Best Tools of Penetration Test for Noobies

Kirill  Ulyanov
Kirill UlyanovList by Kirill Ulyanov, last updated 
Copy a direct link to this comment to your clipboard
  1. DirBuster icon
     Like

    DirBuster is a multi threaded java application designed to brute force directories and files names on web/application servers.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
    DirBuster screenshot 1
    DirBuster screenshot 1
    DirBuster screenshot 2
  2. Wireshark icon
     Like

    Foremost network protocol analyzer with multi-platform support, deep protocol inspection, VoIP analysis, and extensive file format compatibility.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
    • Snapcraft
    • Flathub
    • Homebrew
    • Chocolatey
    Wireshark screenshot 1
  3. Burp Suite is an integrated platform for performing security testing of web applications. Its various tools work seamlessly together to support the entire testing process, from initial mapping and analysis of an application's attack surface, through to finding and exploiting...

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
    • Flathub
    • Flatpak
    Burp Suite screenshot 1
  4. John the Ripper is a fast password cracker, currently available for many flavors of Unix, Windows, DOS, BeOS, and OpenVMS. Its primary purpose is to detect weak Unix passwords. Besides several crypt(3) password hash types most commonly found on various Unix systems, supported...

    Cost / License

    • Free
    • Open Source

    Platforms

    • Windows
    • Linux
    • Haiku
    John the Ripper screenshot 1
    John the Ripper screenshot 1
  5. netcat icon
     Like

    Netcat is a featured networking utility which reads and writes data across network connections, using the TCP/IP protocol. It is designed to be a reliable "back-end" tool that can be used directly or easily driven by other programs and scripts.

    Cost / License

    • Free
    • Open Source

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
    netcat screenshot 1
  6. Metasploit Community Edition simplifies network discovery and vulnerability verification for specific exploits, increasing the effectiveness of vulnerability scanners such as Nexpose - for free. This helps prioritize remediation and eliminate false positives, providing true...

    Cost / License

    • Free Personal
    • Open Source

    Platforms

    • Windows
    • Linux
    • BSD
    Metasploit screenshot 1
  7. BeEF icon
     Like

    BeEF is short for The Browser Exploitation Framework. It is a penetration testing tool that focuses on the web browser.

    Cost / License

    • Free
    • Open Source

    Application type

    Platforms

    • Mac
    • Linux
    BeEF screenshot 1
    BeEF screenshot 1
    BeEF screenshot 2
  8. Sqlmap icon
     Like

    sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a powerful detection engine, many niche features for the ultimate penetration tester and a broad range...

    Cost / License

    • Free
    • Open Source

    Application type

    Platforms

    • Mac
    • Linux
    Sqlmap screenshot 1
  9. Nmap icon
     Like

    Free, open-source utility for network security auditing and exploration with capabilities for OS detection, service identification, and large network scans.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
    Main Window
    Profile Editor
No comments so far, maybe you want to be first?
Gu