PRESENTATION
of Ethical Hacking
Tools
Presentating
Some CEH Tools
Aaditya Saxena
2023
What is F-Droid?
F-Droid is an installable catalogue of FOSS
(Free and Open Source Software)
applications for the Android platform. The
client makes it easy to browse, install, and
keep track of updates on your device.
https://f-droid.org/en/
2
NSLOOKUP
Sudo apt install dnsutils
 Nslookup will shoe you website IP Mac address and
other info.
3
apt install dnsutils
Scans That You
Can Perform Using
RED HAWK :
https://github.com/Tuhinshubhra/
RED_HAWK
 Basic Scan
 Site Title NEW
 IP Address
 Web Server Detection IMPROVED
 CMS Detection
 Cloudflare Detection
 robots.txt Scanner
 Whois Lookup IMPROVED
 Geo-IP Lookup
 Grab Banners IMPROVED
 DNS Lookup
 Subnet Calculator
4
•Cloudflare Detection
•robots.txt Scanner
•Whois Lookup IMPROVED
•Geo-IP Lookup
•Grab Banners IMPROVED
•DNS Lookup
•Subnet Calculator
GoldenEye
GoldenEye is a Python 3 app for SECURITY TESTING PURPOSES ONLY!
GoldenEye is an HTTP DoS Test Tool.
https://github.com/jseidl/GoldenEye
5
nikto
Nikto web server
scanner
https://github.com/sullo
/nikto
6
sqlmap
sqlmap is an open source
penetration testing tool that
automates the process of
detecting and exploiting SQL
injection flaws and taking over of
database servers. It comes with a
powerful detection engine, many
niche features for the ultimate
penetration tester, and a broad
range of switches including
database fingerprinting, over data
fetching from the database,
accessing the underlying file
system, and executing
commands on the operating
system via out-of-band
connections
.
https://github.com/sqlmapproject/
sqlmap 7
8
Nmap
vulners
Its work is pretty simple:
* work only when some software version is
identified for an open port
* take all the known CPEs for that software
(from the standard nmap -sV output)
* make a request to a remote server
(vulners.com API) to learn whether any
known vulns exist for that CPE
* if no info is found this way, try to get it
using the software name alone
* print the obtained info out
https://raw.githubusercontent.com/vulnersC
om/nmap-vulners/master/vulners.nse
https://github.com/vulnersCom/nmap-
vulners
https://geekflare.com/nmap-vulnerability-
scan/
9
About
Infoooze
nfoooze is a powerful and
user-friendly OSINT (Open-
Source Intelligence) tool
that allows you to quickly
and easily gather
information about a specific
target. With Infoooze, you
can easily search for
information about websites,
IP addresses, usernames,
and more, all from the
convenience of a simple
command-line interface.
https://github.com/devXprit
e/infoooze
10
Anony-
scanner
Anony-Scanner -
Pentest the web
https://github.com/Ano
nynusman/Anony-
scanner
11
Fsociety
A Penetration Testing
Framework, you will
have every script that a
hacker needs. Works
with Python 2. For a
Python 3 version see
our updated version at
fsociety-team/fsociety
https://github.com/Manis
so/fsociety
12
Knock
Knockpy is a portable
and modular python3
tool designed to quickly
enumerate
subdomains on a
target domain through
passive
reconnaissance and
dictionary scan.
https://github.com/guelf
oweb/knock
13
CamHac
ker
CamHacker is a phishing
tool. It will generate a link.
If anyone opens the link
and permits camera
access, his/her photo will
be captured and sent to
you!
https://github.com/KasRou
dra/CamHackern
14
PyPhishe
r
Ultimate phishing tool
in python. Includes
popular websites like
facebook, twitter,
instagram, github,
reddit, gmail and many
others. Use other tools
also
https://github.com/KasRoudra/PyPhisher
git clone https://github.com/capture0x/XSS-LOADER/
cd XSS-LOADER
chmd +x *
sudo pip3 install -r requirements.txt
python3 payloader.py –h
https://www.httrack.com/
THANK
YOU!
