Yersinia |
|
Attack various protocols on layer 2 |
|
Dllinjector |
|
Implement various DLL injection techniques
that work across multiple Windows versions |
|
Metasploit |
|
World’s most used penetration testing framework |
|
Pwntools |
|
CTF framework and exploit development library. Written in Python |
|
Commix |
|
Commix (short for [comm]and [i]njection e[x]ploiter) is an open source penetration testing tool |
|
Sqlmap |
|
Open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws |
|
W3af |
|
Web application security scanner which helps developers and penetration testers identify and exploit vulnerabilities in their web applications |
|
XSSer |
|
Cross Site Scripter (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications |
|
Reverse Shell |
|
Payloads All The Things- Reverse Shell Cheatsheet |
|
Reverse Shell #2 |
|
d4t4s3c - Reverse Shell Cheat Sheet |
|
Searchsploit |
|
Command line search tool for Exploit-DB that also allows you to take a copy of Exploit Database with you, everywhere you go |
|
Dirtycow |
|
Dirty COW (CVE-2016-5195) is a privilege escalation vulnerability in the Linux Kernel (Old exploit) 2.6.22 and below |
|
URH |
|
Universal Radio Hacker (URH) is a complete suite for wireless protocol investigation with native support for many common Software Defined Radios |
|
Cross-Site Scripting |
|
Cross-Site Scripting (XSS) - Good cheat sheet over many options |
|
SQL Injections |
|
Somewhat good SQL injections cheatsheet |
|
WL Compendium |
|
WordList-Compendium - Personal compilation of wordlists & dictionaries for everything. Users, passwords, directories, files, vulnerabilities, fuzzing, injections, wordlists of tools, etc. |
|
Beef |
|
The Browser Exploitation Framework Project |
|
Dns-black-cat |
|
Multi platform toolkit for an interactive DNS shell commands exfiltration |
|
King-phisher |
|
Phishing Campaign Toolkit |
|
Exploit-db |
|
Exploit Database is a CVE compliant archive of public exploits and corresponding vulnerable software |
|
Hackingtool |
|
ALL IN ONE Hacking Tool For Hackers (It's okay and works but i would use it just a yey an option for a tool) |
|
PHP Obfuscator |
|
Ever needed to obfuscate your php code to either compress it or hide it etc. This is a good online site for that. |
|
MalShare |
|
A free Malware repository providing researchers access to samples, malicious feeds, and Yara results |
|
VirusTotal |
|
Analyze suspicious files and URLs to detect types of malware, automatically share them with the security community |
|
Pupy |
|
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) remote administration and post-exploitation tool mainly written in python |
|