Creating Infrastructure for Red Team: Complete Guide
A comprehensive guide to building a resilient and covert infrastructure for Red Team specialists. The material covers only architecture and operational methods without unnecessary information.
Architecture and Segmentation
The article begins with an overview of high-level architecture and infrastructure segmentation principles. Special attention is given to domain selection and preparation before deployment.
Deployment and Management
The second stage involves deploying the infrastructure using Terraform. It then describes configuring Command & Control (C2) frameworks for operational management.
- HTTPS redirector and its protection
- Use of CDN relays for anonymization
- Server-side redirection via Lambda
- Lightweight redirectors on Flask and Gunicorn
- Microsoft Dev Tunnels and Cloudflare Workers
The third and fourth stages focus on configuring the HTTPS redirector, hardening it, and utilizing CDN relays. Server solutions based on AWS Lambda and lightweight options on Flask are also discussed.
Advanced Evasion Techniques
The fifth stage describes the use of Microsoft Dev Tunnels. The sixth stage focuses on Cloudflare Workers and Zero Trust tunnels to ensure connection security.
Final stages include setting up phishing infrastructure and working with Malleable C2 profiles. The conclusion provides examples of multi-layered architecture and a list of useful tools.









