The cross-platform Nim language is starting to become a thing in offsec... here's a new RAT/agent, written in Nim, which communicates to a C2 over multiple protocols (http, tcp, udp)..

This page summarizes the projects mentioned and recommended in the original post on /r/blackhat

Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
  • nicodemus

    Discontinued A cross-platform Nim implant for Prelude Operator

  • OffensiveNim

    My experiments in weaponizing Nim (https://nim-lang.org/)

  • Nim is a computer language that has recently started to become popular (i.e., a thing) in offensive security. There's even a fairly popular project, called Offensive Nim (https://github.com/byt3bl33d3r/OffensiveNim) which has started collecting code on the topic.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • community

    All open-source content for the Prelude Operator C2 platform (by preludeorg)

  • There's a repository out there (https://github.com/preludeorg/community) with commands you can use for the Operator C2. If you flip through these, you can see some that are unlikely to trigger an EDR response and others which definitely should.

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts