Uses Apple's MDM protocol to backdoor a device with a malicious profile.
☆57Oct 12, 2021Updated 4 years ago
Alternatives and similar repositories for orthrus
Users that are interested in orthrus are comparing it to the libraries listed below
Sorting:
- Payload designed for targeting Jamf enrolled devices.☆39May 19, 2023Updated 2 years ago
- ☆22Dec 30, 2025Updated 2 months ago
- ☆22Jun 9, 2025Updated 9 months ago
- Mythic Developer Series: Workshop Golang Agent☆25Jun 27, 2023Updated 2 years ago
- Test Azure environment for MFA misconfigurations☆12Jan 13, 2023Updated 3 years ago
- Mythic Scripting PyPi package - mythic☆28Oct 10, 2025Updated 4 months ago
- Bloodhound agent for Mythic☆23Apr 19, 2025Updated 10 months ago
- ☆22Jan 2, 2026Updated 2 months ago
- Nemesis agent for Mythic☆28Dec 11, 2025Updated 2 months ago
- ☆14Mar 19, 2024Updated last year
- Cobalt Strike log state tracking, parsing, and storage☆24Jul 18, 2019Updated 6 years ago
- ☆17May 19, 2022Updated 3 years ago
- JXA script to allow programmatic persistence via macOS Calendar.app alerts.☆44Oct 31, 2020Updated 5 years ago
- Generate Apache mod_rewrite rules for Mythic C2 profiles☆35Jul 22, 2021Updated 4 years ago
- Suite of tools to facilitate attacks against the Jamf macOS management platform.☆189Feb 10, 2021Updated 5 years ago
- Ansible role that Installs Mythic☆19Jun 24, 2024Updated last year
- A Visual Studio Code Extension agent for Mythic C2☆72Nov 5, 2024Updated last year
- JXA situational awareness helper by simply reading specific files on a filesystem☆82Feb 17, 2026Updated 2 weeks ago
- Rewrite to fit my needs☆32Jul 20, 2024Updated last year
- Python3 script to generate a macro to launch a Mythic payload. Author: Cedric Owens☆48Apr 15, 2021Updated 4 years ago
- JXA script based on research by Jeff Johnson on leveraging TextEdit to remove quarantine attributes on files. Jeff's original research is…☆17Jan 31, 2021Updated 5 years ago
- Template repo for hooking 3rd party agents into Mythic while hosting them on external GitHub Repos☆53Nov 18, 2024Updated last year
- ObjectiveC CLI tool for interacting with macOS Keychain☆82Oct 10, 2022Updated 3 years ago
- Swift code to programmatically execute local or hosted JXA payloads from Terminal without using the on-disk osascript binary.☆23Apr 22, 2021Updated 4 years ago
- A cross-platform implant written in Nim☆175Mar 6, 2024Updated 2 years ago
- Pivot from a Twitter profile to Medium, Product Hunt, Mastodon, and more with OSINT☆37Feb 26, 2024Updated 2 years ago
- JXA implementation of some SwiftBelt functions. Author: Cedric Owens☆46Jun 22, 2023Updated 2 years ago
- ☆217Updated this week
- JavaScript for Automation (JXA) macOS agent☆95Feb 19, 2026Updated 2 weeks ago
- Swift 5 macOS agent☆113Jul 23, 2024Updated last year
- Poseidon is a Golang agent targeting Linux and macOS☆205Feb 27, 2026Updated last week
- Webshell agent in aspx and php☆27Dec 11, 2025Updated 2 months ago
- macOS persistence tool☆229Feb 9, 2022Updated 4 years ago
- This repository contains the technique presented at SOCON2025 for stealing cookies silently from MacOS Sequoia with only root privileges☆12Mar 27, 2025Updated 11 months ago
- ☆14Jun 27, 2024Updated last year
- Sample of a Malicious baseband signed by Apple☆10May 12, 2022Updated 3 years ago
- Session material from my conference presentation at Live360\Techmentor in Orlando,November 2023☆11Nov 14, 2023Updated 2 years ago
- Slack post-exploitation script for leaked bot tokens and "d" cookies☆17Nov 18, 2025Updated 3 months ago
- Attacking indiscriminately every header, cookie, GET and POST parameter with blind fury.☆13Sep 25, 2025Updated 5 months ago