⚠️ FOR AUTHORIZED SECURITY TESTING ONLY — USE RESPONSIBLY AND ETHICALLY
🔗 GitHub
// VAPT TOOLS REFERENCE

TOOLS & COMMANDS

Every tool a pentester needs — real commands, flag breakdowns, install instructions, and use-case context. Built by BinaryShield.

30+
Tools
200+
Commands
8
Categories
FREE
Open Source
🔎 No tools found. Press Escape to clear search.
🔎 Recon 5 tools
01
Nmap (Network Mapper)
Both Network FREE
02
Masscan (Mass IP Port Scanner)
Active Network FREE
03
Subfinder (Subdomain Discovery Tool)
Passive Web FREE
04
Amass (Attack Surface Mapping)
Both Web FREE
05
httpx (Fast HTTP Probing)
Active Web FREE
🌐 Web Testing 6 tools
06
Burp Suite (Web Security Testing Platform)
Both Web FREE
07
ffuf (Fuzz Faster U Fool)
Active Web FREE
08
sqlmap (Automatic SQL Injection)
Active Web FREE
09
Nuclei (Template-Based Vulnerability Scanner)
Active Web FREE
10
dalfox (XSS Parameter Scanner)
Active Web FREE
11
Nikto (Web Server Vulnerability Scanner)
Active Web FREE
📡 Network 3 tools
12
Wireshark / tshark (Network Protocol Analyzer)
Passive Network FREE
13
netcat (nc) (TCP/UDP Swiss Army Knife)
Both Network FREE
14
enum4linux (SMB/Windows Enumeration)
Active Network FREE
👁 OSINT 3 tools
15
theHarvester (Email and Subdomain Harvester)
Passive OSINT FREE
16
Sherlock (Username Cross-Platform Hunt)
Passive OSINT FREE
17
Recon-ng (Web Recon Framework)
Passive OSINT FREE
Exploitation 3 tools
18
Metasploit Framework (Exploitation Platform)
Active Network FREE
19
commix (Command Injection Exploiter)
Active Web FREE
20
XSStrike (Advanced XSS Detection Suite)
Active Web FREE
🤖 Post-Exploitation 2 tools
21
Meterpreter (Advanced In-Memory Shell)
Active Network FREE
22
LinPEAS / WinPEAS (Privilege Escalation Scripts)
Active Network FREE
🔐 Password 3 tools
23
Hydra (Network Login Brute Forcer)
Active Network FREE
24
Hashcat (GPU-Accelerated Hash Cracker)
Active Password FREE
25
John the Ripper (Classic Password Cracker)
Active Password FREE
🔧 Utilities 5 tools
26
gobuster (Directory/DNS/VHost Bruteforcer)
Active Web FREE
27
CyberChef (Cyber Swiss Army Knife)
Passive Utilities FREE
28
Shodan CLI (Internet Device Search Engine)
Passive OSINT FREE
29
SpiderFoot (Automated OSINT Platform)
Passive OSINT FREE
30
TruffleHog (Secret Scanner in Code)
Passive OSINT FREE