Filter
Exclude
Time range
-
Near
From all this I've learnt, to an extent, to scan and enumerate machines, networks, and web applications; to exploit file upload weakness, bypass authentication, bypass Oauth (if vulnerable), escalate privileges using linPEAS (I've not really done winPEAS), and a host of others.
1
7
Ethical hacking isn't just about tools, it's about methodology. Recon โžก๏ธ Scanning โžก๏ธ Exploitation โžก๏ธ Post-Exploitation โžก๏ธ Privilege Escalation โžก๏ธ Reporting Key tools: Nmap, Nessus, OpenVAS , WHOIS, Maltego, Metasploit, SQLMap, LinPEAS, WinPEAS, Dradis, Faraday #cybersecurity
1
3
173
40 Advanced Pentesting & Red Team Tools ๐Ÿ”ฅ 1.๐Ÿ‘๏ธ Nmap 2.โšก Masscan 3.๐Ÿ” Amass 4.๐ŸŽฏ Subfinder 5.๐Ÿ›ฐ๏ธ Assetfinder 6.๐Ÿ›ก๏ธ Nessus 7.๐ŸŸข OpenVAS 8.๐ŸŒ Nikto 9.โš›๏ธ Nuclei 10.๐Ÿ•ท๏ธ Wapiti 11.๐Ÿš€ Metasploit Framework 12.๐Ÿ“š SearchSploit 13.๐Ÿ’‰ SQLMap 14.๐Ÿ’ฅ ExploitDB 15.โš™๏ธ Commix 16.๐Ÿ”‘ Hashcat 17.๐Ÿช“ John the Ripper 18.๐Ÿ‰ Hydra 19.๐ŸŽฏ Medusa 20.๐Ÿ’€ CrackMapExec 21.๐ŸŒŽ Burp Suite 22.๐Ÿ›ก๏ธ OWASP ZAP 23.๐Ÿ“‚ Gobuster 24.๐Ÿ”Ž Dirsearch 25.โšก XSStrike 26.๐Ÿ“ถ Aircrack-ng 27.๐Ÿ“ก Kismet 28.๐Ÿ” Reaver 29.๐Ÿ“ฒ Wifite 30.๐Ÿ•ธ๏ธ Bettercap 31.๐Ÿง LinPEAS 32.๐ŸชŸ WinPEAS 33.โ˜ ๏ธ BeRoot 34.๐Ÿ” Watson 35.๐Ÿ“– GTFOBins 36.๐ŸŽญ Mimikatz 37.๐Ÿฉธ BloodHound 38.๐Ÿ‘‘ Empire 39.๐Ÿถ Pupy 40.๐Ÿ”Œ Netcat (NC) #CyberSecurity #Pentesting #RedTeam #EthicalHacking #InfoSec #BugBounty #SecurityTools #KaliLinux
1
16
77
2,138
RedTeam-Tools โ€” A curated collection of 150 tools and resources for red team operations ๐Ÿ’€๐Ÿ”ฅ Categories include: ๐Ÿ” Reconnaissance ๐ŸŽฏ Initial Access โšก Execution ๐Ÿ”‘ Credential Access ๐Ÿ“ˆ Privilege Escalation ๐Ÿ•ต๏ธ Defense Evasion ๐Ÿ”„ Lateral Movement ๐Ÿ“ก Command & Control ๐Ÿ“ฆ Exfiltration Notable tools featured: โ€ข SpiderFoot โ€ข ReconFTW โ€ข Nuclei โ€ข BloodHound โ€ข LinPEAS / WinPEAS โ€ข CrackMapExec โ€ข Ligolo-ng โ€ข Seatbelt โ€ข PingCastle ๐Ÿ”— github.com/A-poc/RedTeam-Tooโ€ฆ A useful reference repository for security professionals, red teamers, detection engineers, and students who want a structured overview of the offensive security ecosystem. #RedTeam #CyberSecurity #Pentesting #ThreatEmulation #OSINT #ActiveDirectory #SecurityTools #Infosec
38
203
6,643
ใ“ใ“ๆ•ฐๆ—ฅใ€ๅฐๆ—ฅๅ‘ใŒใใ•ใ‚“(@427Kohi )ใจGREY HACKใ‚„ใฃใฆใŸใ‚“ใ ใ‘ใฉใ‚‚ใ€ๆœ€ๅˆใฎใƒใƒผใƒ‰ใƒซใŒใ‚ใกใ‚ƒ้ซ˜ใใฆ่ถณๅผ•ใฃๆŽ›ใ‘ใฆใ“ใ‘ใŸใ€‚ ใใ‚Šใ‚ƒใ‚‚ใ†ใ€ใšใ‚‹ในใŸใ‚“ใจ่ฆ‹ไบ‹ใซใ€‚ ใจใฏใ„ใˆใŒใไป™ๆต้–€ไธ‹็”Ÿใจใ—ใฆใฏ้ŠใณใŸใ„ใ€‚ ...ใงใ€‚ ใŒใใ•ใ‚“ใŒไฝœใฃใŸใงใ‚“ใ˜ใ‚ƒใ‚‰ใ™LinpeasใฟใŸใ„ใฎใŒใคใ‚ˆใคใ‚ˆใ™ใŽใฆๅคง่‰ๅŽŸไธๅฏ้ฟใ€‚
5
120
40 Advanced Pentesting & Red Team Tools โš”๏ธ 1.๐Ÿ‘๏ธ Nmap 2.โšก Masscan 3.๐Ÿ” Amass 4.๐ŸŽฏ Subfinder 5.๐Ÿ›ฐ๏ธ Assetfinder 6.๐Ÿ›ก๏ธ Nessus 7.๐ŸŸข OpenVAS 8.๐ŸŒ Nikto 9.โš›๏ธ Nuclei 10.๐Ÿ•ท๏ธ Wapiti 11.๐Ÿš€ Metasploit Framework 12.๐Ÿ“š SearchSploit 13.๐Ÿ’‰ SQLMap 14.๐Ÿ’ฅ ExploitDB 15.โš™๏ธ Commix 16.๐Ÿ”‘ Hashcat 17.๐Ÿช“ John the Ripper 18.๐Ÿ‰ Hydra 19.๐ŸŽฏ Medusa 20.๐Ÿ’€ CrackMapExec 21.๐ŸŒŽ Burp Suite 22.๐Ÿ›ก๏ธ OWASP ZAP 23.๐Ÿ“‚ Gobuster 24.๐Ÿ”Ž Dirsearch 25.โšก XSStrike 26.๐Ÿ“ถ Aircrack-ng 27.๐Ÿ“ก Kismet 28.๐Ÿ” Reaver 29.๐Ÿ“ฒ Wifite 30.๐Ÿ•ธ๏ธ Bettercap 31.๐Ÿง LinPEAS 32.๐ŸชŸ WinPEAS 33.โ˜ ๏ธ BeRoot 34.๐Ÿ” Watson 35.๐Ÿ“– GTFOBins 36.๐ŸŽญ Mimikatz 37.๐Ÿฉธ BloodHound 38.๐Ÿ‘‘ Empire 39.๐Ÿถ Pupy 40.๐Ÿ”Œ Netcat (NC) #CyberSecurity #Pentesting #RedTeam #EthicalHacking #InfoSec #BugBounty #SecurityTools #KaliLinux
12
55
1,443
40 Red Team & Pentesting Tools You Should Know In 2026 โ˜ ๏ธ๐Ÿ”ด 1.๐ŸŒ Nmap 2.โšก Masscan 3.๐Ÿ•ธ๏ธ Amass 4.๐Ÿ”Ž Subfinder 5.๐Ÿ“ก Assetfinder 6.๐Ÿ›ก๏ธ Nessus 7.๐Ÿงช OpenVAS 8.๐Ÿ•ท๏ธ Nikto 9.โš›๏ธ Nuclei 10.๐Ÿ” Wapiti 11.๐Ÿ’ฃ Metasploit Framework 12.๐Ÿ“š SearchSploit 13.๐Ÿ’‰ SQLMap 14.๐Ÿ“‚ ExploitDB 15.๐Ÿ’ป Commix 16.๐Ÿ” Hashcat 17.๐Ÿ—๏ธ John The Ripper 18.๐Ÿšช Hydra 19.๐Ÿ Medusa 20.๐Ÿ–ฅ๏ธ CrackMapExec 21.๐ŸŒ Burp Suite 22.โš”๏ธ OWASP ZAP 23.๐Ÿ“ Gobuster 24.๐Ÿ”ฆ Dirsearch 25.๐ŸŽฏ XSStrike 26.๐Ÿ“ถ Aircrack-ng 27.๐Ÿ“ก Kismet 28.๐Ÿ“ฒ Reaver 29.๐Ÿ“ก Wifite 30.๐Ÿ•ถ๏ธ Bettercap 31.๐Ÿง LinPEAS 32.๐ŸชŸ WinPEAS 33.๐Ÿ”“ BeRoot 34.๐Ÿง  Watson 35.โš™๏ธ GTFOBins 36.๐Ÿ‘ป Mimikatz 37.๐Ÿฉธ BloodHound 38.โ˜ ๏ธ Empire 39.๐Ÿ€ Pupy 40.๐Ÿ”Œ Netcat (nc) #CyberSecurity #EthicalHacking #Pentesting #RedTeam
