Sign inSign up

creased/powershell-empire

By creased

•Updated almost 9 years ago

Powershell Empire in Docker

Image
0

493

creased/powershell-empire repository overview

⁠Powershell Empire in Docker

⁠Introduction

Empire is a post-exploitation framework that includes a pure-PowerShell2.0 Windows agent, and a pure Python 2.6/2.7 Linux/OS X agent.

It is the merge of the previous PowerShell Empire and Python EmPyre projects.

The framework offers cryptologically-secure communications and a flexible architecture.

On the PowerShell side, Empire implements the ability to run PowerShell agents without needing powershell.exe, rapidly deployable post-exploitation modules ranging from key loggers to Mimikatz, and adaptable communications to evade network detection, all wrapped up in a usability-focused framework.

PowerShell Empire premiered at BSidesLV in 2015⁠ and Python EmPyre premeiered at HackMiami 2016.

Here's a quickstart⁠ and full documentation⁠.

⁠Installation

Clone the project:

git clone https://gitlab.com/Creased/docker-powershell-empire empire/
cd empire/

Preapre container:

docker-compose build

Start container:

docker-compose up -d

Attach to container:

docker-compose exec empire bash

Reset databases (and certs):

screen -S empire -L -Logfile /root/empire/data/empire.log
./setup/reset.sh
exit
y

⁠Configuration

Start a new empire:

./empire

Setup listener:

listeners
uselistener http
set Host http://vps2.bmoine.fr:8080
set Port 8080
execute
launcher powershell

Detach from screen using CTRL+A``D.

Escape from container:

exit

Re-start container:

docker-compose down
docker-compose up -d

Display logs:

docker-compose logs -f

Attach to the container:

docker-compose exec empire bash

Attach to the screen:

screen -r empire

Voilà!

Tag summary

Content type

Image

Digest

Size

1.1 GB

Last updated

almost 9 years ago

docker pull creased/powershell-empire