Skip to content

ArchExalt/cybersecurity-resources-library

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

50 Commits
 
 
 
 

Repository files navigation

Distros

OSINT, Forensics and Cybersecurity Resources and Tools

Photo Search:

Image Search:

Court Registries:

Email and Phone Numbers:

Temp Mail:

Email Analysis:

Phishing:

Enumeration:

DNS Tunneling:

Dumps:

Security Check:

Browsers:

Source Code:

People:

Usernames:

Comprehensive Search Engines:

Vehicle Recognition:

Traffic:

Instagram:

Net/Servers:

Misc Web:

Websites:

Social Networks:

Telegram:

Telegram Bots:

Whois:

Social Engineering:

Passwords:

MAC Generator:

VPN Checker:

Malware:

Foreign Resources:

Car Hacking:

Maps:

Darknet:

Google:

Opendata:

Registries:

Archives:

Extraction:

Blockchain:

Forensic Images:

Hashing:

Images and Disks:

Files:

Encryption:

Browsers:

File Recovery:

File Analysis:

Traffic and Network Analysis:

Artifact Search:

Memory Analysis:

Frameworks:

Artifacts:

Forensics:

RAM Analysis:

Registry:

Passwords:

Exploits:

Timestamps:

Logs:

Threat Intelligence:

Vulnerabilities:

Vulnerability Scanners:

Threat Libraries:

News:

Analytic materials:

Opt out:

Misc Networking:

Wi-Fi:

Bluetooth:

Various Attacks:

Keyloggers:

Drainers:

Payloads:

Windows:

Lock Screen:

SQL:

RAM:

Cloud/Containers:

Wordlist Compilers:

Reverse Shell:

IMSI:

eSIM:

Maps:

Satellites:

Cell Towers:

Drones:

Nature:

Steganography and Metadata:

System Tools:

Debugging Tools:

Fuzzers:

PowerShell:

Disk Images:

Misc OSINT:

Metasploit:

Compilations:

CTF Tools:

AI:

Misc:

Practical Labs and Education

Courses, Materials and Education

Books

Blue Team & Red Team Tools

Defensive Security:

  • https://d3fend.mitre.org
  • https://airtable.com/app37L1lMD9SoMzn4/shr0dETA6L3yxezjt/tblHGK8EwVCZLE6Mw?viewControls=on
  • Firewalls: iptables, firewalld, ufw, Guarddog, Vuurmuur, Gufw, Shorewall, nftables, Firewall Builder
  • Security Auditing: auditd, openSCAP, openVAS, Nmap, Nikto, Zenmap, SpiderFoot, skipfish, Nessus, Nexpose, OpenVAS
  • Malware Detection: chkrootkit, rkhunter, Lynis, LMD
  • Access Control: SELinux, AppArmor, Smack, Grsecurity, Yama, chkacct, tiger, PAM
  • Sandboxing: Bubblewrap, Seccomp, Firejail, Flatpak, Snappy, Chroot Jail, CuckooSandbox
  • IDS/IPS/SIEM: Snort, Suricata, Zeek, OSSEC, AIDE, Security Onion, OSSIM, CrowdSec, Kismet, Wazuh, splunk, LogRhythm
  • File Integrity Monitoring: Tripwire, Auditd, Auditbeat, Samhain, OSSEC, Wazuhm Osquery, Atomic OSSEC
  • Antivirus: CrowdStrike, ClamAV, Rspamd
  • Log Monitoring: Logwatch, ELK Stack, Netdata, logwatch, Graylog, Sagan, Fluentd, OpenObserve, Dynatrace, logcheck, syslog-ng
  • Backups: Déjà Dup, luckyBackup
  • Configurations: Ansible, Chef, Puppet, Salt Project, Terraform
  • Encryption/Cryptography: openssl, gpg, dm-crypt, fscrypt, EncFS, cryptsetup, Veracrypt, Gocryptfs, eCryptfs, SecureFS, bcrypt, argon2, RSA
  • Secure Shell: openssh, SSHGuard, DenyHosts, Knockd, Fail2ban, putty
  • Password Security: John the Ripper, Hashcat, KeePassXC, pwgen, GoPass, epasswd
  • VPN: IPsec, strongSwan, OpenVPN, WireGuard, Libreswan, SoftEther
  • Patch Management: Spacewalk, Katello, RH Satellite, Landscape, NinjaOne
  • Network Monitoring: Wireshark, Scapy, tcpdump, tshark
  • WAF: ModSecurity, NAXSI, BunkerWeb, Coraza, open-appsec
  • Honeypots: Kippo, Cowrie, Dockpot, HonSSH
  • EDR: Cortex XDR, Cynet360, FortiEDR
  • Incident Management: TheHive, GRR Rapid Response, VERIS
  • Threat Intelligence: MISP, MSTICPy
  • Mail Security: Proxmox
  • OS Analysis: HELK, Volatility, RegRipper, osquery
  • Containers: Docker Bench, Calico, Clair, gVisor, Grafeas, Falco, Dagda, Cilium, Dockle
  • API: Postman

