# HavocFramework/Havoc

The Havoc Framework

Repository: https://github.com/HavocFramework/Havoc
Canonical: https://ross.abutalabs.com/products/havoc
Homepage: https://havocframework.com
Language: Go
License: GPL-3.0
License Family: copyleft
Archived: true
Last push: 2025-12-18T15:10:21+00:00

## Health v2 (maintenance only)
Score: 10/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 57, release rhythm 35, longevity 100
- inputs: {"age_days": 1452, "days_push": 258, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, archived
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 8507, forks 1243 (observed 2026-08-28T04:10:23.220005+00:00)

## What it is
Havoc is a modern, malleable post-exploitation command and control (C2) framework with a Go teamserver, a Qt-based cross-platform client, and a C/ASM implant called Demon. It supports multiplayer operation, payload generation, HTTP/HTTPS listeners, customizable C2 profiles, and extensibility via a Python API and custom agents.

## Use cases
- run a red team command and control server
- generate obfuscated payloads like exe, shellcode, and dll
- manage post-exploitation sessions across a team
- build custom C2 profiles and listeners
- extend a C2 framework with Python modules
- test endpoint detection against advanced implant techniques

## When to choose
- you need an open-source alternative to commercial C2 frameworks like Cobalt Strike
- you want a multiplayer C2 with a modern GUI client
- you need a highly customizable and extensible post-exploitation framework
- you are doing authorized red team or penetration testing engagements

## When to avoid
- you have no authorization to test systems you do not own
- you need guaranteed evasion out of the box - the framework is designed for malleability, not built-in evasion
- you need a simple vulnerability scanner rather than a full C2 platform

## Facets
- artifact type: framework
- maturity: active
- function: security, penetration-testing, agent-framework, gui, cli
- domain: security, penetration-testing, developer-tools
- platform: windows, cross-platform, go, cpp, python
- tags: c2-framework, post-exploitation, red-team, command-and-control, payload-generation, cobalt-strike-alternative, linux

## Member repositories
- HavocFramework/Havoc (main) score 10

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:10:23.220005+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:26:41.916247+00:00, confidence not recorded.
  - readme: https://github.com/HavocFramework/Havoc (fetched 2026-08-28T04:10:23.220005+00:00, sha 5e23f1dbc7f3)
  - homepage: https://havocframework.com (fetched 2026-08-29T08:26:47.608455+00:00, sha 91509b5419f2)
  - site_page: https://havocframework.com/docs (fetched 2026-08-29T08:26:47.618360+00:00, sha d65da05c314d)
- Data as of 2026-08-30T08:39:29.467469+00:00.
