InSkillSecالترسانة
الترسانة
62 أداة تنجز العمل الحقيقي في أي مهمة، مرتبة حسب المرحلة التي تحتاجها فيها. كل بطاقة تشرح دور الأداة وتحيلك إلى الدورة التي تعلّمها. استعرض دليل الدورات

الاستطلاع
رسم خريطة الهدف دون لمسه: النطاقات، الأشخاص، الأصول المكشوفة.
8 أداةAmass
Deep subdomain enumeration from dozens of passive sources at once.
تُدرَّس في OSINT AutomationSubfinder
Fast passive subdomain discovery, built for large scopes.
تُدرَّس في OSINT AutomationtheHarvester
Collects e-mails, names and hosts from public search engines.
تُدرَّس في OSINT AutomationRecon-ng
Modular OSINT framework that stores findings in a workspace database.
تُدرَّس في OSINT AutomationMaltego
Graphs relationships between people, domains and infrastructure.
تُدرَّس في OSINT AutomationShodan
Search engine for exposed devices, banners and forgotten services.
تُدرَّس في OSINT AutomationSpiderFoot
Automates 200+ OSINT modules against a single target.
تُدرَّس في OSINT AutomationSocial-Engineer Toolkit
Builds phishing pages and pretexts for authorised awareness tests.
تُدرَّس في Social Engineering
المسح والتعداد
معرفة ما يستمع، وبأي إصدار، وأين تكمن نقطة الضعف.
7 أداةNmap
The reference port scanner, with a scripting engine for enumeration.
تُدرَّس في Nmap AdvancedMasscan
Sweeps an entire /8 in minutes when Nmap would take days.
تُدرَّس في Nmap AdvancedRustScan
Finds open ports fast, then hands them to Nmap for the details.
تُدرَّس في Nmap AdvancedNuclei
Template-driven scanner for known exposures across many hosts.
تُدرَّس في Advanced Web AttacksNessus
Commercial vulnerability scanner, the baseline in most audit reports.
تُدرَّس في Advanced Penetration TestingOpenVAS
Open-source vulnerability scanner with its own feed of checks.
تُدرَّس في Advanced Penetration Testingenum4linux-ng
Pulls shares, users and policies out of SMB and LDAP services.
تُدرَّس في Active Directory Attacks
الاستغلال
تحويل الثغرة إلى وصول موثّق.
9 أداةMetasploit Framework
Exploits, payloads and post modules in one console.
تُدرَّس في Metasploit Prosqlmap
Automates SQL injection detection all the way to shell access.
تُدرَّس في Web HackingHydra
Online password attacks against dozens of network protocols.
تُدرَّس في Cryptography AttacksHashcat
GPU-accelerated hash cracking with rules and masks.
تُدرَّس في Cryptography AttacksJohn the Ripper
Cracks a very wide range of hash formats, CPU-first.
تُدرَّس في Cryptography AttacksImpacket
Python implementations of SMB, Kerberos and MSRPC you can script.
تُدرَّس في Active Directory AttacksNetExec
Sprays credentials and commands across a Windows network at scale.
تُدرَّس في Active Directory AttacksResponder
Poisons LLMNR and NBT-NS to capture and relay authentication.
تُدرَّس في Active Directory Attacksmsfvenom
Generates and encodes payloads for every target platform.
تُدرَّس في Advanced Payload Development
ما بعد الاستغلال
رفع الصلاحيات، وجمع بيانات الدخول، والتنقل، والحفاظ على الموقع.
9 أداةMimikatz
Extracts credentials, tickets and secrets from Windows memory.
تُدرَّس في Active Directory AttacksBloodHound
Graphs Active Directory to reveal the shortest path to Domain Admin.
تُدرَّس في Active Directory AttacksRubeus
Kerberos abuse toolkit: roasting, delegation, ticket forging.
تُدرَّس في Active Directory AttackslinPEAS
Enumerates every local privilege-escalation path on Linux.
تُدرَّس في Linux ExploitationwinPEAS
Same idea on Windows: services, tokens, unquoted paths, secrets.
تُدرَّس في Windows ExploitationChisel
Tunnels TCP over HTTP to reach segmented internal networks.
تُدرَّس في Network PivotingLigolo-ng
Builds a real network interface into the target subnet, no SOCKS pain.
تُدرَّس في Network PivotingSliver
Modern open-source command-and-control with mTLS implants.
