Repository: Z4nzu/hackingtool
Stars: 58190
README.md
<div align="center">
<img src="images/logo.svg" alt="HackingTool" width="600">
<p><b>All-in-One Hacking Tool for Security Researchers & Pentesters</b></p>











<a href="#installation"><img src="https://img.shields.io/badge/Install_Now-00FF88?style=for-the-badge&logo=rocket&logoColor=black" alt="Install Now"></a>
<a href="#quick-commands"><img src="https://img.shields.io/badge/Quick_Commands-7B61FF?style=for-the-badge&logo=terminal&logoColor=white" alt="Quick Commands"></a>
<a href="https://github.com/Z4nzu/hackingtool/issues/new?template=tool_request.md"><img src="https://img.shields.io/badge/Suggest_a_Tool-FF61DC?style=for-the-badge&logo=plus&logoColor=white" alt="Suggest a Tool"></a>
</div>
---
What's New in v2.0.0
<table>
<tr><td>
| | Feature | Description |
|:---:|---|---|
| 🐍 | Python 3.10+ | All Python 2 code removed, modern syntax throughout |
| 🖥 | OS-aware menus | Linux-only tools hidden automatically on macOS |
| 📦 | 185+ tools | 35 new modern tools added across 6 categories |
| 🔍 | Search | Type / to search all tools by name, description, or keyword |
| 🏷 | Tag filter | Type t to filter by 19 tags — osint, web, c2, cloud, mobile... |
| 💡 | Recommend | Type r — "I want to scan a network" → shows relevant tools |
| ✅ | Install status | ✔/✘ shown next to every tool — know what's ready |
| ⚡ | Install all | Option 97 in any category — batch install at once |
| 🔄 | Smart update | Each tool has Update — auto-detects git pull / pip upgrade / go install |
| 📂 | Open folder | Jump into any tool's directory for manual inspection |
| 🐳 | Docker | Builds locally — no unverified external images |
| 🚀 | One-liner install | curl -sSL .../install.sh \| sudo bash — zero manual steps |
| 🏢 | 3 new categories | Active Directory, Cloud Security, Mobile Security |
</td></tr>
</table>
---
Quick Commands
<div align="center">
| Command | Action | Works in |
|:---:|---|:---:|
| /query | Search — find tools instantly by keyword | Main menu |
| t | Tags — filter by osint, scanner, c2, cloud, mobile... | Main menu |
| r | Recommend — "I want to do X" → matching tools | Main menu |
| ? | Help — quick reference card | Everywhere |
| q | Quit — exit from any depth | Everywhere |
| 97 | Install All — batch install all tools in category | Category |
| 99 | Back — return to previous menu | Everywhere |
</div>
---
Tool Categories
<div align="center">
| # | Category | Tools | | # | Category | Tools |
|:---:|---|:---:|---|:---:|---|:---:|
| 1 | 🛡 Anonymously Hiding | 2 | | 11 | 🧰 Exploit Framework | 4 |
| 2 | 🔍 Information Gathering | 26 | | 12 | 🔁 Reverse Engineering | 5 |
| 3 | 📚 Wordlist Generator | 7 | | 13 | ⚡ DDOS Attack | 5 |
| 4 | 📶 Wireless Attack | 13 | | 14 | 🖥 RAT | 1 |
| 5 | 🧩 SQL Injection | 7 | | 15 | 💥 XSS Attack | 9 |
| 6 | 🎣 Phishing Attack | 17 | | 16 | 🖼 Steganography | 4 |
| 7 | 🌐 Web Attack | 20 | | 17 | 🏢 Active Directory | 6 |
| 8 | 🔧 Post Exploitation | 10 | | 18 | ☁ Cloud Security | 4 |
| 9 | 🕵 Forensics | 8 | | 19 | 📱 Mobile Security | 3 |
| 10 | 📦 Payload Creation | 8 | | 20 | ✨ Other Tools | 24 |
</div>
---
🛡 Anonymously Hiding Tools
🔍 Information Gathering Tools
- Network Map (nmap)
- Dracnmap
- Port scanning
- Host to IP
- Xerosploit
- RED HAWK
- ReconSpider
- IsItDown
- Infoga
- ReconDog
- Striker
- SecretFinder
- Shodanfy
- rang3r
- Breacher
- theHarvester ★
- Amass ★
- Masscan ★
- RustScan ★
- Holehe ★
- Maigret ★
- httpx ★
- SpiderFoot ★
- Subfinder ★
- TruffleHog ★
- Gitleaks ★
📚 Wordlist Generator
- Cupp
- WordlistCreator
- Goblin WordGenerator
- Password list (1.4B)
- Hashcat ★
- John the Ripper ★
- haiti ★
📶 Wireless Attack Tools
- WiFi-Pumpkin
- pixiewps
- Bluetooth Honeypot (bluepot)
- Fluxion
- Wifiphisher
- Wifite
- EvilTwin
- Fastssh
- Howmanypeople
- Airgeddon ★
- hcxdumptool ★
- hcxtools ★
- Bettercap ★
🧩 SQL Injection Tools
- Sqlmap
- NoSqlMap
- DSSS
- Explo
- Blisqy
- Leviathan
- SQLScan
🎣 Phishing Attack Tools
- Autophisher
- PyPhisher
- AdvPhishing
- Setoolkit
- SocialFish
- HiddenEye
- Evilginx3
- I-See-You
- SayCheese
- QR Code Jacking
- BlackEye
- ShellPhish
- Thanos
- QRLJacking
- Maskphish
- BlackPhish
- dnstwist
🌐 Web Attack Tools
- Web2Attack
- Skipfish
- Sublist3r
- CheckURL
- Sub-Domain TakeOver
