
Microsoft Windows

Session Thief

Session Thief is a session hijacking tool.

Network Miner

NetworkMiner is a Network Forensic Analysis Tool (NFAT) for Windows that can detect the OS, hostname and open ports of network hosts through packet sniffing or by parsing a PCAP file. NetworkMiner can also extract transmitted files from network traffic


Combofix is a multipurpose virus removal program that scans the boot sector of the hard drive, along with checing and replacing system files, and removing rootkits. On top of all this, it also removes all types of other viruses.

Avira Antivirus

Avira is both a free and paid antivirus program. The free version seems to work fairly well.

Spytector Keylogger

Spytector is a keylogger that claims to be undetectable, well at least the paid version. If it is detected, contact the site admin and they will make you a new one with a different signature.

Poison Ivy

Poison Ivy is a remote access trojan with many features built in.

XVI32 Hex Editor

XVI32 is a freeware hex editor for Windows and runs under version 9x, NT, 2000, XP, Vista, and 7. It's super-lightweight (Fits on a floppy!) and loads and searches large files very quickly.

It just so happens to be Jerbo's favorite quick-n-dirty hex editor for Windows.


Kippo is a medium interaction SSH honeypot designed to log brute force attacks and, most importantly, the entire shell interaction performed by the attacker.

Fake filesystem with the ability to add/remove files. A full fake filesystem resembling a Debian 5.0 installation is included
Possibility of adding fake file contents so the attacker can 'cat' files such as /etc/passwd. Only minimal file contents are included
Session logs stored in an UML compatible format for easy replay with original timings
Just like Kojoney, Kippo saves files downloaded with wget for later inspection
Trickery; ssh pretends to connect somewhere, exit doesn't really exit, etc

An operating system (tested on Debian, CentOS, FreeBSD and Windows 7)
Python 2.5+
Twisted 8.0+
Zope Interface


A browser extension that stops major third parties and search engines from tracking the webpages you go to and searches you do.

Works on Firefox, Chrome, and Safari.


OpenSSH is a FREE version of the SSH connectivity tools that technical users of the Internet rely on. Users of telnet, rlogin, and ftp may not realize that their password is transmitted across the Internet unencrypted, but it is. OpenSSH encrypts all traffic (including passwords) to effectively eliminate eavesdropping, connection hijacking, and other attacks. Additionally, OpenSSH provides secure tunneling capabilities and several authentication methods, and supports all SSH protocol versions.

Syndicate content