Tool List - Hailstorm Security
Tool List - Hailstorm Security
12 min read
Published at: Dec 13, 2023 (Updated at: Dec 13, 2023)
Notes Member
There's generally a tool for everything in cybersecurity - but I've made an attempts to list all the tools I come across
in my work and studies.
Update
A
Tool Description Tags
Anki is a flexible flash card system that applies spaced repetition #learning, Free, Utility, Windows, Linux,
Anki
theory for improved long-term retention development. macOS, Multi-platform, Cloud Service
B
Tool Description Tags
The Swiss Army knife for WiFi, Bluetooth Low Energy, wireless HID #mitm, #pen, #hijacking,
Bettercap
hijacking and IPv4 and IPv6 networks reconnaissance and MITM attacks. #wifi #graphic
C
Tool Description Tags
Certificate
Examine certificate registration data for host and system #defence, #cloud, Free, Offense,
Transparency
discovery. Defense, Cloud Service
Search
D
Tool Description Tags
PowerShell script that parses Windows event logs for threat #defence, #parse,Free, Open
DeepBlueCLI
hunting. Source, Defense, Windows
Assess an executable file to identify the location where #pen, #obfuscation, Free, Open
DefenderCheck
Windows Defender characterizes it as malware. Source, Offense, Windows
E
Tool Description Tags
Exiftool is a Perl script that extracts metadata from many #pen, #defence, #forensics, Free, Open
Exiftool different file types including Microsoft Office, PDF, many Source, Offense, Defense, Utility, Windows,
different image file types, and more. Linux, macOS, Multi-platform
EyeWitness scans a range of hosts, recording a #pen, #web, #enum, Free, Open Source,
EyeWitness
screenshot of web server content. Offense, Linux
F
Tool Description Tags
G
Tool Description Tags
Identify and enumerate the permissions associated with #pen, #cloud, #enum, Free, Open
GCPBucketFinder
Google Compute Buckets. Source, Offense, Multi-platform
Ghidra is a software reverse engineering suite of tools #pen, #defence, #MA, Free, Open
Ghidra
developed by the NSA's Research Directorate. Source, Offense, Defense, Windows
The GNU Debugger is a portable debugger that runs on #debug, Free, Open Source,
GNU Debugger many Unix-like systems and works for many Commercial, Utility, Windows,
programming languages. Linux, macOS
Google Hacking Search tool to use Google to identify vulnerabilities in #enum, #pen, #web, Free, Cloud
Database public websites. A collection of Google Dorks Service
H
Tool Description Tags
Multi-functional password hash recovery tool; #pen, #cracking, Free, Open Source, Offense,
Hashcat
predominantly uses GPUs for cracking functionality. Windows, Linux, macOS, Multi-platform
Have I Been Service to determine if an email address or username #pen, #defence, #enum, Free, Offense,
Pwned is known to have been included in a major breach. Defense, Cloud Service
I
Tool Description Tags
IDA Pro is a commercial disassembler, useful for malware analysis #MA, #static, Commercial, Offense,
IDA Pro
and many other reverse-engineering tasks. Defense, Windows, Linux, macOS
Tool Description Tags
Active and passive scanning for wifi. Identifies SSID, security settings,
inSSIDer signal strength, and channel information. Integrates with GPS for #pen #wifi #recon #enum
location mapping.
J
Tool Description Tags
K
Tool Description Tags
Passively captures Wi-Fi activity, preventing any opportunity for discovery. Provides detailed #pen #wifi
Kismet
information about network and clients as they are seen. #recon
L
Tool Description Tags
LiSt Open Files, including open TCP and UDP port #defence, Free, Open Source, Defense,
lsof
usage. Linux
M
Tool Description Tags
Port scanning tool designed to scan large quantities of IP #pen, #enum, Free, Open Source,
Massscan
addresses. Offense, Linux
Metasploit Advanced Command & Control framework that is part of the #pen, #shell, Free, Open Source,
Meterpreter Metasploit Framework. Offense, Multi-platform
#pen, #password-harvesting,
Mimikatz is a well-known password and password hash
Mimikatz Free, Open Source, Offense,
extraction tool for Windows.
