GIMP |
|
The Free & Open Source Image Editor |
|
HxD |
|
Fast hex editor which, additionally to raw disk editing and modifying of main memory (RAM), handles files of any size |
|
VS Code |
|
This is properly one of the most advanced editors out there today with great OS support and customization |
|
Audacity |
|
Audio editor for Windows, Mac or Linux |
|
Ffmpeg |
|
A complete, cross-platform solution to analyse, record, convert and stream audio and video |
|
Grep |
|
Print lines that match patterns |
|
File |
|
Attempt to classify any file |
|
V0lt |
|
(outdated) Security CTF, Python style. Making CFT scripting easy in python |
|
Dvcs-ripper |
|
Rip web accessible (distributed) version control systems: SVN, GIT, Mercurial/hg, bzr etc. |
|
ResourcesExtract |
|
Small utility that scans dll/ocx/exe files and extract all resources (bitmaps, icons, cursors, AVI movies, HTML files, and more...) |
|
Imagemagick |
|
Create, edit, compose, or convert digital image |
|
Postman |
|
Postman is an API platform for building, testing and using APIs |
|
Ghidra |
|
A software reverse engineering (SRE) suite of tools developed by NSA's Research Directorate in support of the Cybersecurity mission |
|
Assetnote |
|
Wordlists that are up to date and effective against the most popular technologies on the internet |
|
Skullsecurity |
|
Password dictionaries and Leaked passwords |
|
Hunter.io |
|
Email enumeration tool |
|
Haveibeenpwned |
|
Useful for breach enumeraton |
|
Jsnice |
|
Online tool to make even obfuscated JavaScript code readable |
|
Searchcode |
|
Find real life code examples |
|
GNU Radio |
|
GNU Radio is a free & open-source software development toolkit that provides signal processing blocks to implement software radios. (HackRF, BladeRF, USRP, RTL-SDR) |
|
WL Compendium |
|
WordList-Compendium - Personal compilation of wordlists & dictionaries for everything. Users, passwords, directories, files, vulnerabilities, fuzzing, injections, wordlists of tools, etc. |
|
Recon-cheatsheet |
|
A okay nice cheatsheet for doing recon, found on DEF CON - 9221 twitter now hosted locally for keepsake :) |
|
GHDB |
|
Google Hacking Database (GHDB) is a compendium of Google hacking search terms that have been found to reveal sensitive data exposed by vulnerable servers and web applications |
|
Exploit-db |
|
Exploit Database is a CVE compliant archive of public exploits and corresponding vulnerable software |
|
Gps-sdr-sim |
|
Software-Defined GPS Signal Simulator |
|
Mitre - Groups |
|
Groups are mapped to publicly reported technique use and original references are included. The information provided does not represent all possible technique use by Groups. |
|
Mitre - Software |
|
Software is a generic term for custom or commercial code, operating system utilities, open-source software, or other tools used to conduct behavior modeled in attacks |
|
Mitre - D3fend |
|
A knowledge graph of cybersecurity countermeasures |
|
CTFCrackTools |
|
China's first CTFTools framework (Use at your own risk hahah) |
|
Security-tools |
|
Collection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff |
|
EML Header Analyzer |
|
E-Mail (EML) Header Analyzer can analyze e-mail header lines and print out the Received lines separately and clearly |
|
Text Converter |
|
Text Converter converts text to other encodings or other formats. Supported formats include Base64, Quoted-Printable, URL encoding, HTML encoding, various types of text conversion and formatting, as well as hash calculations |
|
PHP Obfuscator |
|
Ever needed to obfuscate your php code to either compress it or hide it etc. This is a good online site for that. |
|
ASCII ANSI Table |
|
ASCII (American Standard Code for Information Interchange) is a 7-bit character set that contains characters from 0 to 127 |
|
Unicode Table |
|
Unicode, formally the Unicode Standard, is an information technology standard for the consistent encoding, representation, and handling of text expressed in most of the world's writing systems |
|
Rapidtables |
|
RapidTables contains quick reference information and tools from conversion tables to calculations to text, web, electronic conversion tables. Very useful |
|
W3m <3 |
|
apt install w3m w3m-img w3m-el |
|
Clean email list |
|
sed 's/[ ]*$//' < emails.txt | tr 'A-Z' 'a-z' | sort | uniq > emails-scrubbed.txt |
|
Srihash |
|
Generate SRI hashes for your script tags. Protect your web sites |
|
Walletexplorer |
|
Bitcoin block explorer with address grouping and wallet labeling |
|
OP_RETURN - PHP |
|
BTC (Bitcoin) - Simple PHP commands and library for using bitcoin OP_RETURNs. |
|
Bitcoin explorer |
|
Bitcoin explorer - Block viewer, Transaction viewer, Universal search, Raw transaction interpreter, Raw block interpreter |
|
OpenVAS Scanner |
|
OpenVAS is a vulnerability scanner that was developed in response to the commercialization of Nessus |
|
LINQPad |
|
LINQPad is not just for LINQ queries, but any C#/F#/VB expression, statement block or program |
|
MalShare |
|
A free Malware repository providing researchers access to samples, malicious feeds, and Yara results |
|
Ipleak |
|
Quick way to detect if your VPN is WebRTC or DNS leaking |
|
DNSSec Analyzer |
|
Enter a domain name to be tested for dnssec virification |
|
FCC Freq Alloc |
|
FCC Online table of Frequency Allocations. This is a PDF. HAndy way to see whats allocated to what in the USA. Only gives an idea of the range not the direct frequency. |
|
Radio Spectrum |
|
The radio spectrum is the part of the electromagnetic spectrum with frequencies from 30 Hz to 300 GHz. (Wiki page/link) |
|
DKScan |
|
Danish frequencies for all known services and bands. This might be outdated and also TXT document. You can refer to their site, this is just a backup. www.dkscan.dk |
|
Regex101 |
|
One of the best online regular expression test websites |
|
OP_RETURN - Py |
|
BTC (Bitcoin) - Simple Python commands and library for using bitcoin OP_RETURNs |
|
ETH-block-by-date |
|
Get Ethereum block number by a given date. Or blocks by a given period duration. Works well with Web3 node js. |
|
Web3.js |
|
Ethereum JavaScript API. |
|
Web3.py |
|
A python interface for interacting with the Ethereum blockchain and ecosystem. Based on Web3.js |
|
Apple Disk Copy |
|
7z x apple-disk-image.dmg |
|
VirtualBox |
|
VirtualBox is a powerful x86 and AMD64/Intel64 virtualization product for enterprise as well as home use. Can read raw images, img, iso, vmdk, vdi, vhdx, vpc, vm ware images and qemu qcow - qcow2 |
|
QEMU |
|
QEmu is a powerful generic and open source machine emulator and virtualizer. Can read raw images, img, iso, vmdk, vdi, vhdx, vpc, vm ware images and qcow + qcow2 + coop |
|
MalConfScan |
|
Volatility plugin for extracts configuration data of known malware |
|
Mdadm |
|
mdadm is used to handle software raids on Linux. You can use this tool to create, build, assemble, rebuild, monitor any raid type on Linux. Dont forget the order of the disks is important when trying to assemble an already created raid array etc. |
|
Mdadm loop |
|
losetup loop1 raid-disk1.img |
|