diff --git a/README.md b/README.md index c951a54..a7252bc 100644 --- a/README.md +++ b/README.md @@ -1,30 +1,27 @@ -### All in One Hacking tool For HackersπŸ₯‡ +### All in One Hacking tool For Hackers ![](https://img.shields.io/github/license/Z4nzu/hackingtool) ![](https://img.shields.io/github/issues/Z4nzu/hackingtool) ![](https://img.shields.io/github/issues-closed/Z4nzu/hackingtool) -![](https://img.shields.io/badge/Python-3-blue) +![](https://img.shields.io/badge/Python-3.10+-blue) +![](https://img.shields.io/badge/version-2.0.0-green) ![](https://img.shields.io/github/forks/Z4nzu/hackingtool) ![](https://img.shields.io/github/stars/Z4nzu/hackingtool) ![](https://img.shields.io/github/last-commit/Z4nzu/hackingtool) -[![HitCount](http://hits.dwyl.com/Z4nzu/hackingtool.svg)](http://hits.dwyl.com/Z4nzu/hackingtool) -![](https://img.shields.io/badge/platform-Linux%20%7C%20KaliLinux%20%7C%20ParrotOs-blue) +![](https://img.shields.io/badge/platform-Linux%20%7C%20KaliLinux%20%7C%20ParrotOs%20%7C%20macOS-blue) -#### Install Kali Linux in WIndows10 Without VirtualBox [YOUTUBE](https://youtu.be/BsFhpIDcd9I) or use Docker +## What's new in v2.0.0 +- Python 3.10+ required β€” all Python 2 code removed +- OS-aware menus β€” Linux-only tools are hidden automatically on macOS +- Archived tools (Python 2, unmaintained) shown in a separate sub-menu +- All `os.chdir()` bugs fixed β€” tools install to `~/.hackingtool/tools/` +- No more `sudo git clone` β€” tools install to user home, no root needed +- 22 new modern tools added across 6 categories +- Rich terminal UI with shared theme β€” no more 32 different console instances +- Iterative menus β€” no more recursion stack overflow on deep navigation +- Docker image builds locally β€” no unverified external images +- requirements.txt cleaned β€” removed unused flask/boxes/lolcat/requests -## Update Available V1.2.0 πŸš€ -- [βœ”] Installation Bug Fixed -- [x] Added New Tools - - [x] Reverse Engineering - - [x] RAT Tools - - [x] Web Crawling - - [x] Payload Injector -- [x] Multitor Tools update -- [X] Added Tool in wifijamming -- [X] Added Tool in steganography - - - -# Hackingtool Menu 🧰 +# Hackingtool Menu - [Anonymously Hiding Tools](#anonymously-hiding-tools) - [Information gathering tools](#information-gathering-tools) - [Wordlist Generator](#wordlist-generator) @@ -38,9 +35,9 @@ - [Exploit framework](#exploit-framework) - [Reverse engineering tools](#reverse-engineering-tools) - [DDOS Attack Tools](#ddos-attack-tools) -- [Remote Administrator Tools (RAT)](#remote-administrator-tools--rat-) +- [Remote Administrator Tools (RAT)](#remote-administrator-tools-rat) - [XSS Attack Tools](#xss-attack-tools) -- [Steganograhy tools](#steganograhy-tools) +- [Steganography tools](#steganography-tools) - [Other tools](#other-tools) - [SocialMedia Bruteforce](#socialmedia-bruteforce) - [Android Hacking tools](#android-hacking-tools) @@ -55,30 +52,42 @@ ### Anonymously Hiding Tools -- [Anonmously Surf](https://github.com/Und3rf10w/kali-anonsurf) +- [Anonymously Surf](https://github.com/Und3rf10w/kali-anonsurf) - [Multitor](https://github.com/trimstray/multitor) + ### Information gathering tools - [Network Map (nmap)](https://github.com/nmap/nmap) - [Dracnmap](https://github.com/Screetsec/Dracnmap) - Port scanning -- Host to IP +- Host to IP - [Xerosploit](https://github.com/LionSec/xerosploit) - [RED HAWK (All In One Scanning)](https://github.com/Tuhinshubhra/RED_HAWK) -- [ReconSpider(For All