Windows
The Msconfig.exe utility is the Windows System Configuration #defence, #detection, #LOL,
Msconfig utility, intended for managing configuration and troubleshooting Commercial, Defense, Utility,
tasks on Windows. Windows
N
Tool Description Tags
O
Tool Description Tags
P
Tool Description Tags
Passwd is a Linux utility to change your password, or other user's #LOLFree, Open Source,
passwd
passwords when you have root privileges. Offense, Defense, Utility, Linux
R
Tool Description Tags
#defence, #threat-hunt,
Real
Free, Open Source,
Intelligence RITA is an open source framework for network traffic analysis and threat
Defense, Windows,
Threat hunting.
Linux, macOS, Multi-
Analytics
platform
Tool Description Tags
#windows, #registry,
The reg utility reads and writes to the Windows registry from the Commercial, Offense,
Reg
command line. Defense, Utility,
Windows
S
Tool Description Tags
Collection of tools to interact with Windows systems from #SMB, Free, Open Source,
Samba
Linux. Offense, Utility, Linux
#windows, #services,
Service Control, control Windows services from the command
sc Commercial, Offense, Defense,
line.
Utility, Windows
Interrogate Windows properties including users, platforms, #windows, #pen, #enum, Free,
SharpView
domain settings, and more. Open Source, Offense, Windows
Use Shodan to discover Internet devices including vulnerable #OSINT, #enum, Free,
SHODAN
platforms and systems. Commercial, Cloud Service
FTP-like client to access SMB/CIFS resources on servers and to #SMB, #pen, Free, Open Source,
Smbclient
interrogate Windows settings. Offense, Utility, Linux
Sqlmap is an open source penetration testing tool that #web, #pen,Free, Open Source,
Sqlmap automates the process of detecting and exploiting SQL Defense, Windows, Linux, macOS,
injection flaws. Multi-platform
The Linux strings utility extracts plaintext strings from a #MA, Free, Open Source,
Strings (Linux)
specified file, supporting both ASCII and UTF-16 string data. Defense, Utility, Linux
T
Tool Description Tags
#windows, #enum,
Tasklist is a built-in Windows tool that enumerates running processes and
Tasklist Commercial, Offense,
services.
Defense, Utility, Windows
TCPView is part of the Microsoft SysInternals suite of tools that will show #enum, #LOL, #windows,
TCPView you detailed listings of all TCP and UDP endpoints on your system, Free, Defense, Utility,
including the local and remote addresses and state of TCP connections. Windows
U
Tool Description Tags
#cracking, Included with John the Ripper, unshadow merges Free, Open Source, Offense,
Unshadow the password and shadow files into a single unified file for Utility, Windows, Linux, macOS,
password cracking efficiency. Multi-platform
Useradd is a Linux tool to add new user accounts to the #linux, Free, Open Source,
useradd
system. Offense, Defense, Utility, Linux
V
Tool Description Tags
W
Tool Description Tags
Wevtutil is a command line tool that comes with Windows #windows, #LOL, Commercial, Offense,
Wevtutil
for managing event log data including purging event logs. Defense, Utility, Windows
whois Linux utility to interrogate DNS registration data. #dns, Utility, Linux, macOS
Tool Description Tags
X
Tool Description Tags
xlek is a resource to search millions of online data records for #enum, Free, Offense, Defense, Cloud
xlek
free. Service
Z
Tool Description Tags
Zeek is a free and open-source software network analysis #defence, #detection, Free, Open
Zeek framework. Zeek logging data is used to supply RITA with data for Source, Defense, Windows, Linux,
network threat hunting analysis. macOS
Support me
Thank you so much for reading and I hope you found it inspirational or helpful! You can best support me by doing any of
the following bellow!
Turn off Adblocker: A simple yet impactful way to support me for free.
Sign Up: If you haven't already, consider signing up to get access to more content and receive optional newsletters.
Buy Premium: Explore the Premium option for additional perks and exclusive content.
You can read more about the perks of being a Member or Subscriber here.
Additionally, you can stay updated and engage with me on social media:
Discussion
0 comments
Continue reading
Nessus - TryHackMe
5 min read
Waterfront Adventures O
Getnoticed Open