Offensive Security:

  • https://attack.mitre.org
  • Reconnaissance: recon-ng, theHarvester, Nmap, Zenmap, DNSRecon, Netdiscover, Maltego, p0f, Zmap, Masscan, Unicornscan, sqlmap, RustScan, Amass,
  • Credential Dumping: Mimikatz, Dumpert, nanodump, forkatz, Pypykatz, LaZagne
  • Exfiltration: SharpExfiltrate, DNSExfiltrator, Egress-Access
  • Vulnerabilities: OpenVAS, w3af, Vuls, Nikto, Nessus
  • Networks: Wireshark, pfSense, Arkime, Ettercap, ArpSpoof, NetCat, dsniff, Scapy, hping3, Yersinia, maccanger, iproute2, thc-ssl-dos, Cutwail botnet, db1000n, MHDDoS
  • Password Security: John the Ripper, Hashcat, Crunch, Medusa, Hydra, Rainbowcrack, CeWL, crowbar, fcrackzip, Ophcrack, Patator
  • Mobile Security: Frida, Drozer, ANdroguard, MobSF, MASTG, NetHunter, Android Tamer, Apktool, Quark Engine, bettercap, Needle, ApkX, objection, APKStudio
  • Reverse Engineering: Angr, Ghidra, Radare2
  • Wireless Attacks: Kismet, Wifite, Aircrack-ng, airgeddon, WiFi Pumpkin, PixieWPS
  • Social Engineering: Gophish, SET, PhishX, King Phisher, EvilURL
  • Pentesting: Burp Suite, OWASP ZAP, Arachni, Wfull, Skipfish, Cobalt Strike
  • Reporting: Faraday, Serpico, Dradis, DefectDojo, MagicTree, Lair-framework
  • Credentials: John the Ripper, Cain and Abel, Hashcat, Hydra, RainbowCrack, Medusa, Ncrack, CeWL, w3af, Mimikatz, Patator, Brute-X
  • Exploitation: Metasploit, XSSer, SearchSploit, Pwntools, Exploit-DB, Commix, Ropper, ysoserial, ShellNoob, RouterSploit, BeEF, Armitage, sqlmap, jSQL Injection, PTF, SQL Ninja, Exploit Pack, Pupy
  • Post-Exploitation: Mimikatz, Koadic, Meterpreter, BeRoot, Pwncat, Dnscat2, Bloodhound, Pupy, Empire Project, Empire, BeRoot
  • Persistence: RDP, Apple Remote Desktop, VNC, X11 Forwarding
  • DNS: dig, dnsrecon, dnsx
  • C2: Socat, Twittor, WSC2
  • Evasion: Veil, TOR

Google Dork Operators

  • https://gist.github.com/sundowndev/283efaddbcf896ab405488330d1bbc06
  • https://www.exploit-db.com/google-hacking-database
  • https://hackyourmom.com/en/osvita/google-dorks-opanovuyemo-mystecztvo-poshukovyh-zapytiv/
  • site - обмежує пошук результатами з відповідного вебсайту (site:example.com)
  • filetype - шукає файли певного типу (filetype:pdf site:example.com)
  • intitle - шукає сторінки, у заголовках яких міститься певне слово (intitle:"index of")
  • allintitle - шукає всі слова у заголовку сторінок (allintitle:login password)
  • inurl - шукає сторінки, URL яких містить певне слово (inurl:admin)
  • cache - відображає кешовану версію вебсторінки (cache:example.com)
  • allintext - шукає всі слова в тексті сторінок (allintext:username password filetype:txt)
  • related - відображає вебсайти, схожі на вказаний (related:example.com)
  • link - шукає сторінки, що містять посилання на вказаний сайт (link:example.com)
  • "key phrase" - шукає точну фразу ("admin login")
  • &udm=14 - вимкнення ШІ в результатах пошуку

Приклади запитів:

  • пошук файлів з паролями - filetype:txt inurl:"password"
  • пошук відкритих FTP-директорій - intitle:"index of" inurl:ftp
  • пошук конфігураційних файлів з паролями - filetype:config "password"
  • пошук камер відеоспостереження - inurl:view/view.shtml
  • пошук адмінпанелей - inurl:admin intitle:login
  • пошук конфігурацій серверів - intitle:index.of .htaccess
  • пошук файлів баз даних - filetype:sql intext:"CREATE TABLE"
  • пошук конфіденційних файлів - filetype:xls site:example.com "password"
  • inurl:"/private" intext:"index of /" "win64" -litespeed

Ukrainian Cybersecurity Documents:

Kali

sudo apt-get update && sudo apt-get upgrade --fix-missing && sudo apt -y full-upgrade && sudo apt-get autoclean && sudo apt-get autoremove
apt-get dist upgrade
neofetch
oneko

About

OSINT/information security/cybersecurity resources and useful links

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors