InSkillSecΟπλοστάσιο
Οπλοστάσιο
62 εργαλεία που κάνουν την πραγματική δουλειά σε μια αποστολή, ταξινομημένα κατά τη φάση χρήσης τους. Κάθε καρτέλα εξηγεί τον σκοπό και οδηγεί στο μάθημα που το διδάσκει. Δες τον κατάλογο μαθημάτων

Αναγνώριση
Χαρτογράφηση του στόχου χωρίς να τον αγγίξεις: domains, πρόσωπα, εκτεθειμένα assets.
8 εργαλείαAmass
Deep subdomain enumeration from dozens of passive sources at once.
Διδάσκεται στο OSINT AutomationSubfinder
Fast passive subdomain discovery, built for large scopes.
Διδάσκεται στο OSINT AutomationtheHarvester
Collects e-mails, names and hosts from public search engines.
Διδάσκεται στο OSINT AutomationRecon-ng
Modular OSINT framework that stores findings in a workspace database.
Διδάσκεται στο OSINT AutomationMaltego
Graphs relationships between people, domains and infrastructure.
Διδάσκεται στο OSINT AutomationShodan
Search engine for exposed devices, banners and forgotten services.
Διδάσκεται στο OSINT AutomationSpiderFoot
Automates 200+ OSINT modules against a single target.
Διδάσκεται στο OSINT AutomationSocial-Engineer Toolkit
Builds phishing pages and pretexts for authorised awareness tests.
Διδάσκεται στο Social Engineering
Σάρωση και απαρίθμηση
Βρες τι ακούει, σε ποια έκδοση, και πού υποχωρεί.
7 εργαλείαNmap
The reference port scanner, with a scripting engine for enumeration.
Διδάσκεται στο Nmap AdvancedMasscan
Sweeps an entire /8 in minutes when Nmap would take days.
Διδάσκεται στο Nmap AdvancedRustScan
Finds open ports fast, then hands them to Nmap for the details.
Διδάσκεται στο Nmap AdvancedNuclei
Template-driven scanner for known exposures across many hosts.
Διδάσκεται στο Advanced Web AttacksNessus
Commercial vulnerability scanner, the baseline in most audit reports.
Διδάσκεται στο Advanced Penetration TestingOpenVAS
Open-source vulnerability scanner with its own feed of checks.
Διδάσκεται στο Advanced Penetration Testingenum4linux-ng
Pulls shares, users and policies out of SMB and LDAP services.
Διδάσκεται στο Active Directory Attacks
Εκμετάλλευση
Μετέτρεψε ένα εύρημα σε πιστοποιημένη πρόσβαση.
9 εργαλείαMetasploit Framework
Exploits, payloads and post modules in one console.
Διδάσκεται στο Metasploit Prosqlmap
Automates SQL injection detection all the way to shell access.
Διδάσκεται στο Web HackingHydra
Online password attacks against dozens of network protocols.
Διδάσκεται στο Cryptography AttacksHashcat
GPU-accelerated hash cracking with rules and masks.
Διδάσκεται στο Cryptography AttacksJohn the Ripper
Cracks a very wide range of hash formats, CPU-first.
Διδάσκεται στο Cryptography AttacksImpacket
Python implementations of SMB, Kerberos and MSRPC you can script.
Διδάσκεται στο Active Directory AttacksNetExec
Sprays credentials and commands across a Windows network at scale.
Διδάσκεται στο Active Directory AttacksResponder
Poisons LLMNR and NBT-NS to capture and relay authentication.
Διδάσκεται στο Active Directory Attacksmsfvenom
Generates and encodes payloads for every target platform.
Διδάσκεται στο Advanced Payload Development
Μετά την εκμετάλλευση
Ανέβασε δικαιώματα, μάζεψε διαπιστευτήρια, μετακινήσου, κρατήσου.
9 εργαλείαMimikatz
Extracts credentials, tickets and secrets from Windows memory.
Διδάσκεται στο Active Directory AttacksBloodHound
Graphs Active Directory to reveal the shortest path to Domain Admin.
Διδάσκεται στο Active Directory AttacksRubeus
Kerberos abuse toolkit: roasting, delegation, ticket forging.
Διδάσκεται στο Active Directory AttackslinPEAS
Enumerates every local privilege-escalation path on Linux.
Διδάσκεται στο Linux ExploitationwinPEAS
Same idea on Windows: services, tokens, unquoted paths, secrets.
Διδάσκεται στο Windows ExploitationChisel
Tunnels TCP over HTTP to reach segmented internal networks.
Διδάσκεται στο Network PivotingLigolo-ng
Builds a real network interface into the target subnet, no SOCKS pain.
