RED TEAM LAB CONSOLE SECURE STATIC DELIVERY

PenWebTools / Authorized environments only

S.C.R.I.P.T.S.

Lab setup and verification utilities for Kali, CPTS, HTB, and CTF work. Start with hashes and dry-run output before changing a system.

Use these scripts only on systems you own or are explicitly authorized to test. Review the source before execution.

01Download
02Verify SHA256
03Dry run
04Execute
TAG LEGEND
ROOT
Needs administrator privileges.
NETWORK
Fetches remote content or checks connectivity.
DOTFILE
Changes shell profile files.
BACKUP
Creates a backup before changing files.
READ-ONLY
Reports state without changing it.
PRIVACY
Helps reduce exposed local paths or traces.
MODULES12
INTEGRITYSHA256
FRONTENDNO JS
DELIVERYCLOUDFLARE
DRY-RUN PREVIEW

Review planned output and changes before execution

install.sh --dry-run
$ bash install.sh --dry-run
External downloads requested:
  - Git clone: PEASS-ng 20260604-085abf96
  - Go install: gau v2.2.4, katana v1.6.1, waybackurls v0.1.0
  - pipx install: posting
Selected changes
- Target user: kali
- Tools directory: /home/kali/Desktop/tools
- Docker group membership: yes (root-equivalent; re-login required)
+ sudo apt-get update
+ sudo apt-get install -y zsh tmux nmap ffuf ...
[install.sh] Setup complete.
verify.sh
$ bash verify.sh
[verify.sh] Verification directory: /tmp/tmp.x7k2
install.sh: OK
time.sh: OK
verify.sh: OK
privacy-audit.ps1: OK
time.sh --dry-run
$ bash time.sh --dry-run
[time.sh] Target user: kali
[time.sh] Target file: /home/kali/.bashrc
[time.sh] Would ensure /home/kali/.bashrc exists.
[time.sh] Would update managed block in /home/kali/.bashrc.
ps-prompt-mask.ps1 -DryRun
PS> .\ps-prompt-mask.ps1 -DryRun
[ps-prompt-mask.ps1] PowerShell prompt block needs update.
[ps-prompt-mask.ps1] Would update managed block in profile with mode: Fixed.
MODULE 01 UPDATED

install.sh

Kali baseline setup for lab operations

Initial Kali setup for normal users, sudo execution, and direct root execution. Installs baseline tools, Docker, PEASS-ng, web recon helpers, GUI terminal support, and hardware utilities by default.

ROOT NETWORK BACKUP
  • Privilege sudo-aware
  • Safety dry-run first
  • External confirmed downloads
DEFAULT INSTALL

Uses ~/Desktop/tools by default and prepares workspace folders, APT baseline packages, AD/Docker/GUI/hardware/http/web recon helpers, and PEASS-ng. Docker group membership is root-equivalent.

  • CLI: bat, btop, curl, eza, fd-find, fzf, git, jq, ripgrep, tmux, vim, wget
  • Runtime: ca-certificates, gnupg, p7zip-full, pipx, python3, python3-pip, python3-venv, unzip
  • Recon: feroxbuster, ffuf, gobuster, masscan, ncat, nmap, smbclient, socat
  • Extras: openvpn, seclists, wireguard-tools, docker.io, alacritty, can-utils, posting
  • External pinned: PEASS-ng, gau, katana, waybackurls
ZSH ALIASES
l
Short eza listing with icons, directories first, and git-ignored files hidden.
ll
Long listing with hidden files and headers.
lt
Tree view via eza --tree.
bat
Maps Debian/Kali batcat to the expected bat name.
ff
File picker through fzf with a color preview when batcat is available.
TMUX SETTINGS
  • Enables mouse support.
  • Expands scrollback history to 50000 lines.
  • Starts window and pane numbers at 1.
  • Renumbers windows after one is removed.
  • Uses vi-style keys for copy mode and status controls.
RECOMMENDED EXECUTION
wget https://0xfajgiasd.win/install.sh
bash install.sh --dry-run
bash install.sh --help
Download
Shell Prompts Linux, Zsh, and Windows prompt masking
MODULE 02 ACTIVE

time.sh

Bash prompt deployment

Backs up ~/.bashrc with a timestamp and writes a managed prompt block showing date, time, user, host, and path.

DOTFILE BACKUP
Before kali@vm:~/labs$
After -[Mon Aug 10-14:30:00]-[kali@vm]-
-[~/labs]$
DOWNLOAD
wget https://0xfajgiasd.win/time.sh
Download
MODULE 03 ACTIVE

time_setup_zsh_prompt.sh

Zsh prompt deployment

Backs up ~/.zshrc and writes a managed Zsh prompt block. Direct root execution is rejected unless explicitly forced.

