# Infrastructure (phishing, C2, redirector)

[![ko-fi](https://ko-fi.com/img/githubbutton_sm.svg)](https://ko-fi.com/Y8Y41FQ2GA)

{% embed url="<https://swisskyrepo.github.io/Drink-Love-Share-Rump/>" %}

## Living Off Trusted Sites

{% embed url="<https://lots-project.com/>" %}

## Phishing

{% embed url="<https://book.redteamguides.com/guides/social-engineering#phishing>" %}

{% embed url="<https://redteamrecipe.com/top-phishing-techniques>" %}

{% embed url="<https://payatu.com/blog/phishing-infrastructure-setup/>" %}

{% embed url="<https://www.youtube.com/watch?v=VznqXnNdTyk>" %}

### Tools

{% embed url="<https://getgophish.com/>" %}

Install gophish

{% embed url="<https://www.blackhillsinfosec.com/installing-gophish-and-creating-a-campaign/?utm_campaign=meetedgar&utm_medium=social&utm_source=meetedgar.com>" %}

{% embed url="<https://github.com/P0cL4bs/flexphish>" %}

{% embed url="<https://github.com/htr-tech/zphisher/tree/master>" %}

{% embed url="<https://github.com/trustedsec/social-engineer-toolkit>" %}

{% embed url="<https://github.com/fin3ss3g0d/evilgophish>" %}

{% embed url="<https://github.com/rsmusllp/king-phisher>" %}

Ansible:

{% embed url="<https://github.com/VirtualSamuraii/flyphish>" %}

### Remove IoC from Gophish

{% embed url="<https://github.com/puzzlepeaches/sneaky_gophish>" %}

### Users emails

{% content-ref url="/pages/XEfK2J6XvCHzSjsFjXSY" %}
[Social Media](/0xss0rz/pentest/recon/osint/social-media.md)
{% endcontent-ref %}

#### Email reputation:

{% embed url="<https://emailrep.io/>" %}

### Valid emails

{% embed url="<https://github.com/0xhav0c/valid-email-scanner>" %}

### Template to use

{% embed url="<https://github.com/simplerhacking/Evilginx3-Phishlets>" %}

{% embed url="<https://github.com/BiZken/PhishMailer>" %}

<figure><img src="/files/M4Taty2C9aZ5TBojNfvP" alt=""><figcaption></figcaption></figure>

<https://x.com/nullenc0de/status/1848361811881435474>

{% embed url="<https://x.com/nullenc0de/status/1848361811881435474>" %}

{% embed url="<https://github.com/nullenc0de/servicelens>" %}

### Generate Typo Squatting

{% embed url="<https://github.com/urbanadventurer/urlcrazy>" %}

### Check the availability and responsiveness of domains

{% embed url="<https://github.com/murat-exp/Domain-Checker-Tool>" %}

### Recaptcha Phish

{% embed url="<https://github.com/JohnHammond/recaptcha-phish/tree/main>" %}

### OAuth / QR code phishing

{% embed url="<https://github.com/secureworks/squarephish>" %}

#### Okta

{% embed url="<https://github.com/OtterHacker/OktaGinx/>" %}

### ShadowPhish - APT Awareness Toolkit

{% embed url="<https://github.com/CyberSecurityUP/ShadowPhish>" %}

### Offensive VBA

{% embed url="<https://github.com/S3cur3Th1sSh1t/OffensiveVBA#templates-in-this-repo>" %}

## C2

{% content-ref url="/pages/iE0K6qpcfyP3OYysDgXA" %}
[C2](/0xss0rz/red-team/c2.md)
{% endcontent-ref %}

{% embed url="<https://howto.thec2matrix.com/>" %}

## Redirector

{% embed url="<https://www.optiv.com/insights/source-zero/blog/redirectors-red-teamers-introduction>" %}

{% embed url="<https://github.com/D00Movenok/BounceBack?s=03#installation>" %}

<figure><img src="/files/Mx0bG27hIy4KTrXtxARB" alt=""><figcaption></figcaption></figure>

{% embed url="<https://github.com/OtterHacker/AWSRedirector>" %}

### Cloudflare Redirector

{% embed url="<https://github.com/som3canadian/Cloudflare-Redirector>" %}

## Change IP every 5 minutes

{% embed url="<https://github.com/OtterHacker/AWSRoundRobin>" %}

## Automated Infrastructure

{% embed url="<https://github.com/RedTeamOperations/Red-Infra-Craft>" %}

## Resilient Infrastructure

{% embed url="<https://github.com/bluscreenofjeff/Red-Team-Infrastructure-Wiki>" %}

{% embed url="<https://www.ired.team/offensive-security/red-team-infrastructure/automating-red-team-infrastructure-with-terraform>" %}

{% embed url="<https://github.com/0xS2V2/marsform>" %}

{% embed url="<https://www.securesystems.de/blog/building-a-red-team-infrastructure-in-2023/>" %}

{% embed url="<https://github.com/SecuraBV/RedWizard>" %}

{% embed url="<https://youtu.be/RMjJ0Z69HJE?feature=shared>" %}

### AWS

{% embed url="<https://www.youtube.com/watch?v=5TSUuXnIkCk>" %}

## Interesting Books

{% content-ref url="/pages/VVT5FQq9z62bWoNAWCUS" %}
[Interesting Books](/0xss0rz/interesting-books.md)
{% endcontent-ref %}

{% hint style="info" %}
**Disclaimer**: As an Amazon Associate, I earn from qualifying purchases. This helps support this GitBook project at no extra cost to you.
{% endhint %}

* [**RTFM: Red Team Field Manual v2**](https://www.amazon.fr/dp/1075091837?tag=0xss0rz-21)\
  A quick reference when there is no time to scour the Internet for that perfect command
* [**Red Team Development and Operations: A practical guide**](https://www.amazon.fr/dp/B0842BMMCC?tag=0xss0rz-21)\
  The authors have moved beyond SANS training and use this book to detail red team operations in a practical guide.
* [**Cybersecurity Attacks – Red Team Strategies**](https://www.amazon.fr/dp/B0822G9PTM?tag=0xss0rz-21)\
  A practical guide to building a penetration testing program having homefield advantage

## Support this Gitbook

I hope it helps you as much as it has helped me. If you can support me in any way, I would deeply appreciate it.

[![ko-fi](https://ko-fi.com/img/githubbutton_sm.svg)](https://ko-fi.com/Y8Y41FQ2GA)

[![buymeacoffee](https://cdn.buymeacoffee.com/buttons/v2/default-yellow.png)](https://buymeacoffee.com/0xss0rz)


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://0xss0rz.gitbook.io/0xss0rz/red-team/infrastructure-phishing-c2-redirector.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