Scanning)](https://github.com/bhavsec/reconspider) +- [ReconSpider](https://github.com/bhavsec/reconspider) - IsItDown (Check Website Down/Up) - [Infoga - Email OSINT](https://github.com/m4ll0k/Infoga) - [ReconDog](https://github.com/s0md3v/ReconDog) - [Striker](https://github.com/s0md3v/Striker) -- [SecretFinder (like API & etc)](https://github.com/m4ll0k/SecretFinder) +- [SecretFinder (API keys, tokens)](https://github.com/m4ll0k/SecretFinder) - [Find Info Using Shodan](https://github.com/m4ll0k/Shodanfy.py) -- [Port Scanner - rang3r (Python 2.7)](https://github.com/floriankunushevci/rang3r) -- [Port Scanner - Ranger Reloaded (Python 3+)](https://github.com/joeyagreco/ranger-reloaded) +- [Port Scanner - rang3r](https://github.com/floriankunushevci/rang3r) - [Breacher](https://github.com/s0md3v/Breacher) +- [theHarvester](https://github.com/laramies/theHarvester) β˜… new +- [Amass](https://github.com/owasp-amass/amass) β˜… new +- [Masscan](https://github.com/robertdavidgraham/masscan) β˜… new +- [RustScan](https://github.com/RustScan/RustScan) β˜… new +- [Holehe](https://github.com/megadose/holehe) β˜… new +- [Maigret](https://github.com/soxoj/maigret) β˜… new +- [httpx](https://github.com/projectdiscovery/httpx) β˜… new + ### Wordlist Generator -- [Cupp](https://github.com/Mebus/cupp.git) +- [Cupp](https://github.com/Mebus/cupp) - [WordlistCreator](https://github.com/Z4nzu/wlcreator) -- [Goblin WordGenerator](https://github.com/UndeadSec/GoblinWordGenerator.git) -- [Password list (1.4 Billion Clear Text Password)](https://github.com/Viralmaniar/SMWYG-Show-Me-What-You-Got) +- [Goblin WordGenerator](https://github.com/UndeadSec/GoblinWordGenerator) +- [Password list (1.4B Passwords)](https://github.com/Viralmaniar/SMWYG-Show-Me-What-You-Got) +- [Hashcat](https://github.com/hashcat/hashcat) β˜… new +- [John the Ripper](https://github.com/openwall/john) β˜… new +- [haiti (Hash Identifier)](https://github.com/noraj/haiti) β˜… new + ### Wireless attack tools - [WiFi-Pumpkin](https://github.com/P0cL4bs/wifipumpkin3) - [pixiewps](https://github.com/wiire/pixiewps) @@ -89,42 +98,66 @@ - [EvilTwin](https://github.com/Z4nzu/fakeap) - [Fastssh](https://github.com/Z4nzu/fastssh) - Howmanypeople +- [Airgeddon](https://github.com/v1s1t0r1sh3r3/airgeddon) β˜… new +- [hcxdumptool](https://github.com/ZerBea/hcxdumptool) β˜… new +- [hcxtools](https://github.com/ZerBea/hcxtools) β˜… new + ### SQL Injection Tools -- [Sqlmap tool](https://github.com/sqlmapproject/sqlmap) +- [Sqlmap](https://github.com/sqlmapproject/sqlmap) - [NoSqlMap](https://github.com/codingo/NoSQLMap) - [Damn Small SQLi Scanner](https://github.com/stamparm/DSSS) - [Explo](https://github.com/dtag-dev-sec/explo) -- [Blisqy - Exploit Time-based blind-SQL injection](https://github.com/JohnTroony/Blisqy) -- [Leviathan - Wide Range Mass Audit Toolkit](https://github.com/leviathan-framework/leviathan) +- [Blisqy - Time-based blind SQLi](https://github.com/JohnTroony/Blisqy) +- [Leviathan - Wide Range Mass Audit](https://github.com/leviathan-framework/leviathan) - [SQLScan](https://github.com/Cvar1984/sqlscan) + ### Phishing attack tools +- [Autophisher](https://github.com/CodingRanjith/autophisher) +- [PyPhisher](https://github.com/KasRoudra/PyPhisher) +- [AdvPhishing](https://github.com/Ignitetch/AdvPhishing) - [Setoolkit](https://github.com/trustedsec/social-engineer-toolkit) - [SocialFish](https://github.com/UndeadSec/SocialFish) -- [HiddenEye](https://github.com/DarkSecDevelopers/HiddenEye) -- [Evilginx2](https://github.com/kgretzky/evilginx2) -- [I-See_You(Get