EmpireProject / Empire

Empire is a PowerShell and Python post-exploitation agent.

Home Page:http://www.powershellempire.com/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

This project is no longer supported???

careyjames opened this issue · comments

if "This project is no longer supported"
does that mean there is a replacement that people are using?

what is the best post exploit framework if empire is no longer being developed?

There are a number of alternatives out there, the most popular at the moment is probably covenant. Faction and Apfell are also pretty popular.

BC Security has forked the Empire project and we plan on continuing to push updates to it. Our current updates have retooled the default payloads to evade AMSI out of the box, corrected a bug in the code that made the http listener signature very difficult to obfuscate away, modified the JA3 and JA3S signature along with a few other minor changes. Our fork is located at: https://github.com/BC-SECURITY

I'm sure there will be other forks as well.