• John the Ripper

    A free and open-source password cracker tool for auditing and recovery. John the Ripper supports hundreds of hash and cipher types, including Unix, Windows, macOS, WordPress, database servers, filesystems, archives, and more.

  • Kansa

    Kansa, also known as “Invoke-Kansa,” is an open-source incident response and threat hunting framework for Windows environments. It is built on top of PowerShell and provides a set of modules to collect and analyze data for security investigations and detection of malicious activities.

  • Katana

    Katana is a command-line interface (CLI) web crawling tool that uses headless browsing to crawl applications. It is written in Golang and is designed to gather information and endpoints from websites

  • King phisher

    A free and open-source phishing campaign toolkit. King Phisher helps users simulate real-world phishing attacks and includes features such as embedded email images, credential harvesting, and website cloning.

  • Kippo

    Kippo is a medium-interaction SSH honeypot written in Python. Kippo is used to log brute-force attacks and the entire shell interaction performed by an attacker.

  • Kismet

    A free and open-source wireless network detector, sniffer, and IDS. Kismet can run on Windows, macOS, and Linux and tests connections such as Wi-Fi, Bluetooth, Zigbee, and RF

  • L0phtCrack

    A free and open-source password auditing and recovery tool. L0phtCrack supports attack techniques, including dictionary and brute-force attacks and rainbow tables.

  • LibreNMS

    It supports SNMP, Syslog, and SNMP Trap monitoring, and has a web-based interface for configuration and management

  • LogRhythm

    LogRhythm, Inc. is a global security intelligence company that specializes in Security Information and Event Management (SIEM), log management, network monitoring, user behavior and security analytics.

  • Maltego

    A powerful OSINT and link analysis tool with free and paid versions. Maltego features integrations with dozens of data sources, including Mandiant, Censys, PolySwarm, Splunk, and many more.

  • Masscan

    Masscan is a network port scanner that helps security researchers quickly scan large areas of the internet. It’s similar to the well-known Nmap command

  • Medusa

    A free and open-source fast, massively parallel password-cracking tool. Medusa can perform brute-force password testing against multiple hosts or users simultaneously.