369-day current streakยท369-day longest streak
โ๏ธ PhishDestroy Volunteer-Driven Threat Intelligence โข Infrastructure Takedowns โข OSINT Automation Mission โข Operations โข Operational Matrix โข Projects โข Expertise โข Statistics โข Contact --- ๐ฏ Mission PhishDestroy isโฆ
โ๏ธ PhishDestroy
Volunteer-Driven Threat Intelligence โข Infrastructure Takedowns โข OSINT Automation
Mission โข
Operations โข
Operational Matrix โข
Projects โข
Expertise โข
Statistics โข
Contact
---
๐ฏ Mission
PhishDestroy is a volunteer-driven threat intelligence initiative focused on large-scale detection, analysis, and elimination of:
- Crypto drainers
- Phishing networks
- Scam infrastructure
- Fraudulent applications
- Threat actor clusters
- Neutralized 500,000+ malicious domains
- Eliminated 25+ actor-controlled infrastructures
- Investigated 15+ threat actor groups
- Maintained global OSINT feeds and takedown workflows
๐ Operations Overview
RECONNAISSANCE โ โโโโโโโโโโโโโโโโโโโโ โ CONTINUOUS
ANALYSIS โ โโโโโโโโโโโโโโโโโโโโ โ ACTIVE
COORDINATION โ โโโโโโโโโโโโโโโโโโโโ โ ONGOING
NEUTRALIZATION โ โโโโโโโโโโโโโโโโโโโโ โ RELENTLESS
---
๐ก๏ธ Operational Matrix
๐ SCAN
โข CT logs monitoring
โข DNS anomaly detection
โข Passive DNS + feeds
โข Automated scanners
โข Community submissions
๐ฏ HUNT
โข Infra correlation
โข Actor attribution
โข Fingerprinting
โข Network graphing
โข Validation workflows
โก STRIKE
โข Registrar escalation
โข Hosting abuse pipeline
โข Null-routing requests
โข Evidence reporting
โข Multi-team ops
๐ฅ ERASE
โข Infra shutdown
โข Persistence monitoring
โข Re-emergence detection
โข Intelligence linking
โข Zero-tolerance control
---
๐ก Highlighted Projects
---
๐ง OSINT Detection Methods
- Certificate Transparency API
- DNS anomalies & registrar drift
- Hosting & ASN correlation
- Blockchain scam transaction analysis
- Malware reverse engineering
- AI-enhanced phishing kit detection
- Automated intelligence clustering
๐งฉ Expertise & Stack
---
๐ Statistics & Activity
๐ More Stats
---
๐ฌ Contact & Community
Evidence-based threat neutralization since 2019
๐ง [email protected]
๐ช Powered by volunteers, protected by community
-
eth-phishing-detect โ PINNED โ
Utility for detecting phishing domains targeting Web3 users
TypeScript โ 6 1h agoExplain โ -
destroylist โ PINNED
Real-time phishing & scam domain blocklist โ 180k+ curated threats, 888K+ community, free API, multiple formats
HTML โ 1.7k 40m agoExplain โ -
x-twitter-archive-CarlyGriggs13 โ PINNED
Phishing takedown archive from @CarlyGriggs13 โ 138K tweets, scam domain reports, and threat intel blocked by X.
HTML โ 70 1y agoExplain โ -
swiss-knife โ PINNED โ
All your EVM tools in one place!
TypeScript โ 7 7mo agoExplain โ -
seal-911 โ PINNED โ
SEAL 911 is a project designed to give users, developers, and security researchers an accessible way to connect with a small group of highly trusted security professionals in case of emergency.
โ 2 7mo agoExplain โ -
ScamIntelLogs
Open-source intelligence archive of crypto scam operations โ internal chats, admin panels, victim records, and infrastructure data for research and investigation
HTML โ 242 4mo agoExplain โ -
DestroyScammers
Scam intelligence, phishing attribution, drainer mapping. Legal OSINT only. Public data. Real cases. For researchers and victims.
JavaScript โ 199 7mo agoExplain โ -
namesilo-evidence
NameSilo (IANA #1479) registrar abuse investigation. 5.27M domains scanned ยท 87.3% dead/parked ยท 183k malicious behind their own privacy shield ยท Filed with ICANN Mar 2026.
HTML โ 136 1d agoExplain โ -
DO-NOT-USE-xmrwallet-com โ
โ ๏ธ xmrwallet.com steals your private view key on every request. Technical proof inside. If you lost funds โ read LOST_FUNDS.md
โ 133 4mo agoExplain โ -
nicenic-evidence
Complete zone scan of NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA #3765, China) โ 349,376 domains tracked. 18,927 confirmed malicious: phishing, carding, crypto drainers, malware, unlicensed gambling. IOC feeds, SIEM CSV, operator clusters. Evidence package for ICANN RAA complaint
Python โ 116 1d agoExplain โ -
trustname-evidence
Phase II evidence package: complete-zone scan of ICANN registrar #4318 Trustname.com / Fewmoretaps Oร โ 7,641 domains, 86% of active content confirmed malicious.
Python โ 114 1d agoExplain โ -
shortdot-evidence
ShortDot SA zone abuse evidence (6.2M domains). Automated Threat Intelligence & daily updated IOCs for .icu, .bond, .cyou, .sbs, .cfd, .buzz, .qpon.
