Security
Free security — 103 tools · 103 tools
Creepy
Geolocation OSINT tool for gathering location information from social platforms
Google Dorking (GHDB)
Google Hacking Database (GHDB) of search queries used to uncover exposed information and vulnerabilities
Holehe
Check if an email address is registered on websites and services without sending any emails
Maigret
Collect a dossier on a person by username from thousands of sites
Intel Techniques Tools
Curated suite of free online OSINT tools and searches used by investigators
OSINT Framework
Web-based framework listing dozens of free OSINT tools by category
Osintgram
OSINT tool for Instagram that gathers user information such as followers, media and hashtags via CLI
Phone Infoga
Advanced phone number information gathering and tracking across public databases
Sherlock
Find usernames across social networks with a single search
Sherlock
Find usernames across 400+ social networks and platforms with a single query
Spider Foot
Automate OSINT collection across 200+ modules: scan a target and correlate IPs, domains, emails, and social footprints
Sublist3r
Enumerates subdomains of websites using OSINT sources and search engines
the Harvester
Gather emails, subdomains, hosts, and employee names from public sources for reconnaissance
Virus Total
Scan files, URLs, and domains against 70+ antivirus engines and threat intelligence feeds. Detect malware and phishing at scale
Whats My Name
Unified usernames enumeration across 300+ websites
Who XY
Domain owner, registrar, and WHOIS history lookup tool
Aircrack-ng
Complete suite of tools for assessing Wi-Fi network security: monitoring, attacking, testing, and cracking
Apktool
Tool for reverse engineering third-party Android apps by decoding resources back to nearly original form
Assetfinder
Passive subdomain discovery tool that finds related domains and subdomains without directly touching the target
Autopsy
Forensic analysis of hard drives and media. Recover deleted files, analyze artifacts, and generate reports
Autoruns
Sysinternals tool that shows every program configured to run at startup, logon or boot on Windows
Be EF
Browser Exploitation Framework that focuses on the web browser to assess security posture via client-side attacks
Binwalk
Firmware analysis tool that scans binary images to detect and extract embedded files and data
Blood Hound
Discover hidden and often unintended relationships in Active Directory using graph theory
bulk_extractor
Extracts valuable artifacts like emails, URLs and credit card numbers from disk images and directories
Chkrootkit
Locally checks for signs of rootkits on Unix-like systems
Cloud Fox
Automates situational awareness and reconnaissance for cloud penetration testing on AWS, Azure and GCP
Commix
Automated tool to detect and exploit command injection vulnerabilities in web applications
Crack Map Exec
Swiss army knife for pentesting Windows and Active Directory environments with credential spraying
Crack Station
Online hash cracking service with a large precomputed wordlist database for recovering plaintext passwords
Cutter
Free and open-source reverse engineering platform powered by Radare2
Dirsearch
Advanced web path brute-forcer to discover hidden directories and files
Elastic Security
Free and open SIEM with detection rules, endpoint security, and threat hunting
Empire
PowerShell and Python post-exploitation framework with modules for lateral movement and persistence
Ettercap
Comprehensive suite for man-in-the-middle attacks, network sniffing and traffic interception
Evil-Win RM
Ultimate WinRM shell for hacking and pentesting Windows hosts using the native WinRM protocol
Eye Witness
Webscreenshot tool for reconnaissance that captures screenshots of multiple websites for analysis
Feroxbuster
Fast, simple, recursive content discovery tool written in Rust
FFUF
Fast web fuzzer that discovers directories, files, virtual hosts, and parameters on web servers
FLARE VM
Windows-based virtual machine distribution for malware analysis maintained by Mandiant
Foremost
Console program to recover deleted files by carving disk images based on file headers and footers
Frida
Dynamic instrumentation toolkit for developers and reverse engineers on Android, iOS, and desktop
gau
Get All URLs - fetches known URLs for a domain from public web archives like the Wayback Machine
Ghidra
NSA's software reverse engineering framework with disassembly and decompilation
Gitleaks
Scan git repos for secrets, passwords, and API keys that were accidentally committed
Go Phish
Phishing simulation toolkit for security awareness training. Track who clicks and reports
Go Witness
Web screenshot utility that uses Chrome headless to capture screenshots of websites at scale for recon
Graylog
Open-source log management for collecting, indexing, and analyzing machine data in real time
Hashcat
World's fastest password recovery tool. Recover lost passwords from hash files using CPU and GPU
hashes org
Public online hash database and cracking service for password hashes and hash lists
httpx
Multipurpose HTTP toolkit for fast probing and scanning of HTTP services to reveal status codes, technologies and endpoints
jadx
Dex to Java decompiler that produces readable Java source code from Android APKs
John the Ripper
