logo

Apollo 2.0 — New Year, New Features

ID: b31a2ec6-1665-555b-af05-e955825f136d

STIX ID: report--b31a2ec6-1665-555b-af05-e955825f136d

Feed Name: SpecterOps Blog

Threat Score
50/100

Date Published: 2022-02-02

Date Updated: 2026-04-30

Author: Dwight Hohnstein

...
...

Apollo 2.0 is a complete rewrite of the Apollo post‑exploitation agent for the Mythic framework that introduces dynamic runtime command loading, robust SOCKS5 proxying, peer-to-peer communications over SMB/TCP, in-process .NET assembly execution, and the ability to execute unmanaged x64 PE payloads; the article focuses on features, implementation notes, testing in a red-team lab, and future development (unit testing, additional C2 profiles, and evasion/payload wrappers) rather than describing a discrete security incident.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.