Cyber Tool Chest

A curated collection of essential cybersecurity tools, scripts, and resources.

Accunetix

An automated web application security testing tool

Amass

Linux

Tool for Subdomain enumeration

Aquatone

Ruby

A set of tools for performing reconnaissance on domain names

Bettercap

go

Tool used for MITM attacks

Binwalk

Python

Firmware Analysis Tool

Brutexss

windows/linux

Cross-Site Scripting Bruteforcer.

Builtwith

Find out what a website is built with

CMSmap

Python

CMS vulnerability scanner

Cain&abel

Windows

A password recovery tool for Microsoft Operating Systems

Cewl

ruby

Custom wordlist generator

CloudFlair

Python

CloudFlair is a tool to find origin servers of websites protected by CloudFlare

Commix

Python

command-injection detection exploitation pentesting vulnerability-scanner

Crunch

Linux

A wordlist generator

DOMxsscanner

Python

Tool for finding potential DOM based XSS

Dirb

Linux

A command line based tool to brute force directories

Dirbuster

Java

Application designed to brute force directories

Dirsearch

windows/linux

A command line tool designed to brute force directories

Dnscan

Python

A wordlist-based DNS subdomain scanner

Dnsdumpster

Website to find and lookup DNS records

Enumall

Python

Script to enumerate subdomains

Ettercap

linux

Tool for man-in-the-middle attacks on LAN

ExifTool

Perl

software program for reading, writing, and manipulating image, audio, video, and PDF metadata

Eyewitness

Python

A tool used to capture screenshots

Fcrackzip

Linux

Tool to crack zip passwords

Fern wifi cracker

Linux

Cracking WiFi Password

Fiddler

Windows

A Web Debugging Proxy

Findsploit

windows/linux

Find Exploits In Local And Online Databases

Fuxploider

Python

File Upload Vulnerability Scanner And Exploitation Tool

Genymotion

apk tool

Cross-platform Android emulator for developers & QA engineers

GoogD0rker

Python

google dorks for a domain

Hashcat

Linux

Password cracker

Httpscreenshot

Python

A tool for grabbing screenshots and HTML of websites

Joomscan

perl

Joomla vulnerability scanner

Knockpy

Python

A python tool to enumerate subdomains

LFISuit

Python

Tool able to scan and exploit Local File Inclusion

Maltego

Python

open-source intelligence and forensics tool

Masscan

C

very fast network and port scanner like nmap

Massdns

Python

Tool used to resolve lots of subdomains quickly

Mimikatz

Windows

A post-exploitation tool for windows

Mobsf

apk tool

All-in-one mobile application (Android/iOS/Windows) pen-testing framework

Nessus

Ruby

A vulnerability scanner

Nikto

Perl

A Web server scanner

Nmap

C

Free and open-source network scanner

Ophcrack

Linux

Tool to crack passwords for windows login

Owasp zed

Windows

open-source web application security scanner.

Parameth

Python

Tool to brute discover GET and POST parameters

SQLmap

windows/linux

A software that is used to detect and exploit database vulnerabilities

Seclists

Collection of Wordlists

Shodan

search engine for Internet-connected devices

Sslcan

Windows/Linux

Scan SSL services

Sublist3r

Python

Tool designed to enumerate subdomains of websites

THC hydra

windows/linux

A brute force password cracking tool.

The harvester

Python

A tool for gathering e-mail accounts and subdomain names from public sources

Threatexpert

Windows

Upload any file to the servers of the program and they''ll tell you if the file is infected or not

Unicornscan

Linux

information gathering tool

Virustotal

free service that analyzes files and URLs for viruses, worms, trojans

WAFW00F

Python

Identify and fingerprint Web Application Firewall products

Wappalyzer

Uncovers the technologies used on websites

Wayback Machine

A digital archive of the World Wide Web

Wfuzz

windows/linux

Tool designed for bruteforcing Web Applications

Wifite

Python

To attack multiple WEP, WPA, and WPS encrypted networks in a row.

Wireshark

windows/linux

open-source packet analyzer.

Wpscan

ruby/curl

WordPress vulnerability scanner

Wpsploit

Linux

Tool to pentest wordpress plugins

XSS hunter

To find all kinds of cross-site scripting vulnerabilities

XSStrike

python

Tool to test websites for XSS vulnerabilities

Zenmap

Windows/linux

A GUI for nmap

Zoomeye

Search Engine for Cyberspace

fluxion

Python

Tool for MITM WPA attacks

git-all-secrets

A tool used to find git secrets

john the ripper

Linux/Windows

A free password cracking software tool

social engineering toolkit

Python

An open-source Python-driven tool aimed at penetration testing around Social-Engineering

waybackrobots

Python

Fetch urls of webarchive

waybackurls

Python

Fetch all the URLs that the Wayback Machine