- Dirb
- Nuclei ★
- ffuf ★
- Feroxbuster ★
- Nikto ★
- wafw00f ★
- Katana ★
- Gobuster ★
- Dirsearch ★
- OWASP ZAP ★
- testssl.sh ★
- Arjun ★
- Caido ★
- mitmproxy ★
🔧 Post Exploitation Tools
- Vegile
- Chrome Keylogger
- pwncat-cs ★
- Sliver ★
- Havoc ★
- PEASS-ng (LinPEAS/WinPEAS) ★
- Ligolo-ng ★
- Chisel ★
- Evil-WinRM ★
- Mythic ★
🕵 Forensic Tools
- Autopsy
- Wireshark
- Bulk extractor
- Guymager
- Toolsley
- Volatility 3 ★
- Binwalk ★
- pspy ★
📦 Payload Creation Tools
- The FatRat
- Brutal
- Stitch
- MSFvenom Payload Creator
- Venom
- Spycam
- Mob-Droid
- Enigma
🧰 Exploit Framework
- RouterSploit
- WebSploit
- Commix
- Web2Attack
🔁 Reverse Engineering Tools
- Androguard
- Apk2Gold
- JadX
- Ghidra ★
- Radare2 ★
⚡ DDOS Attack Tools
- DDoS Script
- SlowLoris
- Asyncrone
- UFOnet
- GoldenEye
🖥 Remote Administrator Tools (RAT)
- Pyshell
💥 XSS Attack Tools
- DalFox
- XSS Payload Generator
- Extended XSS Searcher
- XSS-Freak
- XSpear
- XSSCon
- XanXSS
- XSStrike
- RVuln
🖼 Steganography Tools
- SteganoHide
- StegoCracker
- Whitespace
🏢 Active Directory Tools
- BloodHound ★
- NetExec (nxc) ★
- Impacket ★
- Responder ★
- Certipy ★
- Kerbrute ★
☁ Cloud Security Tools
- Prowler ★
- ScoutSuite ★
- Pacu ★
- Trivy ★
📱 Mobile Security Tools
- MobSF ★
- Frida ★
- Objection ★
✨ Other Tools
#### SocialMedia Bruteforce
- AllinOne SocialMedia Attack
- Facebook Attack
- Application Checker
#### Android Hacking Tools
- Keydroid
- MySMS
- Lockphish
- DroidCam / WishFish
- EvilApp
#### IDN Homograph Attack
- EvilURL
#### Email Verify Tools
- Knockmail
#### Hash Cracking Tools
- Hash Buster
#### Wifi Deauthenticate
- WifiJammer-NG
- KawaiiDeauther
#### SocialMedia Finder
- Find SocialMedia By Facial Recognition
- Find SocialMedia By UserName
- Sherlock
- SocialScan
#### Payload Injector
- Debinject
- Pixload
#### Web Crawling
- Gospider
#### Mix Tools
- Terminal Multiplexer (tilix)
- Crivo
---
Contributing — Add a New Tool
<table>
<tr>
<td width="50%">
Open an Issue
Title: [Tool Request] ToolName — CategoryUse the Tool Request template.
Required: tool name, GitHub URL, category, OS, install command, reason.
</td>
<td width="50%">
Open a Pull Request
Title: [New Tool] ToolName — CategoryUse the PR template checklist.
Required: class in tools/*.py, TITLE, DESCRIPTION, INSTALL/RUN commands, SUPPORTED_OS, test locally.
</td>
</tr>
</table>
Issues or PRs that don't follow the title format will be closed without review.
---
Installation
<table>
<tr>
<td>
One-liner (recommended)
curl -sSL https://raw.githubusercontent.com/Z4nzu/hackingtool/master/install.sh | sudo bashHandles everything — prerequisites, clone, venv, launcher.
</td>
<td>
Manual
git clone https://github.com/Z4nzu/hackingtool.git
cd hackingtool
sudo python3 install.pyThen run: hackingtool
</td>
</tr>
</table>
Docker
Build
docker build -t hackingtool .Run (direct)
docker run -it --rm hackingtoolRun (Compose — recommended)
docker compose up -d
docker exec -it hackingtool bashDev mode (live source mount)
docker compose --profile dev up
docker exec -it hackingtool-dev bashStop
docker compose down # stop container
docker compose down -v # also remove data volumeRequirements
| Dependency | Version | Needed for |
|---|---|---|
| Python | 3.10+ | Core |
| Go | 1.21+ | nuclei, ffuf, amass, httpx, katana, dalfox, gobuster, subfinder |
| Ruby | any | haiti, evil-winrm |
| Docker | any | Mythic, MobSF (optional) |
pip install -r requirements.txt---
Star History
<picture>
<source media="(prefers-color-scheme: dark)" srcset="https://api.star-history.com/svg?repos=Z4nzu/hackingtool&type=Date&theme=dark" />
<source media="(prefers-color-scheme: light)" srcset="https://api.star-history.com/svg?repos=Z4nzu/hackingtool&type=Date" />
<img alt="HackingTool Star History Chart" src="https://api.star-history.com/svg?repos=Z4nzu/hackingtool&type=Date" />
</picture>
---
Support
If this project helps you, consider buying me a coffee:
<a href="https://buymeacoffee.com/hardikzinzu" target="_blank"><img src="https://cdn.buymeacoffee.com/buttons/v2/default-yellow.png" alt="Buy Me A Coffee" height="50"></a>
Social


For authorized security testing only.
Thanks to all original authors of the tools included in hackingtool.
Your favourite tool is not listed? Suggest it here