تُدرَّس في C2 Framework DevelopmentCovenant
.NET command-and-control framework with a collaborative interface.
تُدرَّس في C2 Framework Development
الويب وواجهات البرمجة
اعتراض التطبيقات ونقاط نهايتها وتشويشها وكسرها.
8 أداةBurp Suite
The proxy every web test runs through: intercept, repeat, fuzz.
تُدرَّس في Burp Suite ProOWASP ZAP
Free intercepting proxy and scanner, scriptable for CI pipelines.
تُدرَّس في OWASP ZAP Proffuf
Fuzzes paths, parameters and hosts at very high request rates.
تُدرَّس في Advanced Web Attacksgobuster
Brute-forces directories, DNS names and virtual hosts.
تُدرَّس في Web HackingNikto
Quick sweep for dangerous files, stale software and misconfigurations.
تُدرَّس في Web HackingPostman
Replays and tampers with REST and GraphQL calls collection by collection.
تُدرَّس في REST API PenetrationGraphQL Voyager
Renders an introspected schema so you can see what is reachable.
تُدرَّس في GraphQL Securityjwt_tool
Inspects, tampers with and cracks JSON Web Tokens.
تُدرَّس في Web Authentication Attacks
الشبكات اللاسلكية والعتاد
مهاجمة ما ينتقل في الهواء وما يمكن حمله باليد.
7 أداةAircrack-ng
The classic Wi-Fi suite: capture, replay, crack WEP and WPA.
تُدرَّس في WiFi Security — From Zero to Pentesterhcxdumptool
Captures PMKID and handshakes straight into a Hashcat-ready file.
تُدرَّس في WiFi Security — From Zero to PentesterKismet
Passive wireless survey across Wi-Fi, Bluetooth and more.
تُدرَّس في WiFi Security — From Zero to PentesterBettercap
Swiss army knife for network and wireless man-in-the-middle.
تُدرَّس في Bluetooth HackingHackRF One
Software-defined radio to listen to and replay 1 MHz-6 GHz signals.
تُدرَّس في SDR & Radio HackingProxmark3
Reads, clones and emulates RFID and NFC access badges.
تُدرَّس في Hardware HackingBus Pirate
Talks UART, SPI and I2C to the chips on a board you opened.
تُدرَّس في Hardware Hacking
السحابة والحاويات
تدقيق الهويات والتخزين والعناقيد والصور قبل أن يفعلها غيرك.
6 أداةPacu
AWS exploitation framework: enumerate, escalate, persist.
تُدرَّس في AWS Penetration TestingScoutSuite
Multi-cloud security audit that reports on IAM, storage and network.
تُدرَّس في Cloud Penetration FundamentalsROADtools
Explores Entra ID (Azure AD) relationships the way BloodHound does AD.
تُدرَّس في Azure Penetration Testingkube-hunter
Hunts for exposed Kubernetes components and weak defaults.
تُدرَّس في Container EscapeTrivy
Scans images, filesystems and IaC for known vulnerabilities.
تُدرَّس في Container Escape AdvancedPeirates
Post-exploitation inside a pod: steal tokens, move across the cluster.
تُدرَّس في Container Escape
التحليل والتحقيق الجنائي
قراءة حركة الشبكة والملفات الثنائية والذاكرة لفهم ما حدث.
8 أداةWireshark
Dissects captured traffic packet by packet, protocol by protocol.
تُدرَّس في Wireshark Masterytcpdump
Captures on the wire from any shell, no interface needed.
تُدرَّس في Wireshark MasteryGhidra
Free decompiler that turns machine code back into readable C.
تُدرَّس في Reverse EngineeringIDA Free
The industry disassembler, with the graph view everyone learned on.
تُدرَّس في Reverse Engineeringradare2
Scriptable reverse-engineering framework that lives in the terminal.
تُدرَّس في Reverse Engineeringx64dbg
Windows debugger for watching a binary misbehave in real time.
تُدرَّس في Buffer Overflow AdvancedVolatility
Rebuilds processes, connections and secrets from a memory dump.
تُدرَّس في Memory ForensicsAutopsy
Disk forensics workbench: timelines, deleted files, artefacts.
تُدرَّس في Memory Forensicsهذه الأدوات مذكورة للاختبارات المصرّح بها وللتعليم فقط. استخدامها ضد أنظمة دون إذن كتابي جريمة في معظم الدول.