Empire is a post-exploitation framework that includes a pure-PowerShell2.0 Windows agent, and a pure Python 2.6/2.7 Linux/OS X agent.
It is the merge of the previous PowerShell Empire and Python EmPyre projects.
The framework offers cryptologically-secure communications and a flexible architecture.
On the PowerShell side, Empire implements the ability to run PowerShell agents without needing powershell.exe, rapidly deployable post-exploitation modules ranging from key loggers to Mimikatz, and adaptable communications to evade network detection, all wrapped up in a usability-focused framework.
PowerShell Empire premiered at BSidesLV in 2015 and Python EmPyre premeiered at HackMiami 2016.
Here's a quickstart and full documentation.
Clone the project:
git clone https://gitlab.com/Creased/docker-powershell-empire empire/
cd empire/
Preapre container:
docker-compose build
Start container:
docker-compose up -d
Attach to container:
docker-compose exec empire bash
Reset databases (and certs):
screen -S empire -L -Logfile /root/empire/data/empire.log
./setup/reset.sh
exit
y
Start a new empire:
./empire
Setup listener:
listeners
uselistener http
set Host http://vps2.bmoine.fr:8080
set Port 8080
execute
launcher powershell
Detach from screen using CTRL+A``D.
Escape from container:
exit
Re-start container:
docker-compose down
docker-compose up -d
Display logs:
docker-compose logs -f
Attach to the container:
docker-compose exec empire bash
Attach to the screen:
screen -r empire
Voilà!
Content type
Image
Digest
Size
1.1 GB
Last updated
almost 9 years ago
docker pull creased/powershell-empire