Διδάσκεται στο Network PivotingSliver
Modern open-source command-and-control with mTLS implants.
Διδάσκεται στο C2 Framework DevelopmentCovenant
.NET command-and-control framework with a collaborative interface.
Διδάσκεται στο C2 Framework Development
Web και API
Υποκλοπή, fuzzing και σπάσιμο εφαρμογών και endpoints.
8 εργαλείαBurp Suite
The proxy every web test runs through: intercept, repeat, fuzz.
Διδάσκεται στο Burp Suite ProOWASP ZAP
Free intercepting proxy and scanner, scriptable for CI pipelines.
Διδάσκεται στο OWASP ZAP Proffuf
Fuzzes paths, parameters and hosts at very high request rates.
Διδάσκεται στο Advanced Web Attacksgobuster
Brute-forces directories, DNS names and virtual hosts.
Διδάσκεται στο Web HackingNikto
Quick sweep for dangerous files, stale software and misconfigurations.
Διδάσκεται στο Web HackingPostman
Replays and tampers with REST and GraphQL calls collection by collection.
Διδάσκεται στο REST API PenetrationGraphQL Voyager
Renders an introspected schema so you can see what is reachable.
Διδάσκεται στο GraphQL Securityjwt_tool
Inspects, tampers with and cracks JSON Web Tokens.
Διδάσκεται στο Web Authentication Attacks
Ασύρματα και υλικό
Επίθεση σε ό,τι ταξιδεύει στον αέρα και ό,τι κρατάς στο χέρι.
7 εργαλείαAircrack-ng
The classic Wi-Fi suite: capture, replay, crack WEP and WPA.
Διδάσκεται στο WiFi Security — From Zero to Pentesterhcxdumptool
Captures PMKID and handshakes straight into a Hashcat-ready file.
Διδάσκεται στο WiFi Security — From Zero to PentesterKismet
Passive wireless survey across Wi-Fi, Bluetooth and more.
Διδάσκεται στο WiFi Security — From Zero to PentesterBettercap
Swiss army knife for network and wireless man-in-the-middle.
Διδάσκεται στο Bluetooth HackingHackRF One
Software-defined radio to listen to and replay 1 MHz-6 GHz signals.
Διδάσκεται στο SDR & Radio HackingProxmark3
Reads, clones and emulates RFID and NFC access badges.
Διδάσκεται στο Hardware HackingBus Pirate
Talks UART, SPI and I2C to the chips on a board you opened.
Διδάσκεται στο Hardware Hacking
Cloud και containers
Έλεγχος IAM, buckets, clusters και images πριν το κάνει άλλος.
6 εργαλείαPacu
AWS exploitation framework: enumerate, escalate, persist.
Διδάσκεται στο AWS Penetration TestingScoutSuite
Multi-cloud security audit that reports on IAM, storage and network.
Διδάσκεται στο Cloud Penetration FundamentalsROADtools
Explores Entra ID (Azure AD) relationships the way BloodHound does AD.
Διδάσκεται στο Azure Penetration Testingkube-hunter
Hunts for exposed Kubernetes components and weak defaults.
Διδάσκεται στο Container EscapeTrivy
Scans images, filesystems and IaC for known vulnerabilities.
Διδάσκεται στο Container Escape AdvancedPeirates
Post-exploitation inside a pod: steal tokens, move across the cluster.
Διδάσκεται στο Container Escape
Ανάλυση και δικανική
Διάβασε κίνηση, binaries και μνήμη για να καταλάβεις τι έγινε.
8 εργαλείαWireshark
Dissects captured traffic packet by packet, protocol by protocol.
Διδάσκεται στο Wireshark Masterytcpdump
Captures on the wire from any shell, no interface needed.
Διδάσκεται στο Wireshark MasteryGhidra
Free decompiler that turns machine code back into readable C.
Διδάσκεται στο Reverse EngineeringIDA Free
The industry disassembler, with the graph view everyone learned on.
Διδάσκεται στο Reverse Engineeringradare2
Scriptable reverse-engineering framework that lives in the terminal.
Διδάσκεται στο Reverse Engineeringx64dbg
Windows debugger for watching a binary misbehave in real time.
Διδάσκεται στο Buffer Overflow AdvancedVolatility
Rebuilds processes, connections and secrets from a memory dump.
Διδάσκεται στο Memory ForensicsAutopsy
Disk forensics workbench: timelines, deleted files, artefacts.
Διδάσκεται στο Memory ForensicsΤα εργαλεία αυτά παρατίθενται για εξουσιοδοτημένους ελέγχους και εκπαίδευση. Η χρήση τους σε συστήματα χωρίς γραπτή άδεια είναι παράνομη στις περισσότερες χώρες.