Skip to main content

Compromised Host (server)

The server emulates a C2 controller. The server does not have Targets or CPS settings. Its campaign set must match the client's.

  1. Receiver — same as for the HTTP server plugin.
  2. C2 compromise scenarios — the same fields as on the client: campaigns, coverage, bot ID, step timeout, beacon interval/jitter, HTTP Host / DNS / URI / body.
  3. Session settings — timeout only.
  4. IP header (L3) — same as for the HTTP server plugin.
  5. TCP header (L4) — same as for the HTTP server plugin.
  6. TLS settings — same as for the HTTP server plugin.
  7. Duration — same as for the HTTP server plugin.
  8. Network tunnels (optional).