逆向工程
GDB -http://www.gnu.org/software/gdb/download/
IDA Pro – ==https://www.hex-rays.com/products/ida/support
Immunity Debugger –http://debugger.immunityinc.com/
OllyDbg – http://www.ollydbg.de/
radare2 – http://www.radare.org/y/?p=download
nm – unix/linux tool
objdump – linux tool
strace – linux tool
ILSpy – http://ilspy.net/
JD-GUI – http://jd.benow.ca/#jd-gui-overview
FFDec – http://www.free-decompiler.com/flash/download.html
dex2jar – http://code.google.com/p/dex2jar/
uncompyle2 – https://github.com/wibiti/uncompyle2
Hex editors:
Windows:
HxD – http://mh-nexus.de/en/hxd/
Neo – http://www.new-hex-editor.com/hex-editor-downloads.html
Linux:
Bless – http://home.gna.org/bless/downloads.html
wxHexEditor – http://www.wxhexeditor.org/download.php
Exe unpackers – Unpacking Kit 2012 – http://forum.exetools.com/showthread.php?t=13610
网络
Wireshark, tshark – https://www.wireshark.org/download.html
OpenVPN – https://openvpn.net/
OpenSSL – https://www.openssl.org/related/binaries.html
tcpdump – http://www.tcpdump.org/
netcat – http://netcat.sourceforge.net/
nmap – http://nmap.org/download.html
隐写:
OpenStego – http://www.openstego.info/
OutGuess – http://www.outguess.org/download.php
Steghide – http://steghide.sourceforge.net/download.php
StegFS – http://sourceforge.net/projects/stegfs/
pngcheck – http://www.libpng.org/pub/png/apps/pngcheck.html
GIMP – http://www.gimp.org/downloads/
Audacity – http://audacity.sourceforge.net/download/
MP3Stego – http://www.petitcolas.net/steganography/mp3stego/
ffmpeg (for video analysis) – https://www.ffmpeg.org/download.html
电子取证:
dd – unix/linux tool
strings – unix/linux tool
scalpel – https://github.com/sleuthkit/scalpel
TrID – http://mark0.net/soft-trid-e.html
binwalk – http://binwalk.org/
foremost – http://foremost.sourceforge.net/
ExifTool – http://www.sno.phy.queensu.ca/~phil/exiftool/
Digital Forensics Framework (DFF) – http://www.digital-forensic.org/download/
Computer Aided INvestigative Environment (CAINE) Linux forensics live distribution – http://www.caine-live.net/
The Sleuth Kit (TSK) – http://www.sleuthkit.org/sleuthkit/download.php
Volatility – http://code.google.com/p/volatility/
pcap包修复 - http://f00l.de/hacking/pcapfix.php
主机内常见机密文件的扫描 - https://github.com/CERT-W/certitude
网络数据监控 - https://github.com/opt-oss/NG-NetMS
网络流量隐含数据分析 - https://github.com/sensepost/DET
JPHS隐写 - http://linux01.gwdg.de/~alatham/stego.html
社会工程
钓鱼攻击防护 - https://github.com/anilyuk/punydomaincheck
社会信息收集 - https://github.com/DataSploit/datasploit
网络中数据的挖掘 - https://github.com/SharadKumar97/OSINT-SPY
无线网络
wifi监控探测 - https://github.com/lennartkoopmann/nzyme
wifi入侵检测 - https://www.kismetwireless.net/
AWD中防护
攻击防护和漏洞检测 - https://github.com/jzadeh/Aktaion
数据收集,威胁监控 - https://github.com/Invoke-IR/ACE
AWS基础设施监控 - https://github.com/SecurityFTW/cs-suite
渗透测试框架,团队协作 - https://github.com/dradis/dradis-ce
本地扫描,安全度评估 - https://github.com/OpenSCAP/openscap
日志分析管理 - https://github.com/Graylog2/graylog2-server
AWD中攻击:
网络注入攻击 - https://github.com/xtr4nge/FruityC2
编程以及编码工具/PPC
Text editors:
Sublime Text – http://www.sublimetext.com/
Notepad++ – http://notepad-plus-plus.org/
vim – http://www.vim.org/
emacs – http://www.gnu.org/software/emacs/
密码学
Cryptool – https://www.cryptool.org/
hashpump – https://github.com/bwall/HashPump
Sage – http://www.sagemath.org/
John the Ripper – http://www.openwall.com/john/
xortool – https://github.com/hellman/xortool
彩虹表- http://www.objectif-securite.ch/en/ophcrack.php
图片和base64互转 - http://imgbase64.duoshitong.com/
在线工具
http://www.crypo.com/
http://www.cryptool-online.org/
http://rumkin.com/tools/cipher/
Modules for python – pycrypto – https://www.dlitz.net/software/pycrypto/
md5
http://pmd5.com/
https://www.cmd5.com/
https://www.somd5.com/
http://www.chamd5.org/
附加一个链接:https://www.freebuf.com/sectool/94235.html