|
| 1 | +Tool,Link,Description |
| 2 | +aliasr,https://github.com/Mojo8898/aliasr,Aliasr is a modern and feature-rich TUI launcher for penetration testing commands inspired by Arsenal but with significantly improved functionality. |
| 3 | +asdf,https://github.com/asdf-vm/asdf,Extendable version manager with support for ruby python go etc |
| 4 | +assetfinder,https://github.com/tomnomnom/assetfinder,Tool to find subdomains and IP addresses associated with a domain. |
| 5 | +Blackbird,https://github.com/p1ngul1n0/blackbird,An OSINT tool to search fast for accounts by username across 581 sites. |
| 6 | +carbon14,https://github.com/Lazza/carbon14,OSINT tool for estimating when a web page was written. |
| 7 | +Censys,https://github.com/censys/censys-python,An easy-to-use and lightweight API wrapper for Censys APIs |
| 8 | +creds,https://github.com/ihebski/DefaultCreds-cheat-sheet,One place for all the default credentials to assist pentesters during an engagement. This document has several products default login/password gathered from multiple sources. |
| 9 | +CyberChef,https://github.com/gchq/CyberChef/,The Cyber Swiss Army Knife |
| 10 | +dnsenum,https://github.com/fwaeytens/dnsenum,dnsenum is a tool for enumerating DNS information about a domain. |
| 11 | +dtrx,https://github.com/dtrx-py/dtrx,Do The Right eXtraction - don't remember what set of tar flags or where to pipe the output to extract it? no worries! |
| 12 | +exegol-history,https://github.com/ThePorgs/Exegol-history,Credentials management for Exegol |
| 13 | +exifprobe,https://github.com/hfiguiere/exifprobe,Exifprobe is a command-line tool to parse EXIF data from image files. |
| 14 | +exiftool,https://github.com/exiftool/exiftool,ExifTool is a Perl library and command-line tool for reading / writing and editing meta information in image / audio and video files. |
| 15 | +finalrecon,https://github.com/thewhiteh4t/FinalRecon,A web reconnaissance tool that gathers information about web pages |
| 16 | +findomain,https://github.com/findomain/findomain,The fastest and cross-platform subdomain enumerator. |
| 17 | +firefox,https://www.mozilla.org,A web browser |
| 18 | +fzf,https://github.com/junegunn/fzf,🌸 A command-line fuzzy finder |
| 19 | +GeoPincer,https://github.com/tloja/GeoPincer,GeoPincer is a script that leverages OpenStreetMap's Overpass API in order to search for locations. |
| 20 | +gf,https://github.com/tomnomnom/gf,A wrapper around grep to avoid typing common patterns |
| 21 | +GHunt,https://github.com/mxrch/GHunt,Investigate Google Accounts with emails |
| 22 | +githubemail,https://github.com/paulirish/github-email,a command-line tool to retrieve a user's email from Github. |
| 23 | +glow,https://github.com/charmbracelet/glow,glow is a tool to render Markdown inside the terminal. |
| 24 | +GoMapEnum,https://github.com/nodauf/GoMapEnum,Nothing new but existing techniques are brought together in one tool. |
| 25 | +goshs,https://github.com/patrickhener/goshs,Goshs is a replacement for Python's SimpleHTTPServer. It allows uploading and downloading via HTTP/S with either self-signed certificate or user provided certificate and you can use HTTP basic auth. |
| 26 | +gron,https://github.com/tomnomnom/gron,Make JSON greppable! |
| 27 | +h8mail,https://github.com/khast3x/h8mail,Email OSINT and breach hunting. |
| 28 | +holehe,https://github.com/megadose/holehe,mail osint tool finding out if it is used on websites. |
| 29 | +ignorant,https://github.com/megadose/ignorant,holehe but for phone numbers. |
| 30 | +imagemagick,https://github.com/ImageMagick/ImageMagick,ImageMagick is a free and open-source image manipulation tool used to create / edit / compose / or convert bitmap images. |
| 31 | +Instaloader,https://github.com/instaloader/instaloader,Download content/captions/metadata from Instagram |
| 32 | +ipinfo,https://github.com/ipinfo/cli,Get information about an IP address or hostname. |
| 33 | +keepassxc,https://github.com/keepassxreboot/keepassxc,Cross-platform password manager |
| 34 | +linkedin2username,https://github.com/initstring/linkedin2username,Generate a list of LinkedIn usernames from a company name. |
| 35 | +maigret,https://github.com/soxoj/maigret,Collects information about a target email (or domain) from Google and Bing search results |
| 36 | +maltego,https://www.paterva.com/web7/downloads.php,A tool used for open-source intelligence and forensics |
| 37 | +mdcat,https://github.com/swsnr/mdcat,Fancy cat for Markdown |
| 38 | +Metagoofil,https://github.com/opsdisk/metagoofil,Metagoofil is a tool for gathering metadata of a website |
| 39 | +MurMurHash,https://github.com/QU35T-code/MurMurHash,This little tool is to calculate a MurmurHash value of a favicon to hunt phishing websites on the Shodan platform. |
| 40 | +neovim,https://neovim.io/,hyperextensible Vim-based text editor |
| 41 | +nfsshell,https://github.com/Supermathie/nfsshell,NFSShell is a tool for interacting with NFS shares without mounting them. |
| 42 | +ngrok,https://github.com/inconshreveable/ngrok,Expose a local server behind a NAT or firewall to the internet |
