[Offensive Security] Command and Control with Pupy!!

Takahiro Oda
3 min readJan 16, 2022

What is Pupy?

Pupy is an open-source remote admin and post-exploitation tool written in python. Pupy executes in memory, allowing it to leave a low footprint. Pupy also offers multiple communications channel options to make traffic.

MITRE ATT&CK

  • initial access
  • execution
  • persistence
  • privillege escalation
  • defense evasion
  • credential access