Skip to content

OTRLabs/clandestine-platform

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Clandestine Platform

Build Status License Version

Table of Contents

Introduction

The Clandestine Platform is a proof-of-concept framework designed for organizations to conduct offensive cybersecurity operations, focusing on attribution evasion and anonymity preservation. It aims to assist security researchers, penetration testers, and cybersecurity professionals in understanding and defending against threat actors by replicating their capabilities.

Features

  • Centralized Intranet Platform: Based on the MITRE ATT&CK Framework.
  • Privacy and Security: Built for secure and discreet collaboration.
  • Advanced Analytics: Integrates AI/ML for enhanced operational insights.
  • Mix Networks: Uses Tor, I2P, and other networks to protect operators.
  • Lightweight UI: Optimized for speed and performance using Pure CSS and HTMX.

Tech Stack

Backend

Dashboard / UI

Storage

AI/ML

Data Ingestion

Networking Software

Practices, Goals & Considerations

Goals

  • Privacy & Security: Ensure a secure platform for offensive operations and reconnaissance.
  • Ease of Use: Simple and intuitive interface for ease of use.
  • Discreet Collaboration: Secure and private collaboration features.

Privacy & Security

Networking Practices

  • Avoid exposing the dashboard UI to the public internet.
  • Utilize mix networks and proxychains for secure access.
  • Use Docker containers for isolation.

Secure Access / Ingress Points & Egress Points

  • OnionCat: VPN over Tor and I2P.
  • HeadScale / Tailscale: Easy-to-use VPN services.

Service Exposure

  • Tor Hidden Services: Expose services without revealing IP addresses.
  • Yggdrasil Services: Decentralized networking.

Private/Anonymous Internet Browsing / Scanning

Third-Party Services

Cloud Providers

Crypto Swaps

Dashboard / UI

Tech Stack

Requirements / Goals / Plans / Ideas

  • Minimize HTML view sizes for efficient delivery over Tor.
  • Focus on reactivity using Svelte components.
  • Implement secure JavaScript practices.

Dashboard Design & Development

  • Real-Time Data: Use Litestar Websockets.
  • Component-Oriented: Break views into Svelte components.
  • Optimized Performance: Lightweight and efficient components.

Setup and Installation

To Do

  1. Access the Application:
    • The application should now be running and accessible through the specified network setup.

Usage

  • Accessing the Dashboard:

    • Authenticate at the root route.
    • Use the vertical navigation bar for application functionality.
    • Use the horizontal navigation bar for platform settings and management.
  • Data Ingestion and Analysis:

    • Follow guidelines in the documentation for detailed usage instructions.

Contributing

Contributions are welcome! Please read the contributing guidelines for more information.

Contact

For more information, issues, or feedback, please contact us at [email protected].

About

Collaboration Platform for orgs who care about privacy

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published