/projects/shardc2

ShardC2

Modular C2 framework for authorized red team operations.

About

Policy-aware command-and-control framework for authorized red team operations. Go server/agent core with an operator dashboard, RBAC, audit logs, encrypted payloads, and built-in safety controls.

Features

  1. 015 campaign types: Recon, Brute, Exfil, Persist, Custom
  2. 027-section operator dashboard with multi-bot WebSocket terminal
  3. 03Safety policy engine: CIDR scope, safe mode, blocked ranges
  4. 04RBAC, audit logging, Markdown evidence report export
  5. 05Encrypted payloads with per-campaign AES keys
  6. 06Agent heartbeat with auto-reconnect and jitter

Stack

  • Go
  • PostgreSQL
  • Redis
  • WebSocket
  • Docker
  • Fiber

Campaign Types

Recon

Network enumeration, port scanning, service discovery

Brute

Credential spraying with policy-aware rate limits

Exfil

Staged data exfiltration with encrypted channels

Persist

Persistence implants with scheduled callbacks

Custom

User-defined task chains with conditional logic