FYI
Section: Tools & Resources · Penetration testing framework
Entry
Appears in 4 awesome lists
is a computer security project that provides information about security vulnerabilities and aids in penetration testing and IDS signature development.
Section: Tools & Resources · Penetration testing framework
Section: Exploitation Frameworks · Penetration testing framework for exploit development.
Section: Multi-paradigm Frameworks · Software for offensive security teams to help verify vulnerabilities and manage security assessments.
Section: Security Tools · is a computer security project that provides information about security vulnerabilities and aids in penetration testing and IDS signature development.
Wireshark is a free and open-source packet analyzer. It is used for network troubleshooting, analysis, software and communications protocol development, and education. Wireshark is very similar to tcpdump, but has a graphical front-end, plus some integrated sorting and filtering options.
A free, open-source network scanner used for discovering hosts, services, and vulnerabilities on computer networks through advanced port scanning and OS detection techniques.
(search and pick the exploits, which have respective apps available for download, reproduce the exploit by using fuzzer of your choice)
Burp Suite is an integrated platform for performing security testing of web applications by portswigger.
Kali Linux is a Debian-derived Linux distribution designed for digital forensics and penetration testing. Kali Linux is preinstalled with numerous penetration-testing programs, including nmap (a port scanner), Wireshark (a packet analyzer), John the Ripper (a password cracker), and Aircrack-ng (a…
Multiuser integrated pentesting environment for red teams performing cooperative penetration tests, security audits, and risk assessments.
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C (archived)
Automated mass exploiter, which collects target by employing the Shodan.io API and programmatically chooses Metasploit exploit modules based on the Shodan query.