DOTFILE BACKUP
Before kali@vm ~/labs %
After -[Mon Aug 10-14:30:00]-kali@vm
-~/labs $
DOWNLOAD
wget https://0xfajgiasd.win/time_setup_zsh_prompt.sh
Download
MODULE 04 PRIVACY

ps-prompt-mask.ps1

PowerShell prompt masking

Replaces the PowerShell prompt with a fixed name or folder-only display to keep usernames and absolute paths out of screenshots.

WINDOWS DOTFILE BACKUP PRIVACY
Before PS C:\Users\name\Private\client-demo>
Fixed memo_folder$
Modes -Mode Leaf: client-demo$
-Mode FullPath: PS C:\Users\name\Private\client-demo>
DOWNLOAD
Invoke-WebRequest https://0xfajgiasd.win/ps-prompt-mask.ps1 -OutFile ps-prompt-mask.ps1
powershell -NoProfile -ExecutionPolicy Bypass -File .\ps-prompt-mask.ps1 -DryRun
Download
Verification Fetch hashes, verify scripts, and keep delivery boring
MODULE 05 SAFE

verify.sh

Script integrity verification

Downloads SHA256SUMS and the public scripts into a temporary directory, then checks hashes before execution.

READ-ONLY NETWORK
DOWNLOAD
wget https://0xfajgiasd.win/verify.sh
bash verify.sh
Download
Workspace Repeatable lab folders and hosts entries
MODULE 06 SAFE

lab-init.sh

Repeatable lab workspace

Creates repeatable folders such as scans, notes, and evidence. Existing files are not overwritten.

LOCAL NO OVERWRITE
DOWNLOAD
wget https://0xfajgiasd.win/lab-init.sh
bash lab-init.sh target --dry-run
Download
MODULE 07 SAFE

hosts-add.sh

Idempotent hosts entries

Adds or removes host entries in /etc/hosts or a specified hosts file. Avoids duplicates and backs up before changes.

ROOT BACKUP
DOWNLOAD
wget https://0xfajgiasd.win/hosts-add.sh
bash hosts-add.sh --dry-run 10.10.10.10 target.local
Download
MODULE 08 WINDOWS

hosts-add.ps1

Windows hosts entries

Adds or removes host entries in the Windows hosts file. Listing and checks are read-only; changes are backed up first.

WINDOWS ROOT BACKUP
DOWNLOAD
Invoke-WebRequest https://0xfajgiasd.win/hosts-add.ps1 -OutFile hosts-add.ps1
powershell -NoProfile -ExecutionPolicy Bypass -File .\hosts-add.ps1 -List
Download
Environment Checks Read-only system, VPN, and Windows readiness checks
MODULE 09 READ-ONLY

tool-check.sh

Read-only lab environment check

Checks OS, PATH, common commands, dotfiles, wordlists, and VPN interface state. It does not change the system or scan a target.

READ-ONLY LOCAL
DOWNLOAD
wget https://0xfajgiasd.win/tool-check.sh
bash tool-check.sh
Download
MODULE 10 READ-ONLY

vpn-check.sh

Read-only VPN status check

Checks tun/wg interfaces, routes, DNS, and outbound IP state. It does not scan lab targets.

READ-ONLY NETWORK
DOWNLOAD
wget https://0xfajgiasd.win/vpn-check.sh
bash vpn-check.sh
Download
MODULE 11 READ-ONLY

win-tool-check.ps1

Windows environment check

Checks PowerShell version, ExecutionPolicy, profile state, and common commands. It does not change the system.

WINDOWS READ-ONLY
DOWNLOAD
Invoke-WebRequest https://0xfajgiasd.win/win-tool-check.ps1 -OutFile win-tool-check.ps1
powershell -NoProfile -ExecutionPolicy Bypass -File .\win-tool-check.ps1
Download
Privacy Audit Find history and log locations without deleting evidence
MODULE 12 AUDIT

privacy-audit.ps1

History and log location audit

Reports where PowerShell history, profiles, Windows Event Log entries, and recent items are stored. It does not delete history or logs.

WINDOWS READ-ONLY PRIVACY
DOWNLOAD
Invoke-WebRequest https://0xfajgiasd.win/privacy-audit.ps1 -OutFile privacy-audit.ps1
powershell -NoProfile -ExecutionPolicy Bypass -File .\privacy-audit.ps1
Download
INTEGRITY CHECK

Verify before execution

wget https://0xfajgiasd.win/SHA256SUMS
sha256sum -c --ignore-missing SHA256SUMS

wget https://0xfajgiasd.win/verify.sh
bash verify.sh