{"repo":"D00Movenok/BounceBack","free":true,"listed":false,"github":"https://github.com/D00Movenok/BounceBack","clone":"git clone https://github.com/D00Movenok/BounceBack.git","description":"↕️🤫 Stealth redirector for your red team operation security","language":"Go","stars":1100,"topics":["redteam","proxy","redirector","cobalt-strike","infrastructure","pentesting","phishing","c2","pentest","cybersecurity"],"license":"MIT","category":"security-tools","readme_excerpt":"BounceBack ↕️🤫 Stealth redirector for your red team operation security. Overview BounceBack is a powerful, highly customizable and configurable reverse proxy with WAF functionality for hiding your C2/phishing/etc infrastructure from blue teams, sandboxes, scanners, etc. It uses real-time traffic analysis through various filters and their combinations to hide your tools from illegitimate visitors. The tool is distributed with preconfigured lists of blocked words, blocked and allowed IP addresses. For more information on tool usage, you may visit project's wiki. Features Highly configurable and customizable filters pipeline with boolean-based concatenation of rules will be able to hide your infrastructure from the most keen blue eyes. Easily extendable project structure, everyone can add rules for their own C2. Integrated and curated massive blacklist of IPv4 pools and ranges known to be associated with IT Security vendors combined with IP filter to disallow them to use/attack your infrastructure. Malleable C2 Profile parser is able to validate inbound HTTP(s) traffic against the Malleable's config and reject invalidated packets. Out of the box domain fronting support allows you to hide your infrastructure a little bit more. Ability to check the IPv4 address of request against IP Geolocation/reverse lookup data and compare it to specified regular expressions to exclude out peers connecting outside allowed companies, nations, cities, domains, etc. All incoming requests may be a","default_branch":null,"files":null,"tree":[],"storefront":"/r/D00Movenok","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/D00Movenok/BounceBack/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}