| 43 | +objectwalker,https://github.com/p0dalirius/objectwalker,A python module to explore the object tree to extract paths to interesting objects in memory. |
| 44 | +OpenVPN,https://openvpn.net/,Fast and Easy Zero-Trust VPN Fully in Your Control |
| 45 | +phoneinfoga,https://github.com/sundowndev/PhoneInfoga,Information gathering & OSINT framework for phone numbers. |
| 46 | +photon,https://github.com/s0md3v/Photon,a fast web crawler which extracts URLs / files / intel & endpoints from a target. |
| 47 | +pwndb,https://github.com/davidtavarez/pwndb,A command-line tool for searching the pwndb database of compromised credentials. |
| 48 | +pwnedornot,https://github.com/thewhiteh4t/pwnedOrNot,Check if a password has been leaked in a data breach. |
| 49 | +pyftpdlib,https://github.com/giampaolo/pyftpdlib/,Extremely fast and scalable Python FTP server library |
| 50 | +pymeta,https://github.com/m8sec/pymeta,Google and Bing scraping osint tool |
| 51 | +recon-ng,https://github.com/lanmaster53/recon-ng,External recon tool. |
| 52 | +recondog,https://github.com/s0md3v/ReconDog,a reconnaissance tool for performing information gathering on a target. |
| 53 | +rlwrap,https://github.com/hanslub42/rlwrap,rlwrap is a small utility that wraps input and output streams of executables / making it possible to edit and re-run input history |
| 54 | +rsync,https://packages.debian.org/sid/rsync,File synchronization tool for efficiently copying and updating data between local or remote locations |
| 55 | +searchsploit,https://gitlab.com/exploit-database/exploitdb,A command line search tool for Exploit-DB |
| 56 | +shellerator,https://github.com/ShutdownRepo/Shellerator,a simple command-line tool for generating shellcode |
| 57 | +Sherlock,https://github.com/sherlock-project/sherlock,Hunt down social media accounts by username across social networks. |
| 58 | +simplyemail,https://github.com/SimplySecurity/SimplyEmail,a scriptable command line tool for sending emails |
| 59 | +spiderfoot,https://github.com/smicallef/spiderfoot,A reconnaissance tool that automatically queries over 100 public data sources |
| 60 | +subfinder,https://github.com/projectdiscovery/subfinder,Tool to find subdomains associated with a domain. |
| 61 | +sublist3r,https://github.com/aboul3la/Sublist3r,a Python tool designed to enumerate subdomains of websites. |
| 62 | +theharvester,https://github.com/laramies/theHarvester,Tool for gathering e-mail accounts / subdomain names / virtual host / open ports / banners / and employee names from different public sources |
| 63 | +thr,https://www.thehacker.recipes/,THR (The Hacker Recipes) is aimed at providing technical guides on various hacking topics. |
| 64 | +tig,https://github.com/jonas/tig,Tig is an ncurses-based text-mode interface for git. |
| 65 | +tor,https://github.com/torproject/tor,Anonymity tool that can help protect your privacy and online identity by routing your traffic through a network of servers. |
| 66 | +toutatis,https://github.com/megadose/Toutatis,Toutatis is a tool that allows you to extract information from instagrams accounts such as e-mails / phone numbers and more. |
| 67 | +trevorspray,https://github.com/blacklanternsecurity/TREVORspray,TREVORspray is a modular password sprayer with threading SSH proxying loot modules / and more |
| 68 | +TriliumNext,https://github.com/TriliumNext/Notes,Personal knowledge management system (successor to Trilium). |
| 69 | +uberfile,https://github.com/ShutdownRepo/Uberfile,Uberfile is a simple command-line tool aimed to help pentesters quickly generate file downloader one-liners in multiple contexts (wget / curl / powershell / certutil...). This project code is based on my other similar project for one-liner reverseshell generation Shellerator. |
| 70 | +uploader,https://github.com/Frozenka/uploader,Tool for quickly downloading files to a remote machine based on the target operating system |
| 71 | +waybackurls,https://github.com/tomnomnom/waybackurls,Fetch all the URLs that the Wayback Machine knows about for a domain. |
| 72 | +wesng,https://github.com/bitsadmin/wesng,WES-NG is a tool based on the output of Windows's systeminfo utility which provides the list of vulnerabilities the OS is vulnerable to including any exploits for these vulnerabilities. |
| 73 | +whatportis,https://github.com/ncrocfer/whatportis,Command-line tool to lookup port information |
| 74 | +whois,https://packages.debian.org/sid/whois,See information about a specific domain name or IP address. |
| 75 | +wireguard,https://www.wireguard.com,WireGuard is an extremely simple yet fast and modern VPN that utilizes state-of-the-art cryptography |
| 76 | +Yalis,https://github.com/EatonChips/yalis,Yet Another LinkedIn Scraper |
| 77 | +yarn,https://yarnpkg.com/,Yarn is a package manager that doubles down as project manager. |
| 78 | +youtubedl,https://github.com/ytdl-org/youtube-dl,Download videos from YouTube and other sites. |
| 79 | +yt-dlp,https://github.com/yt-dlp/yt-dlp,A youtube-dl fork with additional features and fixes |
| 80 | +Zehef,https://github.com/N0rz3/Zehef,Zehef is an osint tool to track emails |
0 commit comments