This is an automatic SQL Injection tool called FatCat. It has features that help you to extract the database information, table information, and column information from a web application.
4f817b144c8f53343c8aa637f785cfa7Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
889d6c7b94e9b4b4eca15f9e04ce9a86P0f is a tool that utilizes an array of sophisticated, purely passive traffic fingerprinting mechanisms to identify the players behind any incidental TCP/IP communications (often as little as a single normal SYN) without interfering in any way. Version 3 is a complete rewrite of the original codebase, incorporating a significant number of improvements to network-level fingerprinting, and introducing the ability to reason about application-level payloads (e.g., HTTP).
aea524324828790b24a90be3bb7a0d93Mobius Forensic Toolkit is a forensic framework written in Python/GTK that manages cases and case items, providing an abstract interface for developing extensions. Cases and item categories are defined using XML files for easy integration with other tools.
e4f9643b6c77ffa9ff00ab0f59dd9097Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
805a42d36e42f5901d0a6497306713a7OpenDNSSEC is software that manages the security of domain names on the Internet. The project intends to drive adoption of Domain Name System Security Extensions (DNSSEC) to further enhance Internet security.
e82098192f4a3965de7a84e6ae9f1f75PostTest is a jar file that will send POST requests to servers in order to test for the hash collision vulnerability discussed at the Chaos Communication Congress in Berlin.
7e94c05959065b9e3ee16b155ee0fe4bipt_pkd is an iptables extension implementing port knock detection with SPA (single packet authorization). This project provides 3 parts: the kernel module ipt_pkd, the iptables user space module libipt_pkd.so, and a user space client knock program. For the knock packet, it uses a UDP packet sent to a random port that contains a SHA-256 of a timestamp, small header, random bytes, and a shared key. ipt_pkd checks the time window of the packet and does the SHA-256 to verify the packet. The shared key is never sent.
f351c9bd9d51d0d8b19e1dbd145353dbDark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
1135026518d9d2e547c7fc2030142efcDark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
59c92aeebbb4e725bb20482451ef06f3Suricata is a network intrusion detection and prevention engine developed by the Open Information Security Foundation and its supporting vendors. The engine is multi-threaded and has native IPv6 support. It's capable of loading existing Snort rules and signatures and supports the Barnyard and Barnyard2 tools.
79a74f7d9cc32d7cacd9783e258d6feeThis is a very small backdoor written in Python.
abf97854fff55fbaf20ea64011da1522Dark D0rk3r is a python script that performs dork searching and searches for SQL injection errors.
4ec2f206ba19629bd6d4dfd5372246bcSuricata is a network intrusion detection and prevention engine developed by the Open Information Security Foundation and its supporting vendors. The engine is multi-threaded and has native IPv6 support. It's capable of loading existing Snort rules and signatures and supports the Barnyard and Barnyard2 tools.
bd7dbcb882281b5a2bdceed5821c114cThis is a small MySQL cracking tool capable of running login attempts from multiple threads in parallel. It is capable of 1024 concurrent connections.
c86b51dfee55c0a71e8fff874ef270d7WOL-E is a suite of tools for the Wake on LAN feature of network attached computers, this is now enabled by default on many Apple computers. These tools include bruteforcing the MAC address to wake up clients, sniffing WOL attempts and passwords, scanning for Apple devices and more.
c13b145872bfba6b1dabb7775f28a8abDACS is a light-weight single sign-on and role-based access control system providing flexible, modular authentication methods and powerful, transparent rule-based authorization checking for Web services, CGI programs, or virtually any program.
72899c20059569317f6efe66baf888bfUniOFuzz is a universal fuzzing tool for browsers, web services, files, programs and network services/ports.
699ae0a5715729e8d320012413fac2feOATH Toolkit attempts to collect several tools that are useful when deploying technologies related to OATH, such as HOTP one-time passwords. It is a fork of the earlier HOTP Toolkit.
b15754a7419592c57b8a98cc413eb873P0f is a tool that utilizes an array of sophisticated, purely passive traffic fingerprinting mechanisms to identify the players behind any incidental TCP/IP communications (often as little as a single normal SYN) without interfering in any way. Version 3 is a complete rewrite of the original codebase, incorporating a significant number of improvements to network-level fingerprinting, and introducing the ability to reason about application-level payloads (e.g., HTTP).
8a7ea1821b4599bdd1749b6112865c41This is a very fast TCP port scanner for Linux that can scan multiple hosts and ports at once.
b5d0e5e019e3d6a9d81a48d0489ad883A small application built to test the performance of a pop3 authentication system using a lot of concurrent connections. It can also be used to try lots of password against a pop3 server. It is capable of using up to 1024 sessions (or more using multiple processes). However with this amount it is capable of reducing internet connections to a crawl and also greatly increasing the load on the server.
2080a9ffe1b5020963b555494ce64282This is a fake sshd which can be used to log common login attempts which are typically used by scammers / spammers / script kiddies to attempt to gain access to servers. It does not modify OpenSSH and uses libssh instead. There is no valid way to login to a shell, can be used to tarpit / delay attackers and can be used to steal the entries used in a dictionary attack.
e7d4f36de596e2a2e00b56015c6f0750This is a simple ICMP ping sweeping tool that takes in a range of IP addresses.
543666de6d9557dbd4451e5bf90b0ea9Xplico is an open source Network Forensic Analysis Tool (NFAT) that allows for data extraction from traffic captures. It supports extraction of mail from POP, IMAP, and SMTP, can extract VoIP streams, etc. This is the version that has a GUI allowing you to view photos, texts and videos contained in MMS messages.
639aea5d8860fb9f93c103783815831a