> ## Documentation Index
> Fetch the complete documentation index at: https://docs.specterops.io/llms.txt
> Use this file to discover all available pages before exploring further.

# Mythic Agents

> Comprehensive documentation for Mythic post-exploitation agents and integrations

<div style={{ textAlign: 'center', marginBottom: '30px' }}>
  <img src="https://mintcdn.com/specteropsdocs/k1yx6gbUDEwWUifq/logo/specterops-banner.png?fit=max&auto=format&n=k1yx6gbUDEwWUifq&q=85&s=8f8e3cc29277c0c42618246edbbaf88a" alt="SpecterOps Banner" width="1500" height="500" data-path="logo/specterops-banner.png" />
</div>

<div style={{ textAlign: 'center', marginBottom: '20px' }}>
  <a href="https://join.slack.com/t/bloodhoundhq/shared_invite/zt-1tgq6ojd2-ixpx5nz9Wjtbhc3i8AVAWw">
    <img src="https://img.shields.io/badge/Slack-SpecterOps-02B36C" alt="Slack" style={{ display: 'inline', margin: '0 5px' }} />
  </a>

  <img src="https://img.shields.io/twitter/follow/specterops?style=social" style={{ display: 'inline', margin: '0 5px' }} />
</div>

## Overview

This documentation covers a comprehensive collection of Mythic agents designed for post-exploitation operations, system integration, and command augmentation. Mythic is a collaborative, multi-platform, red teaming framework that provides a flexible and extensible architecture for command and control operations.

The agents documented here span multiple categories:

* **Payload Agents**: Traditional post-exploitation agents running on compromised systems
* **Service & Integration Agents**: Specialized agents for platform integration and data enrichment
* **Command Augmentation**: Tools that extend capabilities across multiple agent types

All agents support the Mythic framework's core features including task management, file operations, credential tracking, and comprehensive logging.

## Payload Agents

Traditional post-exploitation agents that run on compromised hosts across multiple platforms.

<CardGroup cols={3}>
  <Card title="Apollo" img="https://mintcdn.com/specteropsdocs/k1yx6gbUDEwWUifq/mythic-agents/apollo-docs/documentation-payload/apollo/Apollo.svg?fit=max&auto=format&n=k1yx6gbUDEwWUifq&q=85&s=c7f7a7988fdd12cf53d72e07ffbc16db" color="#d73502" href="/mythic-agents/apollo-docs/documentation-payload/apollo/_index" width="960" height="960" data-path="mythic-agents/apollo-docs/documentation-payload/apollo/Apollo.svg">
    **Author:** [@djhohnstein](https://twitter.com/djhohnstein)

    C# agent designed for training, helping students understand attack techniques at a technical level. Supports Windows with extensive post-exploitation capabilities.
  </Card>

  <Card title="Poseidon" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/poseidon-docs/images/poseidon.svg?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=f94dfeb710783971c26d7c80668b62c9" color="#1e90ff" href="/mythic-agents/poseidon-docs/home" width="512" height="512" data-path="mythic-agents/poseidon-docs/images/poseidon.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    Python-based agent supporting macOS and Linux with robust command execution, file operations, and credential harvesting capabilities.
  </Card>

  <Card title="Apfell" img="https://mintcdn.com/specteropsdocs/k1yx6gbUDEwWUifq/mythic-agents/apfell-docs/images/apfell.svg?fit=max&auto=format&n=k1yx6gbUDEwWUifq&q=85&s=68c1d97689aed85746fb830c0b3e789e" color="#32cd32" href="/mythic-agents/apfell-docs/home" width="601" height="651" data-path="mythic-agents/apfell-docs/images/apfell.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    macOS and Linux focused agent written in Python, designed for cross-platform post-exploitation with emphasis on stealth and flexibility.
  </Card>

  <Card title="Merlin" img="https://mintcdn.com/specteropsdocs/k1yx6gbUDEwWUifq/merlin-docs/logo/Merlin-transparent.png?fit=max&auto=format&n=k1yx6gbUDEwWUifq&q=85&s=b39c276edcb0eb568d99da9b0d0c949e" color="#9370db" href="/mythic-agents/merlin-agent-docs/home" width="912" height="1500" data-path="merlin-docs/logo/Merlin-transparent.png">
    **Author:** [@Ne0nd0g](https://twitter.com/Ne0nd0g)

    Cross-platform post-exploitation agent written in Golang. Supports Windows, Linux, and macOS with advanced execution and credential manipulation features.
  </Card>
</CardGroup>

## Service & Integration Agents

Specialized agents that integrate with external platforms or provide unique capabilities within the Mythic framework.

