Paranoid Ninja's Projects
This repo will contain code snippets for blogs: Malware on Steroids written by me at https://scriptdotsh.com/index.php/category/malware-development/
Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2
This repo contains all the code that will be referred at https://scriptdotsh.com by Paranoid Ninja
Repo contains a list of random scripts that I use while testing out random things.
This repo contains C-programmed sketches for the custom rubber ducky built using ATtiny85 microchip. Blogs on setting up the environment can be found here:
Boomerang is a tool to expose multiple internal servers to web/cloud. Agent & Server are pretty stable and can be used in Red Team for Multiple levels of Pivoting and exposing multiple internal services to external/other networks
This repo basically contains the code that was mentioned in the blogposts that was written by me at:
These are the slide decks and source code for Brute Ratel Seminar conducted on 24th August 2023. The youtube video for the seminar can be found here:
This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)
This repository provides the core to build your own External C2 Server and Connector for Brute Ratel C4
A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux
This Shell script can create a chrooted environment along with a SSH Jail for the same. This can be used either for a single user jail or to create a chroot jailed group.
This repo will contain the core detection, only for Cobaltstrike's leaked versions. Non-leaked version detections wont be shared
C code to enable ETW tracing for Dotnet Assemblies
Experiment on reproducing Obfuscate & Sleep
A quick handy script to harvest credentials off of a user during a Red Team and get execution of a file from the user
This repo contains my custom scripts for Penetration Testing and Red Team Assessments. I will keep on updating this repo as and when I get time.
This is a Shell Script to setup NTLM hash sniffing using the Raspberry Pi Zero. This tool can be used during Red Team assessments by attaching it to a Switch and creating a WPAD Proxy Server.
Building and Executing Position Independent Shellcode from Object Files in Memory
A simple program to hook the current process to identify the manual syscall executions on windows
The code is a pingback to the Dark Vortex blog:
The code is a pingback to the Dark Vortex blog: https://0xdarkvortex.dev/hiding-memory-allocations-from-mdatp-etwti-stack-tracing/
A Botnet builder built on Elasticsearch and Kibana with the help of C++ and Python3
Offensive Android Kernel on Steroids - Shuriken is an Android kernel for Oneplus 5/5T which supports multiple features for pentesting.
This repo is dedicated to all my tricks, tweaks and modules for testing and hunting threats. This repo contains multiple directories which are in their own, different modules required for threat hunting. This repo will be updated as and when new changes are made.