Try searching for "database", "file", "API", or browse by category
343 Tools in InfoSec Tools
Nimbo-C2
by itaymigdal
Nimbo-C2 is yet another (simple and lightweight) C2 framework
Sandman
by Idov31
Sandman is a NTP based backdoor for red team engagements in hardened networks.
SecPayloads
by ogh-bnz
Sec-Payloads, It's a collection of multiple types of lists used during security assessments & used for bug bounty hunting or penetration testing, collected in one place. List types include xss, sqli, sensitive data patterns, fuzzing payloads, web shells, and many more.
ppmap
by kleiton0x00
A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.
wpprobe
by Chocapikk
A fast WordPress plugin enumeration tool
bbot
by blacklanternsecurity
The recursive internet scanner for hackers. 🧡
dnstwist
by hazcod
A tool to monitor for potential spear phishing domains and send to Slack.
saycheese
by hangetzzu
Grab target's webcam shots by link
hackvertor
by PortSwigger
Hackvertor is a tag based conversion tool written in Java implemented as a Burp Suite extension
knock
by guelfoweb
Knock Subdomain Scan
shosubgo
by incogbyte
Small tool to Grab subdomains using Shodan api.
cero
by glebarez
Scrape domain names from SSL certificates of arbitrary hosts
leak_searcher
by onurcangnc
An elastic search solution to deal with large numbers of data leaks so as to analyze, search and list them through a botfather via Telegram.
shell_bringer
by onurcangnc
ShellBringer is a Python script designed for penetration testers. It facilitates the creation and management of reverse shell payloads, automating listener setup across multiple platforms.
evil-winrm-py
by adityatelange
Execute commands interactively on remote Windows machines using the WinRM protocol
Infosec Certifications Resources
Discover the best cybersecurity certifications to advance your career








































Frequently Asked Questions about InfosecMania
Learn more about Cybersecurity Tools and how they can enhance your security posture
InfoSecMania is a comprehensive directory of cybersecurity tools and resources designed to help security professionals find the right tools for their needs.
You can submit a tool by clicking on the 'Submit Tool' link in the navigation menu and filling out the submission form with details about your tool.
Feel free to connect with us on LinkedIn, Discord, or just write to us at [email protected].
Tools are categorized based on their primary function, such as penetration testing, vulnerability assessment, network security, etc. Many tools may appear in multiple categories if they serve multiple purposes.
We only list tools and resources from publicly available, reputable sources — most of which are open-source and widely used in the cybersecurity community. However, always review and test tools in a safe, legal environment, like your lab or VM.
We actively monitor public repositories, GitHub, and community forums to keep our tool listings fresh. Many tools are auto-sourced from open-source feeds and security communities.