daemon-sec-cheatsheet

The cheatsheet vault for operators: AD, enumeration, exploitation, priv-esc, web, DFIR
git clone https://git.daemon-sec.xyz/daemon-sec-cheatsheet.git
Log | Files | Refs | README | LICENSE

mythic.md (3224B)


      1 ---
      2 title: "Mythic C2"
      3 section: "Command & Control"
      4 sectionSlug: "command-control"
      5 sourcePath: "docs/command-control/mythic.md"
      6 sourceUrl: "https://github.com/swisskyrepo/InternalAllTheThings/blob/203bb0c0b290/docs/command-control/mythic.md"
      7 sha: "203bb0c0b290"
      8 isIndex: false
      9 ---
     10 
     11 # Mythic C2
     12 
     13 ## Summary
     14 
     15 * [Installation](#installation)
     16 * [Agents](#agents)
     17 * [Profiles](#profiles)
     18 * [References](#references)
     19 
     20 ## Installation
     21 
     22 ```ps1
     23 sudo apt-get install build-essential
     24 git clone https://github.com/its-a-feature/Mythic --depth 1
     25 ./install_docker_ubuntu.sh
     26 ./install_docker_debian.sh
     27 cd Mythic
     28 sudo make
     29 sudo ./mythic-cli start
     30 ```
     31 
     32 ## Agents
     33 
     34 * [Mythic Community Agent Feature Matrix](https://mythicmeta.github.io/overview/agent_matrix.html)
     35 
     36 Agents can be found at: [https://github.com/MythicAgents](https://github.com/MythicAgents)
     37 
     38 ```ps1
     39 ./mythic-cli install github https://github.com/MythicAgents/Medusa # A Mythic Agent compatible Python 2.7 and 3.8
     40 ./mythic-cli install github https://github.com/MythicAgents/Hannibal # A Mythic Agent written in PIC C
     41 ./mythic-cli install github https://github.com/MythicAgents/thanatos # A Mythic C2 agent targeting Linux and Windows hosts written in Rust
     42 ./mythic-cli install github https://github.com/MythicAgents/poseidon # A Mythic Agent written in Golang for Linux/MacOS
     43 ./mythic-cli install github https://github.com/MythicAgents/Apollo # # A Mythic Agent written in C# using the 4.0 .NET Framework 
     44 ./mythic-cli install github https://github.com/MythicAgents/Athena # A Mythic Agent written in .NET
     45 ./mythic-cli install github https://github.com/MythicAgents/Xenon # A Mythic Agent written in C, compatible with httpx profiles
     46 ```
     47 
     48 ## Profiles
     49 
     50 C2 Profiles can be found at: [https://github.com/MythicC2Profiles](https://github.com/MythicC2Profiles)
     51 
     52 ```ps1
     53 ./mythic-cli install github https://github.com/MythicC2Profiles/httpx
     54 ./mythic-cli install github https://github.com/MythicC2Profiles/http
     55 ./mythic-cli install github https://github.com/MythicC2Profiles/websocket
     56 ./mythic-cli install github https://github.com/MythicC2Profiles/dns
     57 ./mythic-cli install github https://github.com/MythicC2Profiles/dynamichttp
     58 ./mythic-cli install github https://github.com/MythicC2Profiles/smb
     59 ./mythic-cli install github https://github.com/MythicC2Profiles/tcp
     60 ```
     61 
     62 ## SSL
     63 
     64 If you want to use SSL, put your key and cert in the `C2_Profiles/HTTP/c2_code` folder and update the `key_path` and `cert_path` variables to have the `names` of those files.
     65 
     66 Use Let's Encrypt certbot to get both the key and certificate for your domain:
     67 
     68 ```ps1
     69 sudo apt install certbot
     70 certbot certonly --standalone -d "example.com" --register-unsafely-without-email --non-interactive --agree-tos
     71 ```
     72 
     73 Add the file in the Agent container:
     74 
     75 ```ps1
     76 docker cp /etc/letsencrypt/archive/example.com/fullchain1.pem http:/Mythic/http/c2_code/fullchain.pem
     77 docker cp /etc/letsencrypt/archive/example.com/privkey1.pem http:/Mythic/http/c2_code/privkey.pem
     78 ```
     79 
     80 Alternatively, if you specify `use_ssl` as true and you don't have any certs already placed on disk, then the profile will automatically generate some self-signed certs for you to use.
     81 
     82 ## References
     83 
     84 * [Mythic Documentation](https://docs.mythic-c2.net)