<CardGroup cols={3}>
  <Card title="Arachne" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/arachne-docs/images/arachne.svg?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=ca97451d8e2350809648703928f5e0bb" color="#ff6347" href="/mythic-agents/arachne-docs/home" width="512" height="512" data-path="mythic-agents/arachne-docs/images/arachne.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    .NET spider agent for Active Directory enumeration using BloodHound SharpHound, providing domain reconnaissance capabilities.
  </Card>

  <Card title="Bloodhound" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/bloodhound-agent-docs/images/bloodhound.svg?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=aa663e0c5894d08987b71cfacdc79303" color="#dc143c" href="/mythic-agents/bloodhound-agent-docs/home" width="335" height="256" data-path="mythic-agents/bloodhound-agent-docs/images/bloodhound.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    Service agent providing seamless integration between Mythic and BloodHound Community Edition for Active Directory analysis and attack path visualization.
  </Card>

  <Card title="Nemesis" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/nemesis-agent-docs/images/nemesis.svg?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=a6a5c6310b6968db015e93040927cd93" color="#ff8c00" href="/mythic-agents/nemesis-agent-docs/home" width="199" height="199" data-path="mythic-agents/nemesis-agent-docs/images/nemesis.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    Service agent for automatic file enrichment, processing, and triage. Integrates with Nemesis platform for advanced data analysis and credential extraction.
  </Card>

  <Card title="Ghostwriter" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/ghostwriter-agent-docs/images/ghostwriter.svg?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=534797ab36ad9656c365058932f23ef4" color="#4b0082" href="/mythic-agents/ghostwriter-agent-docs/home" width="200" height="200" data-path="mythic-agents/ghostwriter-agent-docs/images/ghostwriter.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    Service agent providing integration with Ghostwriter project management and reporting platform for collaborative operations and report generation.
  </Card>

  <Card title="Sage" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/sage-docs/images/sage.png?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=8ef0030a0d04804210330c1c37036ec2" color="#20b2aa" href="/mythic-agents/sage-docs/home" width="500" height="500" data-path="mythic-agents/sage-docs/images/sage.png">
    **Author:** [@Ne0nd0g](https://twitter.com/Ne0nd0g)

    Virtual agent providing AI and LLM capabilities within Mythic. Supports multiple providers including Anthropic, OpenAI, AWS Bedrock, and ollama.
  </Card>

  <Card title="Forge" img="https://mintcdn.com/specteropsdocs/oF5dBdHmbzPBm1yB/mythic-agents/forge-docs/images/forge.svg?fit=max&auto=format&n=oF5dBdHmbzPBm1yB&q=85&s=3bf740c80394e5779634bb842f62ecd2" color="#b8860b" href="/mythic-agents/forge-docs/home" width="128" height="128" data-path="mythic-agents/forge-docs/images/forge.svg">
    **Author:** [@its\_a\_feature\_](https://twitter.com/its_a_feature_)

    Command augmentation payload type providing BOF and .NET assembly execution capabilities across multiple Mythic agents. Pre-configured with SharpCollection and Sliver Armory.
  </Card>
</CardGroup>

## 🎓 Resources

<CardGroup cols={3}>
  <Card title="Blog Posts" icon="blog" href="https://posts.specterops.io">
    SpecterOps research on SCCM security
  </Card>

  <Card title="Community" icon="slack" href="http://ghst.ly/BHSlack">
    Join BloodHound Slack for discussions
  </Card>
</CardGroup>

## 🤝 Contributing

Each agent is maintained independently by their respective authors. Please refer to individual agent repositories for contribution guidelines:

### Payload Agents

* **Apollo:** [GitHub Repository](https://github.com/MythicAgents/Apollo) | [Issues](https://github.com/MythicAgents/Apollo/issues)
* **Poseidon:** [GitHub Repository](https://github.com/MythicAgents/poseidon) | [Issues](https://github.com/MythicAgents/poseidon/issues)
* **Apfell:** [GitHub Repository](https://github.com/MythicAgents/apfell) | [Issues](https://github.com/MythicAgents/apfell/issues)
* **Merlin:** [GitHub Repository](https://github.com/MythicAgents/merlin) | [Main Project](https://github.com/Ne0nd0g/merlin)

### Service & Integration Agents

* **Arachne:** [GitHub Repository](https://github.com/MythicAgents/arachne) | [Issues](https://github.com/MythicAgents/arachne/issues)
* **Bloodhound:** [GitHub Repository](https://github.com/MythicAgents/bloodhound) | [Issues](https://github.com/MythicAgents/bloodhound/issues)
* **Nemesis:** [GitHub Repository](https://github.com/MythicAgents/Nemesis) | [Main Project](https://github.com/SpecterOps/Nemesis)
* **Ghostwriter:** [GitHub Repository](https://github.com/MythicAgents/ghostwriter) | [Main Project](https://github.com/GhostManager/Ghostwriter)
* **Sage:** [GitHub Repository](https://github.com/MythicAgents/sage) | [Issues](https://github.com/MythicAgents/sage/issues)

### Command Augmentation

* **Forge:** [GitHub Repository](https://github.com/MythicAgents/forge) | [Issues](https://github.com/MythicAgents/forge/issues)
