Skip to content

Latest commit

 

History

History
128 lines (100 loc) · 3.52 KB

README.md

File metadata and controls

128 lines (100 loc) · 3.52 KB

Tools_Techniques

This repository is used for all of the tools and techniques that I have learned or I am currently learning. This is not an all inclusive list, as there are others listed under the THM repo or the HTB repo as well. Most of these tools are gathered from various certification exams from SANS, TCM or EC-Council.

Tools Index

Command Injection

Tool Name Link
commix https://gitlab.com/kalilinux/packages/commix

DNS

Tool Name Link
dig https://www.kali.org/tools/bind9/#dig
nslookup https://www.kali.org/tools/bind9/#nslookup
dnsdumpster https://dnsdumpster.com/
dnsrecon https://github.com/darkoperator/dnsrecon

Enumeration

Tool Name Link
nmap https://www.kali.org/tools/nmap/
Nuclei https://github.com/projectdiscovery/nuclei
CloudHunter https://github.com/belane/CloudHunter
wappalyzer https://www.wappalyzer.com/
whatweb https://www.kali.org/tools/whatweb/
assetfinder https://github.com/tomnomnom/assetfinder
Amass https://github.com/OWASP/Amass
httprobe https://github.com/tomnomnom/httprobe
gowitness https://github.com/sensepost/gowitness

Exploitation

Tool Name Link
Metasploit https://github.com/rapid7/metasploit-framework
searchsploit https://www.kali.org/tools/exploitdb/#searchsploit
exploit-db https://www.exploit-db.com/

Forced Browsing / Fuzz

Tool Name Link
dirbuster https://www.kali.org/tools/dirbuster/
ffuf https://github.com/ffuf/ffuf
BurpSuite https://portswigger.net/
ZAP https://github.com/zaproxy/zaproxy
dirb https://www.kali.org/tools/dirb/

OSINT

Tool Name Link
reconFTW https://github.com/six2dez/reconftw
SpiderFoot https://www.spiderfoot.net/
dehashed (paid) https://dehashed.com/
breach-parse https://github.com/hmaverickadams/breach-parse
Netcraft https://www.netcraft.com/

Password Guessing

Tool Name Link
hydra https://github.com/vanhauser-thc/thc-hydra
JohnTR https://github.com/openwall/john
spraygen https://github.com/3ndG4me/spraygen

Password Profiling

Tool Name Link
pwgen
cewl https://github.com/digininja/CeWL
crunch https://www.kali.org/tools/crunch/

Payloads

Tool Name Link
PayLoadsAllTheThings https://github.com/swisskyrepo/PayloadsAllTheThings

SQL

Tool Name Link
sqlmap https://sqlmap.org/
BurpSuite https://portswigger.net/
ffuf https://github.com/ffuf/ffuf

Vulnerability Scanning

Tool Name Link
ZAP https://github.com/zaproxy/zaproxy
OpenVAS https://www.kali.org/tools/gvm/#openvas

WAF Detection

Tool Name Link
wafw00f https://github.com/EnableSecurity/wafw00f

Wikis / Info

Tool Name Link
hacktricks https://book.hacktricks.xyz/welcome/readme
pentest-playbook https://github.com/stnv/pentest-playbook/blob/master/Web/Chrome%20Devtools.md
pentest book https://pentestbook.six2dez.com/

WordPress

Tool Name Link
wpscan https://github.com/wpscanteam/wpscan
wpxploit https://github.com/relarizky/wpxploit
wp-multi-bruteforce https://github.com/entr0pie/wp-multi-bruteforce

XSS

Tool Name Link
findom-xss https://github.com/dwisiswant0/findom-xss
xsser https://xsser.03c8.net/

XML Encoding/Decoding

Tool Name Link
xml-encoding http://xml-encoding.online-domain-tools.com/