Paranoid Ninja (paranoidninja)

paranoidninja

Geek Repo

0

following

0

stars

Company:Dark Vortex

Location:Last seen in Ring 0. Current Location Unknown

Home Page:https://0xdarkvortex.dev/

Twitter:@NinjaParanoid

Github PK Tool:Github PK Tool

Paranoid Ninja's repositories

CarbonCopy

A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux

Language:PythonLicense:Apache-2.0Stargazers:1275Issues:55Issues:14

Pandoras-Box

This repo contains my custom scripts for Penetration Testing and Red Team Assessments. I will keep on updating this repo as and when I get time.

Language:C++Stargazers:345Issues:28Issues:0

O365-Doppelganger

A quick handy script to harvest credentials off of a user during a Red Team and get execution of a file from the user

Language:CSSLicense:BSD-2-ClauseStargazers:250Issues:8Issues:0

Brute-Ratel-C4-Community-Kit

This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)

Language:CLicense:GPL-3.0Stargazers:246Issues:9Issues:0

Process-Instrumentation-Syscall-Hook

A simple program to hook the current process to identify the manual syscall executions on windows

Language:CLicense:BSD-2-ClauseStargazers:246Issues:8Issues:0

Boomerang

Boomerang is a tool to expose multiple internal servers to web/cloud. Agent & Server are pretty stable and can be used in Red Team for Multiple levels of Pivoting and exposing multiple internal services to external/other networks

Language:GoLicense:LGPL-2.1Stargazers:217Issues:8Issues:0

0xdarkvortex-MalwareDevelopment

This repo will contain code snippets for blogs: Malware on Steroids written by me at https://scriptdotsh.com/index.php/category/malware-development/

Proxy-DLL-Loads

The code is a pingback to the Dark Vortex blog:

Language:CLicense:GPL-3.0Stargazers:160Issues:7Issues:0

Proxy-Function-Calls-For-ETwTI

The code is a pingback to the Dark Vortex blog: https://0xdarkvortex.dev/hiding-memory-allocations-from-mdatp-etwti-stack-tracing/

Language:CLicense:GPL-3.0Stargazers:152Issues:6Issues:0

PIC-Get-Privileges

Building and Executing Position Independent Shellcode from Object Files in Memory

Language:CLicense:MITStargazers:149Issues:8Issues:0

Botnet-blogpost

This repo basically contains the code that was mentioned in the blogposts that was written by me at:

Cobaltstrike-Detection

This repo will contain the core detection, only for Cobaltstrike's leaked versions. Non-leaked version detections wont be shared

Language:CLicense:BSD-2-ClauseStargazers:80Issues:4Issues:1

Threat-Hunting

This repo is dedicated to all my tricks, tweaks and modules for testing and hunting threats. This repo contains multiple directories which are in their own, different modules required for threat hunting. This repo will be updated as and when new changes are made.

Language:ShellStargazers:56Issues:7Issues:0

alpha-stage-scripts

Repo contains a list of random scripts that I use while testing out random things.

Language:ShellStargazers:49Issues:9Issues:0

0xdarkvortex-Reverse-Engineering

This repo contains all the code that will be referred at https://scriptdotsh.com by Paranoid Ninja

Brute-Ratel-External-C2-Specification

This repository provides the core to build your own External C2 Server and Connector for Brute Ratel C4

Language:CLicense:BSD-2-ClauseStargazers:43Issues:5Issues:0

DotNetTracer

C code to enable ETW tracing for Dotnet Assemblies

Language:CLicense:BSD-2-ClauseStargazers:29Issues:3Issues:0

Shuriken

Offensive Android Kernel on Steroids - Shuriken is an Android kernel for Oneplus 5/5T which supports multiple features for pentesting.

Language:CLicense:NOASSERTIONStargazers:27Issues:3Issues:2

piBorg

This is a Shell Script to setup NTLM hash sniffing using the Raspberry Pi Zero. This tool can be used during Red Team assessments by attaching it to a Switch and creating a WPAD Proxy Server.

Language:ShellStargazers:22Issues:6Issues:0

SheltreX

A Botnet builder built on Elasticsearch and Kibana with the help of C++ and Python3

Language:PythonLicense:GPL-3.0Stargazers:22Issues:3Issues:2

Chroot-Jail

This Shell script can create a chrooted environment along with a SSH Jail for the same. This can be used either for a single user jail or to create a chroot jailed group.

Language:ShellLicense:GPL-3.0Stargazers:19Issues:3Issues:0

ATtiny85-RubberDucky-Sketches

This repo contains C-programmed sketches for the custom rubber ducky built using ATtiny85 microchip. Blogs on setting up the environment can be found here:

Language:C++Stargazers:18Issues:3Issues:0

BRC4-Seminar-Stage-I

These are the slide decks and source code for Brute Ratel Seminar conducted on 24th August 2023. The youtube video for the seminar can be found here:

Language:CLicense:GPL-3.0Stargazers:18Issues:1Issues:0

0xdarkvortex-red-team-ttps-part-2

Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2

Language:CStargazers:17Issues:5Issues:0

FOLIAGE

Experiment on reproducing Obfuscate & Sleep

Language:CStargazers:5Issues:2Issues:0