Fast password cracking tool for recovering weak passwords from hashes
Katana
Crawler designed for security testing that discovers endpoints and sensitive data on websites
Lynis
Audit Unix/Linux systems for security hardening gaps. Generates hardening recommendations
Masscan
Extremely fast port scanner that can scan the entire internet in minutes by sending packets in parallel
Metasploit Framework
Penetration testing framework with thousands of modules for exploitation, payloads, and post-exploitation
Mimikatz
Windows security tool that extracts plaintext passwords, hashes, PINs and Kerberos tickets from memory
MISP Threat Intelligence
Open source threat intelligence platform for storing, correlating, and sharing indicators of compromise
mitmproxy
Interactive HTTPS proxy for inspecting, modifying and replaying traffic between clients and servers
Mob SF
Mobile Security Framework - automated all-in-one mobile app penetration testing and malware analysis
Mod Security
Open source web application firewall with a rules engine for blocking attacks
Net Exec
Network exploitation and post-exploitation tool (successor to CrackMapExec) for pentesting Active Directory networks
Nikto
Scan web servers for outdated software, dangerous files, and misconfigurations
Nmap
Discover hosts and services on a network. Port scanning, OS detection, version detection, and scripting engine
Nuclei
Fast, template-based vulnerability scanner that sends requests to targets and matches results against templates
Open CTI
Open-source platform to store, organize, and analyze threat intelligence and cyber observables
Open VAS / Greenbone
Full vulnerability scanning and management suite. Scan networks for known CVEs and misconfigurations
Pacu
AWS exploitation framework for offensive security testing and red teaming of AWS accounts
Password Strength Meter
Score any password instantly with an in-browser strength meter that shows entropy, weak patterns, and concrete tips to make it stronger
Payloads All The Things
Payloads All The Things - a large collection of payloads and bypasses for web application security testing
System Informer
System Informer (formerly Process Hacker) - a full-featured task manager and system monitor for Windows
Prowler
CIS benchmarks and security checks for AWS, Azure and GCP cloud environments
Radare2
Unix-like reverse engineering framework and command-line toolset for binary analysis
REMnux
REMnux Linux distribution for malware analysis and reverse engineering of malicious software
Responder
LLMNR, NBT-NS and MDNS poisoner used to grab credentials on local networks during penetration tests
Rootkit Hunter
Scan systems for rootkits, backdoors, and local exploits
Rust Scan
Fast port scanner written in Rust that finds open ports in seconds and pipes them into other tools
S3Scanner
Finds AWS S3 buckets and checks their permissions to identify publicly exposed buckets
Scout Suite
Open-source multi-cloud security auditing tool for AWS, Azure, GCP and other cloud providers
Search Sploit
Command-line search tool for the Exploit-DB archive to find exploits, shellcodes and papers
Sec Lists
Collection of security-related wordlists for fuzzing, brute force, and discovery
The Sleuth Kit
Command line toolkit for examining disk images and recovering evidence
Sliver
Implant-based command and control framework that generates and controls payloads for red team operations
SQLmap
Automatically detect and exploit SQL injection flaws. Supports many databases and injection techniques
Suricata
High performance network intrusion detection and prevention system with threat hunting
tcpdump
Command-line packet analyzer for capturing and inspecting network traffic on a live interface
The Hive
Scalable, open-source security incident response platform that integrates with MISP
Trivy
Comprehensive, fast scanner for vulnerabilities in container images, filesystems, and git repos
Velociraptor
Digital forensics and incident response platform for collecting data from endpoints at scale
Volatility
Analyze RAM dumps to find malicious processes, injected code, and hidden artifacts
Volatility 3
Memory forensics framework for extracting artifacts such as processes, connections and hashes from RAM dumps
W3AF
Web application attack and audit framework with 200+ plugins
WAFW00F
Web application firewall fingerprinting tool that detects which WAF protects a given website
Waybackurls
Fetch all known URLs for a domain from the Wayback Machine for recon and asset discovery
TShark
Command line version of Wireshark for scripting and automation of packet capture analysis
Wireshark
Capture and inspect network traffic in real time. The industry-standard protocol analyzer for troubleshooting and security
WPScan
Black-box WordPress vulnerability scanner that checks for known CVEs and weaknesses
x64dbg
Open-source Windows x64/x32 debugger for reverse engineering and malware analysis
XSStrike
Advanced cross-site scripting detection suite with fuzzing and analysis to find XSS vulnerabilities
YARA
Identify and classify malware by creating rules that match on binary patterns
OWASP ZAP
Automated security scanner for finding vulnerabilities in web applications. Proxy, fuzzer, and scanner in one
Zeek
Powerful network analysis framework focused on security monitoring and research