Alexander
Martensson
Phone
678-555-0128
Email
martensson@example.com

PRESENTATION of CEH Tools.pptx

  • 1.
  • 2.
    What is F-Droid? F-Droidis an installable catalogue of FOSS (Free and Open Source Software) applications for the Android platform. The client makes it easy to browse, install, and keep track of updates on your device. https://f-droid.org/en/ 2
  • 3.
    NSLOOKUP Sudo apt installdnsutils  Nslookup will shoe you website IP Mac address and other info. 3 apt install dnsutils
  • 4.
    Scans That You CanPerform Using RED HAWK : https://github.com/Tuhinshubhra/ RED_HAWK  Basic Scan  Site Title NEW  IP Address  Web Server Detection IMPROVED  CMS Detection  Cloudflare Detection  robots.txt Scanner  Whois Lookup IMPROVED  Geo-IP Lookup  Grab Banners IMPROVED  DNS Lookup  Subnet Calculator 4 •Cloudflare Detection •robots.txt Scanner •Whois Lookup IMPROVED •Geo-IP Lookup •Grab Banners IMPROVED •DNS Lookup •Subnet Calculator
  • 5.
    GoldenEye GoldenEye is aPython 3 app for SECURITY TESTING PURPOSES ONLY! GoldenEye is an HTTP DoS Test Tool. https://github.com/jseidl/GoldenEye 5
  • 6.
  • 7.
    sqlmap sqlmap is anopen source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a powerful detection engine, many niche features for the ultimate penetration tester, and a broad range of switches including database fingerprinting, over data fetching from the database, accessing the underlying file system, and executing commands on the operating system via out-of-band connections . https://github.com/sqlmapproject/ sqlmap 7
  • 8.
    8 Nmap vulners Its work ispretty simple: * work only when some software version is identified for an open port * take all the known CPEs for that software (from the standard nmap -sV output) * make a request to a remote server (vulners.com API) to learn whether any known vulns exist for that CPE * if no info is found this way, try to get it using the software name alone * print the obtained info out https://raw.githubusercontent.com/vulnersC om/nmap-vulners/master/vulners.nse https://github.com/vulnersCom/nmap- vulners https://geekflare.com/nmap-vulnerability- scan/
  • 9.
    9 About Infoooze nfoooze is apowerful and user-friendly OSINT (Open- Source Intelligence) tool that allows you to quickly and easily gather information about a specific target. With Infoooze, you can easily search for information about websites, IP addresses, usernames, and more, all from the convenience of a simple command-line interface. https://github.com/devXprit e/infoooze
  • 10.
    10 Anony- scanner Anony-Scanner - Pentest theweb https://github.com/Ano nynusman/Anony- scanner
  • 11.
    11 Fsociety A Penetration Testing Framework,you will have every script that a hacker needs. Works with Python 2. For a Python 3 version see our updated version at fsociety-team/fsociety https://github.com/Manis so/fsociety
  • 12.
    12 Knock Knockpy is aportable and modular python3 tool designed to quickly enumerate subdomains on a target domain through passive reconnaissance and dictionary scan. https://github.com/guelf oweb/knock
  • 13.
    13 CamHac ker CamHacker is aphishing tool. It will generate a link. If anyone opens the link and permits camera access, his/her photo will be captured and sent to you! https://github.com/KasRou dra/CamHackern
  • 14.
    14 PyPhishe r Ultimate phishing tool inpython. Includes popular websites like facebook, twitter, instagram, github, reddit, gmail and many others. Use other tools also https://github.com/KasRoudra/PyPhisher git clone https://github.com/capture0x/XSS-LOADER/ cd XSS-LOADER chmd +x * sudo pip3 install -r requirements.txt python3 payloader.py –h https://www.httrack.com/
  • 15.