- Edited
Introduction — Preview — Install — Build — Support
The all-in-one Red Team browser extension for Web Pentesters
HackTools, is a web extension facilitating your web application penetration tests, it includes cheat sheets as well as all the tools used during a test such as XSS payloads, Reverse shells and much more.
With the extension you no longer need to search for payloads in different websites or in your local storage space, most of the tools are accessible in one click. HackTools is accessible either in pop up mode or in a whole tab in the Devtools part of the browser with F12.
Current functions
Dynamic Reverse Shell generator (PHP, Bash, Ruby, Python, Perl, Netcat)
Shell Spawning (TTY Shell Spawning)
MSF Venom Builder
XSS Payloads
Basic SQLi payloads
Local file inclusion payloads (LFI)
Base64 Encoder / Decoder
Hash Generator (MD5, SHA1, SHA256, SHA512, SM3)
Useful Linux commands (Port Forwarding, SUID)
RSS Feed (Exploit DB, Cisco Security Advisories, CXSECURITY)
CVE Search Engine
Various methods of data exfiltration and download from a remote machine
Preview
Install the extension
Chromium-based browser
You can download the latest build here.
Or, you can download the extension on the chrome web store here.
Otherwise, you can build the project yourself from the source code
Mozilla Firefox
You can download HackTools on the Firefox browser add-ons here.
Instructions to build for Safari
Create a safari web extension project using the command below. This is to be run once.
xcrun safari-web-extension-coverter [path_to_dist_folder]
Follow the instructions to create the project the default language should be Swift.
Build project.
Open Safari and enable unsigned extensions; Develop → Allow Unsigned Extensions.
Open Safari → Preferences → Extensions and enable Hack-Tools
Click on the extension icon and switch to full-screen mode.
Instructions provided by jayluxferro
Build from source code
git clone https://github.com/LasCC/Hack-Tools.git cd Hack-Tools npm install && npm run build # If you have installed yarn you can replace npm with yarn
Once the build is done correctly, webpack will create a new folder called dist
After that, you need to go to the extension tab on your chrome-based navigator and turn on the developer mode
Then click on the load unpacked button in the top left corner.
Once you click on the button you just need to select the dist folder and that’s it!
Authors
Ludovic COULON & Riadh BOUCHAHOUA
GitHub: https://github.com/LasCC/Hack-Tools
Hey i was wondering how can i find bins i mean i know that some bins gets released here but i was wondering how i can find or make my own ones not wait tell someone post it so i can help as well
And thanks 😊
- Edited
Content: 1.How to setup phishing infrastructure.
2.How to launch your campaign.
3.How to bypass MFA.
4.How to evade spam filters.
5.Credential capturing.
5.Post engagement activities such as reporting.
6.Considerations for blue team.
8.Advice from real phishing engagements.
Mega Link : https://mega.nz/folder/NUtiQC4a#7TKOG7ypaabQbnM6FzT2_w
Disclaimer
This content has been shared under Educational And Non-Profit Purposes Only.
No Copyright Infringement Intended, All Rights Reserved to the Actual Owner.
Hacksnation.com has no control over the shared content and nature of the external sites.
- Edited
Tutorial Below: - Download the resources needed here -
- First of all, click here to download the tool.
- If you don’t have python installed, download python 3.7.6 and make sure you click on the ‘ADD TO PATH’ option during the installation.
- Install the required modules >
pip install -r requirements.txt
or double clickpip_install_requirements.bat
- Type
python QR_Generator.py
in cmd to run or double clickrun_script.bat
- Wait for the
discord_gift.png
to be generated. Send the image to the victim and make them scan it. - QR Code only lasts about 2 minutes. Make sure you send a fresh one to the victim and he is ready to scan.
- When the QR Code is scanned, you will automatically be logged in to their account and the script will grab the Discord token.
Usage Example:
Tool Link (Github) - NightfallGT/Discord-QR-Scam
Disclaimer
This content has been shared under Educational And Non-Profit Purposes Only.
No Copyright Infringement Intended, All Rights Reserved to the Actual Owner.
Hacksnation.com cannot be liable for what a person decides to do with this knowledge.
Hacksnation.com has no control over the shared content and nature of the external sites.
Site link - https://ide.goorm.io/
- Go there and register your account, They will allow you to get VPS with one GB RAM for free!
- You can open how many accounts you want on one IP.
- Click on the new container and configure your settings.
- After this, You are ready to run this.
New BIN added.
- Edited
You can never be 100% but still, there are some tips to hide your identity.
VIRTUAL MACHINE
Always use a virtual machine to be anonymous, you can install an ISO on Virtual Box, use VPS, etc . . .NO LOGS VPN
If you want to be anonymous the most important thing is to use a VPN without logs. If you want to be anonymous Online I recommend you a VPN like ExpressVPN, CyberGhost, Private Internet Access, ProtonVPN, IPVanish, VyprVPN (In my opinion, these are the best ones)ANONYMOUS BROWSER
You also must use an anonymous browser, when I say this I don’t mean going into incognito mode, but yes to use a real anonymous browser, for that you can use TOR Browser,ANONYMOUS EMAIL
If you want to be anonymous on the internet you shouldn’t trust emails like Gmail, Outlook, or Hotmail, but yes you should trust emails Like ProtonMail or even better Tutanota, since they don’t give your information or read your emailsANONYMOUS SEARCH ENGINE
You should also use an anonymous search engine, since we all know that Google sees what we searching on the internet, for that I recommend you use DuckDuckGoFAKE INFORMATION
This is also one of the most important things to stay anonymous on the internet, if you trying to stay anonymous you going to need to use a fake credit card, address, name, etc.. (we has posted some methods to get VCC (Valid credit card) and in future, we will upload more on hacksnation.com)For fake information, You can search “Fake Information Generator” on search engines and you will find a lot of Websites that generate fake information for you, like name, address, age, gender, etc . . . .
- Edited
Only 2-3 Minutes Read
What are BINs?
-BIN stands for Bank Identification Number. ( First 6 digits of a Debit Card or Credit Card)What can you do with BIN?
By this Bin (First 6 numbers of a card) we can generate a fake CC (credit card) that relates to no one but by this CC you can buy a trial period subscription which is $0 in most cases
For example - Spotify Trial for 3 months, and Amazon Prime Trial.Requirements :
- A Working BIN
- A strong VPN and sometimes you need nothing
- Good and Clean (cookies and site data) Internet browser
- Patience
How to get CC using BINs?
You will get many BINs on this forum in the future and you can use it by following these steps: -- You can get CC by using a CC generator with a specified BIN. (More CC gen sites - ccgen.tech)
Now how to use that gen CC Details?
You will get the CC Details like this so:
4060687662287260|02|2023|743 Card Number|Expiry Date|CVV
Put these details in the payment mode.
Sites to use For Help -
First, read the guide which is given above and then use these sites to help yourself.
CC Gen - (commonly used)
https://namso-gen.com/
https://namso.ccgen.co/
https://ccgen.tech/CC Checker -
https://www.mrchecker.net/card-checker/ccn2/This Method takes a lot of time and effort … At least you have to try 10-20 cards to get a successful attempt.
And keep in mind You can use them for Trial subscriptions only.Sometimes you have to input the address also, so you can use a Fake address generator for the address according to the bin location.
Disclaimer
This content has been shared for Educational And Non-Profit Purpose ONLY.
Hacksnation.com has no control over the shared content and nature of the external sites.
``