v3.0.0 September 28, 2026
macOS Agent, Cloud BOFs, CDN Redirectors
macOS Agent
- macOS implant shipped — Universal binary (arm64 + x86_64) with SecureTransport TLS, DNS, and DOH transports. Same wire protocol as Windows and Linux — server handles all three transparently
- 91 macOS BOFs — shared Linux BOFs minus 16 Linux-only ones (cgroup_escape, nsenter_host, persist_systemd, etc.). macOS-specific overrides for
persist-cron(handles “no crontab” error) andpersist-bashrc(targets.zshrc/.zprofilesince macOS defaults to zsh) - IOKit power management —
kIOPMAssertionTypePreventUserIdleSystemSleep+NetworkClientActivekeep WiFi alive during display sleep. Assertion name masquerades ascom.apple.apsd - DYLD spawn —
DYLD_INSERT_LIBRARIESprocess spawning works with SIP enabled (user-installed binaries only). Ad-hoc code signing for loader dylib.task_for_pidinjection when SIP is disabled - Process masquerading —
setprogname()hides agent name inpsoutput - SOCKS5 proxy — full SOCKS support on macOS agents
Cloud BOFs
- 15 AWS BOFs — credential discovery (IMDS v1/v2, env vars, SSO caches, Credential Manager, process memory), IAM enumeration, role assumption, S3/EC2/Lambda/Secrets Manager/SSM access, SSM exec, EC2 Instance Connect, Lambda invoke. SigV4 signing built-in
- 8 Azure ARM BOFs — managed identity tokens, credential search, resource enumeration (VMs, Key Vault, Storage), blob download, VM Run Command execution
- 14 Entra ID BOFs — identity enumeration (users, groups, roles, service principals, conditional access), app secret listing/addition, OAuth grants, role assignment, PIM eligible roles
- 8 GCP Cloud BOFs — metadata token theft, credential file scanning, identity validation, VM enumeration, GCS bucket/object access, Secret Manager secrets, IAM enumeration. OAuth2 token auth via GCP metadata server or operator-supplied token
- 3 Kubernetes BOFs — pod/service/namespace enumeration, secret dumping, RBAC analysis
- All cloud BOFs ship as both Windows COFF and Linux/macOS
.so— work on all three platforms
CDN Redirectors
- AWS CloudFront — CDN redirector config generated from the CLI (
redirector cloudfront --origin <host>) or the Web UI Redirector page. Agents connect tod*.cloudfront.netwith a valid AWS TLS certificate. C2 server IP hidden from the target network - Azure Front Door — CDN redirector config generated from the CLI or Web UI. Agents connect to
*.azurefd.netwith a valid Microsoft TLS certificate - GCP Cloud CDN — CDN redirector config generated from the CLI (
redirector gcp --origin <host>) or the Web UI Redirector page. Agents connect to a Google Cloud IP with a Google-managed TLS certificate - Traffic blending — C2 traffic indistinguishable from any other CDN-hosted service on the wire. Not domain fronting — legitimate CDN routing
BOF Counts
- Total: 431 BOFs (217 Windows + 115 Linux + 99 macOS), up from 245 in v2.2.0
- 45 cloud BOFs across AWS, Azure, Entra ID, GCP, and Kubernetes
- Full cross-platform coverage — Windows, Linux, and macOS agents all shipped