Saturday, December 2, 2023

AOMEI Backupper

AOMEI Backupper is a basic free backup application for Windows.  It includes a basic scheduler.

https://www.ubackup.com/free-backup-software.html

OSINT Framework

The OSINT Framework web site offers some tools or services for various topics.

https://osintframework.com/

Revanced

Revanced are modification patches for applications with Android.

https://revanced.app/

https://github.com/ReVanced

Newpipe

Newpipe is an YouTube client for Android.

https://newpipe.net/

TrafficWatch

TrafficWatch is a packet sniffer tool that allows you to monitor and analyze network traffic from PCAP files.

https://www.kitploit.com/2023/11/trafficwatch-trafficwatch-packet.html

https://github.com/HalilDeniz/TrafficWatch

NetworkAssessment

NetworkAssessment is designed to analyze pcap files to detect potential suspicious network traffic. This tool focuses on spotting abnormal activities in the network traffic and searching for suspicious keywords.

https://github.com/HalilDeniz/NetworkAssessment#networkassessment-network-compromise-assessment-tool

https://www.kitploit.com/2023/11/networkassessment-with-wireshark-or.html

Wednesday, November 1, 2023

Enable lockdown mode within iOS

To enable the lockdown mode within iOS:

Open the Settings app.

Tap Privacy & Security.

Scroll down, tap Lockdown Mode, then tap Turn On Lockdown Mode.

Tap Turn On Lockdown Mode.

Tap Turn On & Restart, then enter your device passcode.





Enzoic for Active Directory Lite

Enzoic for Active Directory Lite is a free password audit tool that identifies unsafe passwords.

https://www.enzoic.com/active-directory-lite/

Sirius Scanner

Sirius Scanner is an open-source general purpose vulnerability scanner.

https://github.com/SiriusScan/Sirius

Thorium

Thorium is a web browser based on the Chromium code base.

https://thorium.rocks

https://github.com/Alex313031/Thorium


ADRecon

ADRecon is a tool which extracts and combines information from an AD environment. The information can be presented in a specially formatted Microsoft Excel report.

https://github.com/adrecon/ADRecon

PatchaPalooza

PatchaPalooza is a web site that offers details for Microsoft patches.

https://patchapalooza.com/

Wednesday, October 4, 2023

SmarTTY

SmarTTY is a free multi-tabbed SSH client that supports copying files and directories with SCP.  A portable version is available.



https://sysprogs.com/SmarTTY/


DSInternals

The DSInternals project consists of these two parts:  the DSInternals Framework exposes several internal features of Active Directory and can be used from any .NET application, while the DSInternals PowerShell Module provides easy-to-use cmdlets that are built on top of the Framework.

https://github.com/MichaelGrafnetter/DSInternals

Excalidraw

Excalidraw is a whiteboard for typed text and sketching.

https://excalidraw.com/

Certify The Web

Certify The Web is a digital certificate manager that uses Let's Encrypt.  The free version will support up to 5 certificates.

https://certifytheweb.com

AD_Enumeration_Hunt

AD_Enumeration_Hunt is a collection of PowerShell scripts and commands that can be used for Active Directory (AD) penetration testing and security assessment.

https://github.com/alperenugurlu/AD_Enumeration_Hunt

Windows Decrapifier

Windows Decrapifier is a Registry file that attempts to disable advertising and other components within Windows.

https://github.com/Aftnet/WindowsDecrapifier
 

O&O AppBuster

O&O AppBuster is a free application to remove built-in apps within Windows 11.

https://www.oo-software.com/en/ooappbuster

Friday, September 1, 2023

DNSWatch

DNSWatch is a Python-based tool that sniffs and analyzes DNS (Domain Name System) traffic the local network.

https://github.com/HalilDeniz/DNSWatch

Capture network traffic within Microsoft Edge

To capture network traffic within Microsoft Edge, use the following URL:

edge://net-export

A button will be present to start a capture and to specify where to store the file.


Once the capture has been stopped, the JSON file can be viewed via https://netlog-viewer.appspot.com/ via the included link.



MSSqlPwner

MSSqlPwner is a pentesting tool designed to interact with MSSQL servers.

https://github.com/ScorpionesLabs/MSSqlPwner

Trawler

Trawler is a PowerShell script to assist incident responders discover adversary persistence mechanisms.

https://github.com/joeavanzato/Trawler

xcrawl3r

The utility xcrawl3r is a command-line application to crawl web sites.

https://github.com/hueristiq/xcrawl3r

ADREPLSTATUS

ADREPLSTATUS is a new version of an old utility that is no longer available from Microsoft concerning Active Directory replication status.

https://github.com/ryanries/adreplstatus

RabbitEars

RabbitEars is a web site that offers details on what over-the-air TV stations are available based on a location.

https://rabbitears.info/

Sunday, August 6, 2023

Google Play Store alternatives for Android

Below are some Google Play Store alternatives for Android.

