6
- Watchers: 1
- Forks: 0
- Open Issues: 0
- Releases: 3
Topics
Metadata Files
README.md
AthenaHoundAD
AthenaHoundAD is a Fully featured Cross platform agent designed using the crossplatform version of .NET, not to be confused with .Net Framework. AthenaHoundAD is designed for Mythic 3.0 and newer.
Workflows
Features
- Crossplatform
- Windows
- Linux
- OSX
- Potentially More!
- SOCKS5 Support
- Reverse Port Forwarding
- P2P Agent support
- SMB
- More coming soon
- Reflective loading of Assemblies
- Modular loading of commands
- Easy plugin development
- Easy development of new communication methods
- BOF Support
Installation
1.) Install Mythic from here
2.) From the Mythic install directory run the following command:
csharp
./AthenaHoundAD install github https://github.com/byt3n33dl3/AthenaHoundAD
Credits
@byt3n33dl3 - Creator of the AthenaHoundAD
@itsafeature_ - Creator of the Mythic framework
@0okamiseishin - For creating the Athena logo
@djhohnstein - For crypto code, and advice regarding development
@tr41nwr3ck - For plugin Development & Testing
Known Issues
- Athena cannot be converted to shellcode
- Due to the nature of self-contained .NET executables, Athena is currently unable to be converted to shellcode with tool such as donut
- Large Binary Sizes
- Athena binaries default to being "self-contained", this essentially means the entire .NET runtime is included in the binary leading to larger sizes. If you need smaller binaries, experiment with the
trimmed, andcompressedoptions.
- Athena binaries default to being "self-contained", this essentially means the entire .NET runtime is included in the binary leading to larger sizes. If you need smaller binaries, experiment with the
- Athena doesn't work with
- Athena is built using the latest version of .NET which is fundamentally different from the .NET Framework, which a majority of offensive security tools use. Any .NET Framework binaries will need to be converted to .NET 7 before they can be used with
executeassembly alternatively, you can useinjectassembly to usedonutto convert it to shellcode and inject into a sacrificial process.
- Athena is built using the latest version of .NET which is fundamentally different from the .NET Framework, which a majority of offensive security tools use. Any .NET Framework binaries will need to be converted to .NET 7 before they can be used with
LICENSE / Super
AGPL 3.0 gnu.agpl.org
MIT
Credits / main
Owner
- Name: Sulaiman
- Login: byt3n33dl3
- Kind: user
- Location: Error 403: Not on earth
- Website: https://byt3n33dl3.substack.com/
- Twitter: byt3n33dl3
- Repositories: 91
- Profile: https://github.com/byt3n33dl3
I N F R A X 8 6
GitHub Events
Total
- Release event: 3
- Watch event: 5
- Delete event: 5
- Member event: 2
- Push event: 17
- Create event: 11
Last Year
- Release event: 3
- Watch event: 5
- Delete event: 5
- Member event: 2
- Push event: 17
- Create event: 11
Issues and Pull Requests
Last synced: 11 months ago
All Time
- Total issues: 0
- Total pull requests: 0
- Average time to close issues: N/A
- Average time to close pull requests: N/A
- Total issue authors: 0
- Total pull request authors: 0
- Average comments per issue: 0
- Average comments per pull request: 0
- Merged pull requests: 0
- Bot issues: 0
- Bot pull requests: 0
Past Year
- Issues: 0
- Pull requests: 0
- Average time to close issues: N/A
- Average time to close pull requests: N/A
- Issue authors: 0
- Pull request authors: 0
- Average comments per issue: 0
- Average comments per pull request: 0
- Merged pull requests: 0
- Bot issues: 0
- Bot pull requests: 0
Top Authors
Issue Authors
Pull Request Authors
Top Labels
Issue Labels
Pull Request Labels
Dependencies
- EndBug/add-and-commit v9 composite
- actions/checkout v4 composite
- docker/build-push-action v5 composite
- docker/login-action v3 composite
- docker/setup-buildx-action v2 composite
- jossef/action-set-json-field v2.1 composite
- actions/checkout v3 composite
- actions/setup-dotnet v3 composite
- python 3.11-slim-bookworm build
- ghcr.io/byt3n33dl3/athenahoundad v2.1.5 build
- Obfuscar 2.2.38 development
- Autofac 7.1.0
- Autofac.Extensions.DependencyInjection 8.0.0
- Discord.Net.WebSocket 3.14.1
- H.Pipes 2.0.59
- H.Pipes.AccessControl 2.0.59
- Websocket.Client 5.0.0
- coverlet.collector 6.0.0 development
- MSTest.TestAdapter 3.2.0-preview.23623.1
- MSTest.TestFramework 3.2.0-preview.23623.1
- Microsoft.NET.Test.Sdk 17.9.0-preview-23577-04
- MSTest.TestAdapter 2.2.10
- MSTest.TestFramework 2.2.10
- Microsoft.NET.Test.Sdk 17.6.0
- coverlet.collector 3.2.0
- System.DirectoryServices.Protocols 8.0.0
- System.Drawing.Common 8.0.0
- SSH.NET 2023.0.0
- H.Pipes 2.0.59
- H.Pipes.AccessControl 2.0.59
- SSH.NET 2023.0.0
- mythic-container *
- pefile *
- py2app *
- pycryptodome *
- impacket >=0.9.24
- pyasn1 >=0.4.8
- pefile *
- py2app *