21
96
6,610
โ˜ ๏ธโš”๏ธ 40 Advanced Red Team & Pentesting Tools Used In Real Assessments 1.๐ŸŒ Nmap 2.โšก Masscan 3.๐Ÿ•ธ๏ธ Amass 4.๐Ÿ”Ž Subfinder 5.๐Ÿ“ก Assetfinder 6.๐Ÿ›ก๏ธ Nessus 7.๐Ÿงช OpenVAS 8.๐Ÿ•ท๏ธ Nikto 9.โš›๏ธ Nuclei 10.๐Ÿ” Wapiti 11.๐Ÿ’ฃ Metasploit Framework 12.๐Ÿ“š SearchSploit 13.๐Ÿ’‰ SQLMap 14.๐Ÿ“‚ ExploitDB 15.๐Ÿ’ป Commix 16.๐Ÿ” Hashcat 17.๐Ÿ—๏ธ John The Ripper 18.๐Ÿšช Hydra 19.๐Ÿ Medusa 20.๐Ÿ–ฅ๏ธ CrackMapExec 21.๐ŸŒ Burp Suite 22.โš”๏ธ OWASP ZAP 23.๐Ÿ“ Gobuster 24.๐Ÿ”ฆ Dirsearch 25.๐ŸŽฏ XSStrike 26.๐Ÿ“ถ Aircrack-ng 27.๐Ÿ“ก Kismet 28.๐Ÿ“ฒ Reaver 29.๐Ÿ“ก Wifite 30.๐Ÿ•ถ๏ธ Bettercap 31.๐Ÿง LinPEAS 32.๐ŸชŸ WinPEAS 33.๐Ÿ”“ BeRoot 34.๐Ÿง  Watson 35.โš™๏ธ GTFOBins 36.๐Ÿ‘ป Mimikatz 37.๐Ÿฉธ BloodHound 38.โ˜ ๏ธ Empire 39.๐Ÿ€ Pupy 40.๐Ÿ”Œ Netcat (nc) #CyberSecurity #EthicalHacking #Pentesting #RedTeam
1
3
24
877
As for today, you can explore the open sections below, all in modular Linux #redteam vs #blueteam style: - Exfiltration via PAM_EXEC hook injected into the SSHD authentication stack - Lateral movement using a mutual TLS reverse SOCKS5 proxy tunnel, - Fileless discovery by streaming and executing LinPEAS directly over /dev/tcp, - Defense evasion by crafting a fake TLS ClientHello to evade Deep Packet Inspection - Process injection via ptrace and memory remapping targeting Rust SSL/TLS callback hooks - Privilege escalation exploiting CVE-2025-32463 โ€“ sudo chroot misconfiguration - Persistence via a Loadable Kernel Module rootkit using ftrace-based syscall hooking - Host-based runtime threat detection and alerting using Falco - Overview of the PurpleLabs cyber range network topology and lab environment - Introduction to the course structure, lab methodology, and purple team workflow - Visibility Events / Indexes / Data sources.
