Skip to content
View phishdestroy's full-sized avatar
๐Ÿšจ
Scammers will be caught, the time of reckoning has come!
๐Ÿšจ
Scammers will be caught, the time of reckoning has come!

Block or report phishdestroy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please donโ€™t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
phishdestroy/README.md

PhishDestroy Banner

โš”๏ธ PhishDestroy

Volunteer-Driven Threat Intelligence โ€ข Infrastructure Takedowns โ€ข OSINT Automation

Mission โ€ข Operations โ€ข Operational Matrix โ€ข ้กน็›ฎ โ€ข Expertise โ€ข Statistics โ€ข Contact


๐ŸŽฏ Mission

PhishDestroy is a volunteer-driven threat intelligence initiative focused on large-scale detection, analysis, and elimination of:

  • Crypto drainers
  • Phishing networks
  • Scam infrastructure
  • Fraudulent applications
  • Threat actor clusters

Since 2019, we have:

  • Neutralized 500,000+ malicious domains
  • Eliminated 25+ actor-controlled infrastructures
  • Investigated 15+ threat actor groups
  • Maintained global OSINT feeds and takedown workflows

๐Ÿ“Š Operations Overview

RECONNAISSANCE โ”‚ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ”‚ CONTINUOUS
ANALYSIS โ”‚ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ”‚ ACTIVE
COORDINATION โ”‚ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ”‚ ONGOING
NEUTRALIZATION โ”‚ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ”‚ RELENTLESS


๐Ÿ›ก๏ธ Operational Matrix

๐ŸŒ SCAN

โ€ข CT logs monitoring
โ€ข DNS anomaly detection
โ€ข Passive DNS + feeds
โ€ข Automated scanners
โ€ข Community submissions

๐ŸŽฏ HUNT

โ€ข Infra correlation
โ€ข Actor attribution
โ€ข Fingerprinting
โ€ข ็ฝ‘็ปœ graphing
โ€ข Validation workflows

โšก STRIKE

โ€ข Registrar escalation
โ€ข Hosting abuse pipeline
โ€ข Null-routing requests
โ€ข Evidence reporting
โ€ข Multi-team ops

๐Ÿ”ฅ ERASE

โ€ข Infra shutdown
โ€ข Persistence monitoring
โ€ข Re-emergence detection
โ€ข Intelligence linking
โ€ข Zero-tolerance control


๐Ÿ“ก Highlighted ้กน็›ฎ


๐Ÿง  OSINT Detection Methods

  • Certificate Transparency API
  • DNS anomalies & registrar drift
  • Hosting & ASN correlation
  • Blockchain scam transaction analysis
  • Malware reverse engineering
  • AI-enhanced phishing kit detection
  • Automated intelligence clustering

๐Ÿงฉ Expertise & Stack


๐Ÿ“ˆ Statistics & ๅŠจๆ€

๐Ÿ“Š More Stats


๐Ÿ“ฌ Contact & Community

Evidence-based threat neutralization since 2019
๐Ÿ“ง github@phishdestroy.io
๐Ÿ’ช Powered by volunteers, protected by community

Pinned Loading

  1. MetaMask/eth-phishing-detect MetaMask/eth-phishing-detect Public

    Utility for detecting phishing domains targeting Web3 users

    TypeScript 1.3k 1.1k

  2. destroylist destroylist Public

    Real-time phishing & scam domain blocklist - 208k+ curated threats, 1M+ community, free API, multiple formats

    HTML 1.6k 423

  3. x-twitter-archive-CarlyGriggs13 x-twitter-archive-CarlyGriggs13 Public

    Phishing takedown archive from @CarlyGriggs13 โ€” 138K tweets, scam domain reports, and threat intel blocked by X.

    HTML 68 2

  4. swiss-knife swiss-knife Public

    ๅคๅˆปed from swiss-knife-xyz/swiss-knife

    All your EVM tools in one place!

    TypeScript 6 1

  5. seal-911 seal-911 Public

    ๅคๅˆปed from security-alliance/seal-911

    SEAL 911 is a project designed to give users, developers, and security researchers an accessible way to connect with a small group of highly trusted security professionals in case of emergency.

    1