https://uptodown-android.en.uptodown.com/android/download

https://auroraoss.com/

https://f-droid.org/

https://m.apkpure.com/

http://aptoide.com/

https://www.apkmirror.com



Network Assessment

Network Assessment is a Python script that analyzes network traffic within a .pcap file and attempts to detect the suspicious network activities and attacks.

https://github.com/alperenugurlu/Network_Assessment


Velociraptor

Velociraptor is an advanced digital forensic and incident response tool.

https://docs.velociraptor.app

https://github.com/Velocidex/velociraptor

Omnivore

Omnivore is a free read-it-later service.  Mobile apps and browser extensions are available.

https://omnivore.app/

https://www.aboutchromebooks.com/apps/this-is-my-favorite-chromebook-read-later-app-omnivore/




Keyboard shortcut to access the Bookmark Manager within Google Chrome

To access the Bookmark Manager within Google Chrome, one method is to use the keyboard shortcut combination below.

Ctrl+Shift+O

A direct URL would be:

chrome://bookmarks/

Snappy

Snappy is an utility to help detect fake or rogue WiFi access points.

https://www.bleepingcomputer.com/news/security/snappy-a-tool-to-detect-rogue-wifi-access-points-on-open-networks/

https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/snappy-detecting-rogue-and-fake-80211-wireless-access-points-through-fingerprinting-beacon-management-frames/

https://github.com/SpiderLabs/snappy

Saturday, July 1, 2023

Sandfly Security

Sandfly is a Linux security solution that attempts to detect and repel attackers without the need for endpoint agents.

https://sandflysecurity.com/

https://isc.sans.edu/diary/Sandfly+Security/29998

Azure AD Security Config Analyzer (AADSCA)

Azure AD Security Config Analyzer (AADSCA) is an utility that obtains data from an Azure AD security configuration from the selected Microsoft Graph API endpoints and ingest the data to Log Analytics.

https://github.com/Cloud-Architekt/AzureAD-Attack-Defense/blob/main/AADSecurityConfigAnalyzer.md

Coraza

Coraza an an open-source web-application firewall (WAF).

https://coraza.io/

Jdupes

Jdupes is an utility for finding duplicate files.

https://github.com/jbruchon/jdupes

ASUS Merlin

Merlin is a free replacement for the firmware for certain ASUS routers.

https://www.asuswrt-merlin.net/ 

Rdfind

Rdfind is an utility for Linux to find duplicate files.

https://rdfind.pauldreik.se/

Sunday, June 4, 2023

Displaying open applications within Linux Mint

With Linux Mint Mate edition, open applications are not displayed by default within the taskbar.  To view open apps, right-click on the Panel.  Select "Add to Panel", and then select "Window List".



How to check the sync process within Chrome

To check the sync process within Chrome, use the following URL:

chrome://sync-internals/

https://sites.google.com/a/chromium.org/dev/developers/sync-diagnostics



Microsoft Memory Integrity Scan Tool

The Microsoft Memory Integrity Scan Tool is an utility to check for compatibility issues with memory integrity (also known as hypervisor-protected code integrity.)  Memory integrity is a built-in feature that helps to protect Windows 11 users against cyber attacks that target high-security processes. It uses virtualization-based security to make it harder for malicious code to access critical parts of the operating system.

https://petri.com/memory-integrity-scan-tool-windows/

https://www.microsoft.com/en-us/download/105217


Traefik

Traefik is an open-source reverse proxy application.

https://github.com/traefik/traefik

https://4sysops.com/archives/traefik-reverse-proxy-for-docker/

STOR2RRD

STOR2RRD is an open-source monitoring utility for storage arrays and LAN switches. 

https://stor2rrd.com

https://www.vladan.fr/drill-down-for-performance-analytics-of-your-storage-and-san-and-lan-switches-with-stor2rrd/ 

Tron

Tron is a script to remove malware from a Windows computer.

https://www.itprotoday.com/attacks-and-breaches/how-run-tron-script-remove-malware-infections

https://github.com/bmrf/tron


Wednesday, May 3, 2023

Flauncher

Flauncher is a free alternative launch interface for Google TV.

https://chromewiki.com/install-flauncher-disable-google-tv-home-chromecast-with-google-tv/

https://gitlab.com/flauncher/flauncher

This app can be installed on an Amazon Fire TV as well.

https://troypoint.com/flauncher/

Wintoys

Wintoys is an utility for Windows optimization.

https://www.windowscentral.com/software-apps/wintoys-streamlined-bloatware-removal-and-quick-system-tweaks

https://apps.microsoft.com/store/detail/wintoys/9P8LTPGCBZXD

EvergreenAdmx

EvergreenAdmx is an utility to automatically download new Group Policy templates.

https://4sysops.com/archives/update-admx-templates-automatically-with-evergreenadmx/

https://github.com/msfreaks/EvergreenAdmx


Power Actions

Power Actions is a plug-in to the default vSphere client to allow PowerCLI scripts.

https://flings.vmware.com/power-actions

UDPX

UDPX is an UDP network scanner.

https://www.kitploit.com/2023/04/udpx-fast-nd-lightweight-udpx-is-single.html

https://github.com/nullt3r/udpx

BloatyNosy

BloatyNosy is an app to remove features from Windows 11.