Publicly available lab sections/demos of Defensive Security's Linux Attack, Detection, and Forensics V2.0 - Hands-on Purple Teaming Playbook. Many people ask about the style and structure of the materials. I also share previews of sections from time to time; I thought it would be good to have all the open links in one place. Enjoy! github.com/cr0nx/linux-attacโ€ฆ
2
16
1,801
๐Ÿš€ ๐—ง๐—ผ๐—ฝ ๐—ฃ๐—ฒ๐—ป๐—ฒ๐˜๐—ฟ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—ง๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—ง๐—ผ๐—ผ๐—น๐˜€ ๐—ฌ๐—ผ๐˜‚ ๐— ๐˜‚๐˜€๐˜ ๐—ž๐—ป๐—ผ๐˜„ ๐—ถ๐—ป ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฒ ๐Ÿ” โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐Ÿ” RECON & ANALYSIS โ€ข Nmap โ€” Network scanning & mapping โ€ข Wireshark โ€” Packet analysis โ€ข WhatWeb โ€” Technology fingerprinting โ€ข Amass โ€” Asset discovery โ€ข Subfinder โ€” Subdomain enumeration โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐ŸŒ WEB & EXPLOITATION โ€ข Burp Suite โ€” Web security testing โ€ข OWASP ZAP โ€” Vulnerability scanner โ€ข SQLMap โ€” SQL injection testing โ€ข FFUF โ€” Web fuzzing โ€ข Nikto โ€” Web server scanning โ€ข Metasploit โ€” Exploitation framework โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐Ÿ” PASSWORD & WIRELESS โ€ข Hashcat โ€” Password cracking โ€ข John the Ripper โ€” Password auditing โ€ข Hydra โ€” Brute-force testing โ€ข Aircrack-ng โ€” WiFi security testing โ€ข Wifite โ€” Wireless auditing โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐Ÿ“ฑ MOBILE SECURITY โ€ข MobSF โ€” Mobile security testing โ€ข Frida โ€” Runtime analysis โ€ข Drozer โ€” Android security testing โ€ข APKTool โ€” APK reverse engineering โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” โšก POST-EXPLOITATION โ€ข LinPEAS โ€” Linux privilege escalation โ€ข WinPEAS โ€” Windows enumeration โ€ข PowerSploit โ€” Windows post-exploitation โ€ข Linux Exploit Suggester โ€” Privilege escalation checks โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” #CyberSecurity #Pentesting #EthicalHacking #InfoSec #BugBounty #OSINT
7
51
2,150
๐Ÿš€ New course: Linux Hardening Expert Launching May 2nd, 2026. Learn Linux hardening, privilege escalation, secure config, isolation, kernel protections, and tools like LinPEAS. 20% pre-launch discount until May 1st hacktricks-training.com/courโ€ฆ #Linux #LinPEAS #CyberSecurity
2
7
870
๐Ÿš€ ๐—ง๐—ผ๐—ฝ ๐—ฃ๐—ฒ๐—ป๐—ฒ๐˜๐—ฟ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—ง๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—ง๐—ผ๐—ผ๐—น๐˜€ ๐—ฌ๐—ผ๐˜‚ ๐— ๐˜‚๐˜€๐˜ ๐—ž๐—ป๐—ผ๐˜„ ๐—ถ๐—ป ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฒ ๐Ÿ” โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐Ÿ” RECON & ANALYSIS โ€ข Nmap โ€” Network scanning & mapping โ€ข Wireshark โ€” Packet analysis โ€ข WhatWeb โ€” Technology fingerprinting โ€ข Amass โ€” Asset discovery โ€ข Subfinder โ€” Subdomain enumeration โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐ŸŒ WEB & EXPLOITATION โ€ข Burp Suite โ€” Web security testing โ€ข OWASP ZAP โ€” Vulnerability scanner โ€ข SQLMap โ€” SQL injection testing โ€ข FFUF โ€” Web fuzzing โ€ข Nikto โ€” Web server scanning โ€ข Metasploit โ€” Exploitation framework โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐Ÿ” PASSWORD & WIRELESS โ€ข Hashcat โ€” Password cracking โ€ข John the Ripper โ€” Password auditing โ€ข Hydra โ€” Brute-force testing โ€ข Aircrack-ng โ€” WiFi security testing โ€ข Wifite โ€” Wireless auditing โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” ๐Ÿ“ฑ MOBILE SECURITY โ€ข MobSF โ€” Mobile security testing โ€ข Frida โ€” Runtime analysis โ€ข Drozer โ€” Android security testing โ€ข APKTool โ€” APK reverse engineering โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ” โšก POST-EXPLOITATION โ€ข LinPEAS โ€” Linux privilege escalation โ€ข WinPEAS โ€” Windows enumeration โ€ข PowerSploit โ€” Windows post-exploitation โ€ข Linux Exploit Suggester โ€” Privilege escalation checks #CyberSecurity #Pentesting #EthicalHacking #InfoSec #BugBounty #OSINT
3
41
185
7,598
I'm an idiot. I'm ssh'd into the victim machine. Need to look for a user's credentials. I'm manually looking into files one by one. Grepping here and there. Why the hell am I not running Linpeas to do the hard stuff for me?
