List of resources

This page summarizes the projects mentioned and recommended in the original post on /r/HackForUkraine

Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
  • voicemailautomator

    A tool that serves as a Proof of Concept for the research I presented at DEF CON 26, "Compromising online accounts by cracking voicemail systems"

  • dejavu

    Audio fingerprinting and recognition in Python (by worldveil)

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • Cameradar

    Cameradar hacks its way into RTSP videosurveillance cameras

  • awesome-bbht

    A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.

  • Mythic

    A collaborative, multi-platform, red teaming framework

  • Medusa

    Medusa is a cross-platform C2 agent compatible with Python 2.7 and 3.8, compatible with Mythic (by MythicAgents)

  • sliver

    Adversary Emulation Framework

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • urh

    Universal Radio Hacker: Investigate Wireless Protocols Like A Boss

  • CamPhish

    Grab cam shots from target's phone front camera or PC webcam just sending a link.

  • maskphish

    Introducing "URL Making Technology" to the world for the very FIRST TIME. Give a Mask to Phishing URL like a PRO.. A MUST have tool for Phishing.

  • gophish

    Open-Source Phishing Toolkit

  • Office-phish-templates

    Tricks the target into enabling content (macros) with fake messages. Once enabled, uses macros to reduce the risk of suspision from target user via verious methods.

  • venom

    venom - C2 shellcode generator/compiler/handler (by r00t-3xp10it)

  • shad0w

    A post exploitation framework designed to operate covertly on heavily monitored environments

  • Ghost

    Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device. (by EntySec)

  • EvilOSX

    An evil RAT (Remote Administration Tool) for macOS / OS X.

  • CMSeeK

    CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs

  • sslstrip

    A tool for exploiting Moxie Marlinspike's SSL "stripping" attack.

  • evilgrade

    Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.

  • ScareCrow

    Discontinued ScareCrow - Payload creation framework designed around EDR bypass.

  • LinkedInt

    Discontinued LinkedIn Recon Tool

  • linkedin2username

    OSINT Tool: Generate username lists for companies on LinkedIn

  • Osintgram

    Osintgram is a OSINT tool on Instagram. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname

  • TWINT

    Discontinued An advanced Twitter scraping & OSINT tool written in Python that doesn't use Twitter's API, allowing you to scrape a user's followers, following, Tweets and more while evading most API limitations.

  • GHunt

    🕵️‍♂️ Offensive Google framework.

  • social-analyzer

    API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites

  • phoneinfoga

    Information gathering framework for phone numbers

  • theHarvester

    E-mails, subdomains and names Harvester - OSINT

  • TorBot

    Dark Web OSINT Tool

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts