Covert ICMP C2 framework — AES-256-GCM stealth exfil, OS ping mimicry (Linux/Windows), multi-packet reassembly & anti-SOC evasion. Written in Go.
-
Updated
Jun 22, 2026 - Go
Covert ICMP C2 framework — AES-256-GCM stealth exfil, OS ping mimicry (Linux/Windows), multi-packet reassembly & anti-SOC evasion. Written in Go.
Full-scope APT simulation lab demonstrating a complete attack chain using Sliver C2 framework on linux-lite. Initial access → persistence & privilege escalation (systemd + SUID) → lateral movement via SSH key theft → covert data exfiltration. Includes MITRE ATT&CK mapping, detection notes, and IOCs.
Add a description, image, and links to the apt-simulation topic page so that developers can more easily learn about it.
To associate your repository with the apt-simulation topic, visit your repo's landing page and select "manage topics."