Tools Flashcards
WHOIS
a query and response protocol used for querying databases that store registered users or assignees of an internet resource
Nslookup
Command-line tool for querying DNS to obtain mapping between domain names and IP addresses
Fingerprinting Organizations with Collected Archives (FOCA)
Used to find metadata and hidden information in collected documents from an organization
theHarvester
Program for gathering emails, subdomains, hosts, employee names, PGP key entries, open ports and service banners from servers
Shodan
Website search engine for web cameras, routers, servers and other devices that considered part of the Internet of Things
Maltego
Commercial software for conducting OSINT that visually helps connect those relationships
Recon-ng
Cross platform web reconnaissance framework that uses a system of modules to add additional features and functions for your use
Censys
Website search engine used for finding hosts and networks across the internet with data and their configuration
Nikto
Web vulnerability scanner that is used to assess custom web applications that a company may have coded themselves
OpenVAS
Open source vulnerability scanner that is used to identify vulnerabilities and assign a risk rating for those targeted assets
Nessus
A proprietary vulnerability scanner that is used to conduct basic, advanced and compliance vulnerability scans to measure the effectiveness of the systems security controls
SQLmap
An open-source database scanner that searches for SQL injection vulnerabilities that can be exploited
Open SCAP (Security Content Automation Protocol)
A tool created by NIST that is used to create a predetermined security baseline to determine vulnerabilities or deviations in a system
Wapiti
Web Application vulnerability scanner which will automatically navigate a web app looking for areas where it can inject data to target different vulnerabilities
WPScan
A WordPress site vulnerability scanner that identifies the plugins used by the website against a database of known vulnerabilities
Brakeman
Static code analysis security tool that is used to identify vulnerabilities in applications written in Ruby on Rails
ScoutSuite
Open-source tool written in Python that can be used to audit instances and policies created on multicloud platforms by collecting data using API calls
Wireshark
An open-source protocol analysis tool that can conduct packet sniffing, decoding, and analysis
Tcpdump
A command-line protocol analysis tool that cna conduct packet sniffing, decoding, and analysis
Hping
An open-source packet crafting tool used to exploit vulnerable firewalls and IDS/IPS
Aircrack-ng
Open-source wireless exploitation tool kit consisting of airomon-ng, airodump-ng, aireplay-ng, and airocrack-ng
Airomon-NG
User to monitor wireless frequencies to identify access points and clients
Airodump-NG
Used to capture network traffic and save it to a PCAP file
Airocrack-NG
Used to conduct protocol and password cracking of wireless encryption