Python โ 113 11h agoExplain โ -
phishdestroy
Personal README
โ 71 5h agoExplain โ -
Nigerian-dignity
A showcase of Nigeria's most innovative and disruptive digital entrepreneurs. This repo catalogs the robust infrastructure hosting next-generation financial opportunities, from unclaimed inheritance platforms to exclusive lottery-winning notification systems.
HTML โ 62 11mo agoExplain โ -
Anti-Phishing-Research
A professional anti-phishing research tool ๐ that serves scammers a tasty dish of millions of seeds ๐ฝ๏ธ while you sit back and watch the chaos ๐ฅ . Generate payloads automatically โก and log every move ๐ while testing your defenses ๐ก๏ธ. Time to own those phishers and make them cry ๐ฆธโโ๏ธ๐!
TypeScript โ 28 1y agoExplain โ -
blocklists โ
Read-only mirror of blocklists maintained by SEAL
โ 13 1m agoExplain โ -
scam-database โ
Web3 Blacklists maintained by Scam Sniffer
โ 11 2h agoExplain โ -
medium-archive-phishdestroy
Archive of the official PhishDestroy blog, following an unjust platform suspension on Medium.
HTML โ 10 10mo agoExplain โ -
Crypto-Scam-and-Crypto-Phishing-Threat-Intel-Feed โ
A fresh feed of crypto phishing and crypto scam websites. Automatically updated daily/frequently.
โ 9 7mo agoExplain โ -
phishing-detect โ
Aggregate all phishing lists
TypeScript โ 5 5m agoExplain โ -
Open-Source-Threat-Intel-Feeds โ
This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such as IP, URL, CVE and Hash.
โ 5 1y agoExplain โ -
Operation-Takedown
A collection of tools and scripts for active phishing campaign disruption.
โ 5 7mo agoExplain โ -
urlquery-api-go โ
Go implementation of the public REST API
โ 5 1y agoExplain โ -
TweetFeed โ
TweetFeed collects Indicators of Compromise (IOCs) shared by the infosec community at Twitter. Here you will find malicious URLs, domains, IPs, and SHA256/MD5 hashes.
โ 4 2h agoExplain โ -
urlscan โ
Mutt and terminal url selector (similar to urlview)
Python โ 4 8mo agoExplain โ -
phishing-warning โ
A page to warn users about a suspected phishing site.
TypeScript โ 3 9mo agoExplain โ -
phishing โ
A curated list of known less-than-honest operators on Polkadot and Substrate networks. Includes a simple JS utility function to check any host or address against this list.
TypeScript โ 2 2h agoExplain โ -
openphish โ
OpenPhish Community Phishing Feed
โ 2 2h agoExplain โ -
dns-blocklists โ
DNS-Blocklists: For a better internet - keep the internet clean!
Text โ 2 14d agoExplain โ -
crypto-firewall โ
๐ Securing your crypto journey, one block at a time.
JavaScript โ 2 7mo agoExplain โ -
IOK โ
IOK (Indicator Of Kit) is an open source language and ruleset for detecting phishing threat actor tools and tactics
โ 2 1y agoExplain โ -
Anti-phishing-extension โ
Safeguard your online experience with Anti-Phishing Extension! This extension is meticulously developed to protect users from potential phishing attacks by actively scanning the websites visited in real-time. It employs an updated blacklist to cross-check each website and promptly alerts users if a potential threat is detected, enhancing
JavaScript โ 2 7mo agoExplain โ -
public_feed โ
OpenPhish Community Phishing Feed
โ 2 1y agoExplain โ -
Phishing.Database โ
Phishing Domains, urls websites and threats database. We use the PyFunceble testing tool to validate the status of all known Phishing domains and provide stats to reveal how many unique domains used for Phishing are still active.
โ 1 5h agoExplain โ -
Osprey โ
Browser extension that protects you from phishing and malicious websites.
โ 1 15d agoExplain โ -
Counter-Phishing-Tool โ
Offensive & proactive tool designed to disrupt phishing attacks by flooding fake phishing websites' login portals with a deluge of fake user data, sometimes even takes down their entire site in the process.
โ 1 2y agoExplain โ -
PhishingKit-Yara-Rules โ
Repository of Yara rules dedicated to Phishing Kits Zip files
โ 0 9mo agoExplain โ -
first-contributions โ
๐โจ Help beginners to contribute to open source projects
โ 0 7mo agoExplain โ -
awesome-threat-intelligence โ
A curated list of Awesome Threat Intelligence resources
โ 0 9mo agoExplain โ -
chinese-independent-developer โ
๐ฉ๐ฟโ๐ป๐จ๐พโ๐ป๐ฉ๐ผโ๐ป๐จ๐ฝโ๐ป๐ฉ๐ปโ๐ปไธญๅฝ็ฌ็ซๅผๅ่ ้กน็ฎๅ่กจ -- ๅไบซๅคงๅฎถ้ฝๅจๅไปไน
โ 0 7mo agoExplain โ -
merklemap-cli โ
Discover and enumerate all subdomains associated with a website, including those not publicly advertised. Use this tool to conduct thorough security assessments, validate your organization's digital footprint, or enhance your reconnaissance capabilities for penetration testing and bug bounty hunting.
โ 0 1y agoExplain โ -
DeFiHackLabs-Incident-Explorer โ
DeFiHackLabs Incident Explorer
โ 0 1y agoExplain โ -
verifiable-phishing-reporter โ
No description.
โ 0 9mo agoExplain โ
No repos match these filters.