Categories: Kali Linux

RedGhost : Linux Post Exploitation Framework

RedGhost is the Linux post exploitation framework designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no trace.

  • Payloads : Function to generate various encoded reverse shells in netcat, bash, python, php, ruby, perl.
  • SudoInject : Function to inject sudo command with wrapper function to run a reverse root shell everytime “sudo” is run for privilege escalation.
  • lsInject : Function to inject the “ls” command with a wrapper function to run payload everytime “ls” is run for persistence.
  • SSHKeyInject : Function to log keystrokes of a ssh process using strace.
  • Crontab : Function to create cron job that downloads payload from remote server and runs payload every minute for persistence.
  • SysTimer : Function to create systemd timer that downloads and executes payload every 30 seconds for persistence.
  • GetRoot : Function to try various methods to escalate privileges.
  • Clearlogs : Function to clear logs and make investigation with forensics difficult.
  • MassInfoGrab : Function to grab mass reconaissance/information on system.
  • CheckVM : Function to check if the system is a virtual machine.
  • MemoryExec : Function to execute remote bash script in memory.
  • BanIp : Function to BanIp using iptables

Also Read – Evil WinRM : The Ultimate WinRM Shell For Hacking/Pentesting

Installation

One liner to install it:

wget https://raw.githubusercontent.com/d4rk007/RedGhost/master/redghost.sh; chmod +x redghost.sh; ./redghost.sh

One liner to install prerequisites and it:

wget https://raw.githubusercontent.com/d4rk007/RedGhost/master/redghost.sh; chmod +x redghost.sh; apt-get install dialog; apt-get install gcc; apt-get install iptables; apt-get install strace; ./redghost.sh

Prerequisites

  • dialog
  • gcc
  • iptables
  • strace
R K

Recent Posts

The Growing Role of Digital Libraries in Remote Education

Learning Without Walls Remote education has long been a lifeline for students in rural areas…

2 days ago

How Do I Do Reverse Image Search

Have you ever come across a picture on the internet and wondered where it came…

2 days ago

WhatsMyName App – Find Anyone Across 640+ Platforms

Overview WhatsMyName is a free, community-driven OSINT tool designed to identify where a username exists…

2 weeks ago

Analyzing Directory Size Linux Tools Explained

Managing disk usage is a crucial task for Linux users and administrators alike. Understanding which…

2 weeks ago

Understanding Disk Usage with du Command

Efficient disk space management is vital in Linux, especially for system administrators who manage servers…

2 weeks ago

How to Check Directory Size in Linux

Knowing how to check directory sizes in Linux is essential for managing disk space and…

2 weeks ago