https://github.com/builtbybel/BloatyNosy/

https://github.com/builtbybel/Winpilot/

Saturday, April 1, 2023

SmartTube

SmartTube is an Android app that can be side loaded on an Amazon Fire TV.  Developer mode will need to be enabled to install the app.

https://smartyoutubetv.github.io/

https://streamersworld.com/remove-youtube-ads-from-firestick/

https://www.firesticktricks.com/developer-options-firestick.html

A similar app is called SmartTubeNext.

https://smarttubenext.com


Rescuezilla

Rescuezilla is a specialist Ubuntu-based distribution designed for system rescue tasks, including backups and system restoration. It was forked from the "Redo Backup & Rescue" project which was abandoned in 2012.

https://rescuezilla.com/

vSphere Alert Center

vSphere Alert Center is an utility to send notifications from vCenter.

https://flings.vmware.com/vsphere-alert-center

Legion

Legion is an open source network penetration testing tool.  This is a fork of SECFORCE's Sparta project that was included within Kali Linux in the past.

https://govanguard.com/legion/

https://github.com/GoVanguard/legion/

Nala

Nala is an alternative to using APT within Linux.

https://www.omgubuntu.co.uk/2023/01/install-nala-on-ubuntu

https://gitlab.com/volian/nala  

RTRBK

RTRBK is a network backup script written in PowerShell.

https://isc.sans.edu/diary/RTRBK+Router+Switch+Firewall+Backups+in+PowerShell+tool+drop/22079

https://github.com/robvandenbrink/rtrbk

Thursday, March 2, 2023

IPCALC command

The IPCALC command returns details concerning an IP address that is passed.

https://www.linux.com/topic/networking/how-calculate-network-addresses-ipcalc/



PowerHuntShares

PowerHuntShares is an audit script for network shares on a network.

https://www.kitploit.com/2023/01/powerhuntshares-audit-script-designed.html

https://github.com/NetSPI/PowerHuntShares

LATMA

LATMA stands for Lateral Movement Analyzer.  It collects authentication logs from a Windows domain and searches for potential lateral movement attacks and suspicious activity.

https://www.kitploit.com/2023/01/latma-lateral-movement-analyzer-tool.html

https://github.com/silverfort-open-source/latma


HardeningKitty

HardeningKitty is a script for hardening of a Windows system.

https://github.com/scipag/HardeningKitty

yt-dlp

yt-dlp is a youtube-dl fork based on the now inactive youtube-dlc.

https://github.com/yt-dlp/yt-dlp

Tartube is one front-end for yt-dlp.

https://tartube.sourceforge.io/

Nettools

NetTools is a free utility for Active Directory.  NetTools contains over 90 different tests and functions.

https://nettools.net

Thursday, February 2, 2023

PUB400

PUB400 is a web site that offers a virtual IBM i Series to play with.

https://pub400.com/

NetworkMiner

NetworkMiner is a network forensics tool that can parse pcap files as well as perform live sniffing of network traffic on Ethernet and WiFi networks.  A limited free version is available.

https://www.netresec.com/?page=NetworkMiner


Zphisher

Zphisher is an automated phishing tool.

https://github.com/htr-tech/zphisher

Prometheus

Prometheus is an open-source monitoring service.  A large number of "exporters" are available to send data from software or hardware.

https://prometheus.io/ 

Musicbee

Musicbee is a free music manager and player.

https://www.getmusicbee.com

Prowler

Prowler is an open source security tool to perform AWS and Azure security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness.

https://docs.prowler.cloud/en/latest/

https://isc.sans.edu/diary/Prowler+v3+AWS+Azure+security+assessments/29430

MSRD-Collect

MSRD stands for Microsoft CSS Remote Desktop Data Collection and Diagnostic Script. MSRD-Collect is a PowerShell script with separate modules designed to collect information that will help Microsoft Customer Support Services to troubleshoot issues in Azure Virtual Desktop or Remote Desktop Services environments.

https://www.ivobeerens.nl/2022/12/22/troubleshoot-your-azure-virtual-desktop-avd-or-remote-desktop-environment-with-msrd-collect/


Tuesday, January 3, 2023

KeepVideo

The KeepVideo site offers options to download video clips from YouTube and TikTok.

https://keepvideo.org/

Peek

Peek is an animated GIF recorder for the Linux platform.

https://github.com/phw/peek

Flameshot

Flameshot is an open-source screen capture application.  A portable Windows version is available.

https://flameshot.org/

PDF Arranger

PDF Arranger is a python-gtk application to merge or split PDF documents and rotate, crop, and rearrange pages.

https://github.com/pdfarranger/pdfarranger

https://portableapps.com/apps/office/pdf-arranger-portable

Kdenlive

Kdenlive is an open source video editor.

https://kdenlive.org/

LibreWolf

LibreWolf is a custom and independent version of Firefox with a focus on privacy and security.  uBlock Origin is installed by default.

https://librewolf.net/