Location using phishing attack)](https://github.com/Viralmaniar/I-See-You) -- [SayCheese (Grab target's Webcam Shots)](https://github.com/hangetzzu/saycheese) +- [HiddenEye](https://github.com/Morsmalleo/HiddenEye) +- [Evilginx3](https://github.com/kgretzky/evilginx2) +- [I-See-You (Location via phishing)](https://github.com/Viralmaniar/I-See-You) +- [SayCheese (Webcam grab)](https://github.com/hangetzzu/saycheese) - [QR Code Jacking](https://github.com/cryptedwolf/ohmyqr) +- [BlackEye](https://github.com/thelinuxchoice/blackeye) - [ShellPhish](https://github.com/An0nUD4Y/shellphish) +- [Thanos](https://github.com/TridevReddy/Thanos) +- [QRLJacking](https://github.com/OWASP/QRLJacking) +- [Maskphish](https://github.com/jaykali/maskphish) - [BlackPhish](https://github.com/iinc0gnit0/BlackPhish) +- [dnstwist](https://github.com/elceef/dnstwist) + ### Web Attack tools - [Web2Attack](https://github.com/santatic/web2attack) - Skipfish -- [SubDomain Finder](https://github.com/aboul3la/Sublist3r) +- [SubDomain Finder (Sublist3r)](https://github.com/aboul3la/Sublist3r) - [CheckURL](https://github.com/UndeadSec/checkURL) -- [Blazy(Also Find ClickJacking)](https://github.com/UltimateHackers/Blazy) - [Sub-Domain TakeOver](https://github.com/edoardottt/takeover) - [Dirb](https://gitlab.com/kalilinux/packages/dirb) +- [Nuclei](https://github.com/projectdiscovery/nuclei) β˜… new +- [ffuf](https://github.com/ffuf/ffuf) β˜… new +- [Feroxbuster](https://github.com/epi052/feroxbuster) β˜… new +- [Nikto](https://github.com/sullo/nikto) β˜… new +- [wafw00f](https://github.com/EnableSecurity/wafw00f) β˜… new +- [Katana](https://github.com/projectdiscovery/katana) β˜… new + ### Post exploitation tools - [Vegile - Ghost In The Shell](https://github.com/Screetsec/Vegile) - [Chrome Keylogger](https://github.com/UndeadSec/HeraKeylogger) +- [pwncat-cs](https://github.com/calebstewart/pwncat) β˜… new + ### Forensic tools - Autopsy - Wireshark - [Bulk extractor](https://github.com/simsong/bulk_extractor) -- [Disk Clone and ISO Image Acquire](https://guymager.sourceforge.io/) +- [Disk Clone / Image Acquire (Guymager)](https://guymager.sourceforge.io/) - [Toolsley](https://www.toolsley.com/) -- [Volatility3](https://github.com/volatilityfoundation/volatility3/) +- [Volatility 3](https://github.com/volatilityfoundation/volatility3) β˜… new +- [Binwalk](https://github.com/ReFirmLabs/binwalk) β˜… new + ### Payload creation tools - [The FatRat](https://github.com/Screetsec/TheFatRat) - [Brutal](https://github.com/Screetsec/Brutal) @@ -134,163 +167,137 @@ - [Spycam](https://github.com/indexnotfound404/spycam) - [Mob-Droid](https://github.com/kinghacker0/Mob-Droid) - [Enigma](https://github.com/UndeadSec/Enigma) + ### Exploit framework - [RouterSploit](https://github.com/threat9/routersploit) -- [WebSploit](https://github.com/The404Hacking/websploit ) +- [WebSploit](https://github.com/The404Hacking/websploit) - [Commix](https://github.com/commixproject/commix) - [Web2Attack](https://github.com/santatic/web2attack) + ### Reverse engineering tools -- [Androguard](https://github.com/androguard/androguard ) -- [Apk2Gold](https://github.com/lxdvs/apk2gold ) +- [Androguard](https://github.com/androguard/androguard) +- [Apk2Gold](https://github.com/lxdvs/apk2gold) - [JadX](https://github.com/skylot/jadx) + ### DDOS Attack Tools -- SlowLoris -- [Asyncrone | Multifunction SYN Flood DDoS Weapon](https://github.com/fatihsnsy/aSYNcrone) +- [DDoS Script (36+ methods)](https://github.com/the-deepnet/ddos) +- [SlowLoris](https://github.com/gkbrk/slowloris) +- [Asyncrone | SYN Flood DDoS](https://github.com/fatihsnsy/aSYNcrone) - [UFOnet](https://github.com/epsylon/ufonet) - [GoldenEye](https://github.com/jseidl/GoldenEye) +- [SaphyraDDoS](https://github.com/anonymous24x7/Saphyra-DDoS) + ### Remote Administrator Tools (RAT) -- [Stitch](https://github.com/nathanlopez/Stitch) - [Pyshell](https://github.com/knassar702/pyshell) + ### XSS Attack Tools -- [DalFox(Finder of XSS)](https://github.com/hahwul/dalfox) -- [XSS Payload Generator](https://github.com/capture0x/XSS-LOADER.git) -- [Extended XSS Searcher and Finder](https://github.com/Damian89/extended-xss-search) +- [DalFox](https://github.com/hahwul/dalfox) +- [XSS Payload Generator](https://github.com/capture0x/XSS-LOADER) +- [Extended XSS Searcher](https://github.com/Damian89/extended-xss-search) - [XSS-Freak](https://github.com/PR0PH3CY33/XSS-Freak) - [XSpear](https://github.com/hahwul/XSpear) - [XSSCon](https://github.com/menkrep1337/XSSCon) - [XanXSS](https://github.com/Ekultek/XanXSS) -- [Advanced XSS Detection Suite](https://github.com/UltimateHackers/XSStrike) +- [XSStrike](https://github.com/UltimateHackers/XSStrike) - [RVuln](https://github.com/iinc0gnit0/RVuln) -- [Cyclops](https://github.com/v8blink/Chromium-based-XSS-Taint-Tracking) -### Steganograhy tools + +### Steganography tools - SteganoHide -- StegnoCracker - [StegoCracker](https://github.com/W1LDN16H7/StegoCracker) - [Whitespace](https://github.com/beardog108/snow10) + ### Other tools #### SocialMedia Bruteforce -- [Instagram Attack](https://github.com/chinoogawa/instaBrute) - [AllinOne SocialMedia Attack](https://github.com/Matrix07ksa/Brute_Force) - [Facebook Attack](https://github.com/Matrix07ksa/Brute_Force) - [Application Checker](https://github.com/jakuta-tech/underhanded) + #### Android Hacking tools - [Keydroid](https://github.com/F4dl0/keydroid) - [MySMS](https://github.com/papusingh2sms/mysms) -- [Lockphish (Grab target LOCK PIN)](https://github.com/JasonJerry/lockphish) -- [DroidCam (Capture Image)](https://github.com/kinghacker0/WishFish) -- [EvilApp (Hijack Session)](https://github.com/crypticterminal/EvilApp) -- [HatCloud(Bypass CloudFlare for IP)](https://github.com/HatBashBR/HatCloud) +- [Lockphish](https://github.com/JasonJerry/lockphish) +- [DroidCam / WishFish](https://github.com/kinghacker0/WishFish) +- [EvilApp](https://github.com/crypticterminal/EvilApp) + #### IDN Homograph Attack - [EvilURL](https://github.com/UndeadSec/EvilURL) + #### Email Verify tools - [Knockmail](https://github.com/4w4k3/KnockMail) + #### Hash cracking tools - [Hash Buster](https://github.com/s0md3v/Hash-Buster) + #### Wifi Deauthenticate - [WifiJammer-NG](https://github.com/MisterBianco/wifijammer-ng) - [KawaiiDeauther](https://github.com/aryanrtm/KawaiiDeauther) + #### SocialMedia Finder -- [Find SocialMedia By Facial Recognation System](https://github.com/Greenwolf/social_mapper) +- [Find SocialMedia By Facial Recognition](https://github.com/Greenwolf/social_mapper) - [Find SocialMedia By UserName](https://github.com/xHak9x/finduser) - [Sherlock](https://github.com/sherlock-project/sherlock) -- [SocialScan | Username or Email](https://github.com/iojw/socialscan) +- [SocialScan](https://github.com/iojw/socialscan) + #### Payload Injector - [Debinject](https://github.com/UndeadSec/Debinject) - [Pixload](https://github.com/chinarulezzz/pixload) + #### Web crawling - [Gospider](https://github.com/jaeles-project/gospider) + #### Mix tools -- Terminal Multiplexer +- Terminal Multiplexer (tilix) - [Crivo](https://github.com/GMDSantana/crivo) -![](https://github.com/Z4nzu/hackingtool/blob/master/images/A.png) -![](https://github.com/Z4nzu/hackingtool/blob/master/images/AA.png) -![](https://github.com/Z4nzu/hackingtool/blob/master/images/AAA.png) -![](https://github.com/Z4nzu/hackingtool/blob/master/images/AAAA.png) -![](https://github.com/Z4nzu/hackingtool/blob/master/images/AAAAA.png) +## Installation -## Installation For Linux linux

- - -### !! RUN HACKINGTOOL AS ROOT !! - - -## Steps are given below : - - -## Step : 1 Download hackingtool - - git clone https://github.com/Z4nzu/hackingtool.git - -## Step : 2 Give Permission to hackingtool - - chmod -R 755 hackingtool - -## Step : 3 Move to hackingtool directory - - cd hackingtool - -## Step : 4 Run hackingtool - - sudo python install.py - -## Step : 5 For installing tools in directory - - sudo hackingtool - - -## Use image with Docker - -### Create Docker Image -- Create the docker image +**Requires Python 3.10+** ```bash -docker buitl -t vgpastor/hackingtool . +git clone https://github.com/Z4nzu/hackingtool.git +cd hackingtool +chmod -R 755 . +sudo python3 install.py ``` -### Run as container +Then run: +```bash +sudo hackingtool +``` + +## Docker ```bash +# Build image +docker build -t hackingtool . + +# Run docker-compose up -d -``` -### Interact with terminal - -- Get into the container -```bash +# Interact docker exec -it hackingtool bash ``` -**OUTPUT:** + +## Requirements + +- Python 3.10+ +- Linux (Kali, Parrot, Ubuntu) or macOS +- Go 1.21+ (for nuclei, ffuf, amass, httpx, katana, dalfox) +- Ruby (for haiti) + +Install Python deps: ```bash -Select Best Option : - - [1] Kali Linux / Parrot-Os (apt) - [2] Arch Linux (pacman) - [0] Exit +pip install -r requirements.txt ``` -Enter the options and continue. - -- If need open other ports you can edit the docker-compose.yml file -- Volumes are mounted in the container to persist data and can share files between the host and the container -#### Thanks to original Author of the tools used in hackingtool +#### Thanks to all original authors of the tools used in hackingtool - -

Please Don't Use for illegal Activity

+**Please don't use for illegal activity.** -### To do -- [ ] Release Tool -- [ ] Add Tools for CTF -- [ ] Want to do automatic - -## Social Media :mailbox_with_no_mail: -[![Twitter](https://img.shields.io/twitter/url?color=%231DA1F2&label=follow&logo=twitter&logoColor=%231DA1F2&style=flat-square&url=https%3A%2F%2Fwww.reddit.com%2Fuser%2FFatChicken277)](https://twitter.com/_Zinzu07) +## Social Media +[![Twitter](https://img.shields.io/twitter/url?color=%231DA1F2&label=follow&logo=twitter&logoColor=%231DA1F2&style=flat-square&url=https%3A%2F%2Ftwitter.com%2F_Zinzu07)](https://twitter.com/_Zinzu07) [![GitHub](https://img.shields.io/badge/-GitHub-181717?style=flat-square&logo=github&link=https://github.com/Z4nzu/)](https://github.com/Z4nzu/) -##### Your Favourite Tool is not in hackingtool or Suggestions Please [CLICK HERE](https://forms.gle/b235JoCKyUq5iM3t8) -![Z4nzu's github stats](https://github-readme-stats.vercel.app/api?username=Z4nzu&show_icons=true&title_color=fff&icon_color=79ff97&text_color=9f9f9f&bg_color=151515) -#### Don't Forgot to share with Your Friends -### The new Update get will soon stay updated -#### Thank you..!! +##### Your favourite tool is not listed? [Suggest it here](https://forms.gle/b235JoCKyUq5iM3t8)