What is F-Droid?
F-Droid is an installable catalogue of FOSS
(Free and Open Source Software)
applications for the Android platform. The
client makes it easy to browse, install, and
keep track of updates on your device.
https://f-droid.org/en/
2
NSLOOKUP
Sudo apt install dnsutils
Nslookup will shoe you website IP Mac address and
other info.
3
apt install dnsutils
Scans That You
Can Perform Using
RED HAWK :
https://github.com/Tuhinshubhra/
RED_HAWK
Basic Scan
Site Title NEW
IP Address
Web Server Detection IMPROVED
CMS Detection
Cloudflare Detection
robots.txt Scanner
Whois Lookup IMPROVED
Geo-IP Lookup
Grab Banners IMPROVED
DNS Lookup
Subnet Calculator
4
•Cloudflare Detection
•robots.txt Scanner
•Whois Lookup IMPROVED
•Geo-IP Lookup
•Grab Banners IMPROVED
•DNS Lookup
•Subnet Calculator
GoldenEye
GoldenEye is a Python 3 app for SECURITY TESTING PURPOSES ONLY!
GoldenEye is an HTTP DoS Test Tool.
https://github.com/jseidl/GoldenEye
5
sqlmap
sqlmap is an open source
penetration testing tool that
automates the process of
detecting and exploiting SQL
injection flaws and taking over of
database servers. It comes with a
powerful detection engine, many
niche features for the ultimate
penetration tester, and a broad
range of switches including
database fingerprinting, over data
fetching from the database,
accessing the underlying file
system, and executing
commands on the operating
system via out-of-band
connections
.
https://github.com/sqlmapproject/
sqlmap 7
8
Nmap
vulners
Its work is pretty simple:
* work only when some software version is
identified for an open port
* take all the known CPEs for that software
(from the standard nmap -sV output)
* make a request to a remote server
(vulners.com API) to learn whether any
known vulns exist for that CPE
* if no info is found this way, try to get it
using the software name alone
* print the obtained info out
https://raw.githubusercontent.com/vulnersC
om/nmap-vulners/master/vulners.nse
https://github.com/vulnersCom/nmap-
vulners
https://geekflare.com/nmap-vulnerability-
scan/
9
About
Infoooze
nfoooze is a powerful and
user-friendly OSINT (Open-
Source Intelligence) tool
that allows you to quickly
and easily gather
information about a specific
target. With Infoooze, you
can easily search for
information about websites,
IP addresses, usernames,
and more, all from the
convenience of a simple
command-line interface.
https://github.com/devXprit
e/infoooze
11
Fsociety
A Penetration Testing
Framework, you will
have every script that a
hacker needs. Works
with Python 2. For a
Python 3 version see
our updated version at
fsociety-team/fsociety
https://github.com/Manis
so/fsociety
12
Knock
Knockpy is a portable
and modular python3
tool designed to quickly
enumerate
subdomains on a
target domain through
passive
reconnaissance and
dictionary scan.
https://github.com/guelf
oweb/knock
13
CamHac
ker
CamHacker is a phishing
tool. It will generate a link.
If anyone opens the link
and permits camera
access, his/her photo will
be captured and sent to
you!
https://github.com/KasRou
dra/CamHackern
14
PyPhishe
r
Ultimate phishing tool
in python. Includes
popular websites like
facebook, twitter,
instagram, github,
reddit, gmail and many
others. Use other tools
also
https://github.com/KasRoudra/PyPhisher
git clone https://github.com/capture0x/XSS-LOADER/
cd XSS-LOADER
chmd +x *
sudo pip3 install -r requirements.txt
python3 payloader.py –h
https://www.httrack.com/