The document proposes a developed tool matrix to enhance the penetration testing methodology. The matrix classifies over 2000 penetration testing tools into a database with six columns: tool ID, name, features, testing phase (discovery, enumeration, vulnerability mapping, or exploitation), URL, and operating system. This provides a baseline of appropriate tools for each testing phase and eliminates the need to rely on a pen-tester's experience to select tools. It reduces the time spent searching for up-to-date and accurate tools to use in virtual environments before executing them on real systems. The matrix is intended to address limitations in the standard OSSTMM methodology related to tool selection.