Skip to content

Pentesting Toolset

This is a list of our toolset that we recommend for running pentests. You know or you want to know something else? Ask us!

Helper Tools

For thisWe use
Pentest ReportingSysReptor
ScreenshotsFlameshot
Note TakingSysReptor
DiagramsExcalidraw (also available in SysReptor)

Pentests in General

For thisWe use
Encoding/DecodingCyberChef (also available in SysReptor)
Data Leak LookupSysLeaks, Kaduu, HIBP
PW Crackinghashcat, Hashtopolis
PW ListsSysLeaks, Weakpass
Open TCP Portsportquiz

Web Tests

For thisWe use
Web App TestingBurp Professional
Directory and File Searchdirsearch, gobuster
Web Spider and Endpoint Detectionkatana
Web Vuln ScannerBurp Professional, nuclei
SSL Inspectionsslyze, tls-scanner
SQLi Exploitationsqlmap
Cookie Crackingcookiemonster
JWT Tamperingjwt_tool
Secret DiscoveryTruffleHog

Burp Plugins

For thisWe use
Authorization TestingAuth Analyzer, Autorize
JWT TestingJSON Web Tokens, JWT Editor
SAML TestingSAML Raider
Endpoint Detection via JSJS Link Finder
Additional Vuln ScansActive Scan++, Upload Scanner
HTTP Request SmugglingHTTP Request Smuggler
ViewState EditingViewState Editor
Java Platform ScannerJ2EEScan
Pingback ErkennungCollaborator Everywhere
sqlmap IntegrationSQLiPy Sqlmap Integration
IP Restriction BypassIP Rotate
WAF Bypassnowafpls

Active Directory & Windows Tests

We provide some of the following tools precompiled at GitHub.

For thisWe use
AD EnumerationBloodHound, ADRecon, NetExec
AD CS ExploitationCertify, Certipy
AD QueriesPowerView, SeatBelt
AD AnalysisPingCastle, PurpleKnight
DNS Dumpadidnsdump
Windows Password Extractionmimikatz, lsassy, pypykatz
Local Credential ExtractionLaZagne
Powershell RunspaceStracciatella
MachineAccountQuota/DNS ExploitationPowermad
Kerberos InteractionsRubeus, Kerbrute
Network Protocol AttacksImpacket, Responder, Inveigh
Local PrivescSharpUp, WinPEAS, LinPEAS, Crassus
Local Process MonitoringProcess Monitor
SCCM Credential GatheringSharpSCCM
RDP MitMpyrdp
Shadow Credential ExploitationWhisker
WSUS AbuseSharpWSUS
Entra ID AuthenticationsROADtools
SMB Share AuditSnaffler