1
2
84
Htop je glavni hakerski alatโ€ฆ moras da podelis shell u terminatoru na 4 dela, stavis metasploit, htop, wireshark i linpeas da vrti! Svi padaju na dupe!! :D
1
3
132
Mar 31
๐Ÿ’ก The Power of Post-Exploitation Enumeration After gaining initial access, many pentesters rush to escalate privileges. But the real gold is often found in thorough enumeration first. Use tools like Seatbelt, PowerUp, and LinPEAS to automatically gather system information, installed software, network connections, and user activity. Look for saved browser credentials, configuration files with passwords, and unattended installation files. XHack AI's autonomous pentest engine automates this entire post-exploitation enumeration phase, analyzing the compromised host and building a detailed attack path map for you. What's your favorite post-exploitation enumeration tool? xhack.io #pentesting #redteam #OSCP
2
61
Linux Privilege Escalation: Automated Script ๐Ÿ”ฅ Telegram: t.me/hackinarticles โœด Twitter: x.com/hackinarticles After gaining an initial foothold on a Linux machine, penetration testers use automated enumeration scripts to quickly identify misconfigurations, vulnerable packages, weak permissions, and other privilege escalation vectors. () ๐Ÿ“š Automated Privilege Escalation Tools Covered โšก LinPEAS ๐Ÿ”Ž LinEnum ๐Ÿฆˆ Bashark ๐Ÿ’ฅ Linux Exploit Suggester (LES) ๐Ÿง  LinuxPrivChecker ๐Ÿงฐ Metasploit: Local_Exploit_Suggester ๐Ÿ“ฆ Linux Private-i ๐Ÿ” Linux Smart Enumeration ๐Ÿš€ Linux Exploit Suggester 2 ๐Ÿ“– Article: hackingarticles.in/linux-priโ€ฆ #CyberSecurity #EthicalHacking #Pentesting #PrivilegeEscalation #RedTeam #InfoSec
12
46
2,545
LinPEAS/WinPEAS for Linux/Windows enumeration, and Enum4linux for SMB shares
2
101
๐—˜๐—น๐—ฒ๐˜ƒ๐—ฎ๐˜๐—ฒ ๐—ฌ๐—ผ๐˜‚๐—ฟ ๐—ฃ๐—ฟ๐—ถ๐˜ƒ๐—ถ๐—น๐—ฒ๐—ด๐—ฒ๐˜€! ๐Ÿ›ก๏ธ๐Ÿš€ The ultimate toolset for #Pentesting: ๐Ÿ”น ๐—Ÿ๐—ถ๐—ป๐—ฃ๐—˜๐—”๐—ฆ & ๐—ช๐—ถ๐—ป๐—ฃ๐—˜๐—”๐—ฆ ๐Ÿ”น Detect #CVEs & misconfigs ๐Ÿ”น Multi-OS support ๐Ÿ”น Color-coded results ๐Ÿ”— buff.ly/FaqOyy4 #Infosec #RedTeam
2
5
525
CyberStrikeAI - github.com/Ed1s0nZ/CyberStriโ€ฆ CyberStrikeAI is an AI-native security testing platform built in Go. It integrates 100 security tools, an intelligent orchestration engine, role-based testing with predefined security roles, a skills system with specialized testing skills, and comprehensive lifecycle management capabilities. CyberStrikeAI ships with 100 curated tools covering the whole kill chain: โ€ขNetwork Scanners โ€“ nmap, masscan, rustscan, arp-scan, nbtscan โ€ขWeb & App Scanners โ€“ sqlmap, nikto, dirb, gobuster, feroxbuster, ffuf, httpx โ€ขVulnerability Scanners โ€“ nuclei, wpscan, wafw00f, dalfox, xsser โ€ขSubdomain Enumeration โ€“ subfinder, amass, findomain, dnsenum, fierce โ€ขNetwork Space Search Engines โ€“ fofa_search, zoomeye_search โ€ขAPI Security โ€“ graphql-scanner, arjun, api-fuzzer, api-schema-analyzer โ€ขContainer Security โ€“ trivy, clair, docker-bench-security, kube-bench, kube-hunter โ€ขCloud Security โ€“ prowler, scout-suite, cloudmapper, pacu, terrascan, checkov โ€ขBinary Analysis โ€“ gdb, radare2, ghidra, objdump, strings, binwalk โ€ขExploitation โ€“ metasploit, msfvenom, pwntools, ropper, ropgadge โ€ขPassword Cracking โ€“ hashcat, john, hashpump โ€ขForensics โ€“ volatility, volatility3, foremost, steghide, exiftool โ€ขPost-Exploitation โ€“ linpeas, winpeas, mimikatz, bloodhound, impacket, responder โ€ขCTF Utilities โ€“ stegsolve, zsteg, hash-identifier, fcrackzip, pdfcrack, cyberchef โ€ขSystem Helpers โ€“ exec, create-file, delete-file, list-files, modify-file
1
32
118
5,625