CTF
Capture The Flag.
Contents
Forensics
Hosts communication through DNS.
Dump windows credentials.
Rips web accessible (distributed) version control systems.
Tool for exploration and tracing of the Windows kernel.
Investigate NT_USER.dat files.
Simple CLI forensics tool for tracking USB device artifacts (history of USB events) on GNU/Linux.
To investigate memory dumps.
Platforms
Platform to host jeopardy style CTFs from ISISLab, NYU Tandon.
Develop, deploy and maintain your own CTF infrastructure.
Platform to host Capture the Flag competitions from Facebook.
A Highly Accessible and Automated Virtualization Platform for Security Education.
CTF scoring platform.
A CTF engine written in PHP.
Badass lightweight plaform to host CTFs. No JS involved.
A simple security CTF framework.
CTF in a box. Minimal setup required.
The platform used to run picoCTF. A great framework to host any CTF.
Small framework to create/manage/package jeopardy CTF challenges.
A Game of Hackers (CTF Scoreboard & Game Manager).
Platform for CTFs by Legitbs (Defcon).
Security Scenario Generator. Creates randomly vulnerable virtual machines.
Web
JavaScript Obfustcators
Tools used for creating Web challenges
Automated All-in-One OS Command Injection and Exploitation Tool.
A high performance offensive security tool for reconnaissance and vulnerability scanning.
Automatic SQL injection and database takeover tool.
Web Application Attack and Audit Framework.
Attacks
Crypto
An automated, modular cryptanalysis tool.
A utility tool for performing hash length extension attacks.
A CLI tool to execute padding oracle attacks.
A tool for recovering RSA private key with various attack.
Generate private key with knowledge of p and q.
A tool to analyze multi-byte xor cipher.
Bruteforcers
Exploits
Inject dlls in processes.
Simplify format string exploitation.
A tool to find the one gadget execve('/bin/sh', NULL, NULL) call.
CTF Framework for writing exploits.
QEMU Interactive Runtime Analyser.
Framework for ROP exploitation.
Security CTF Toolkit.
Networking
Reversing
Reverse engineer Android applications.
platform-agnostic binary analysis framework.
Yet another Android decompiler.
Binary Analysis and Reverse engineering Framework.
Analyze, reverse engineer, and extract firmware images.
Decompile x86/SPARC/PowerPC/ST-20 binaries to C.
run basic functions from stripped binaries cross platform.
cwe_checker finds vulnerable patterns in binary executables.
A work-in-progress deobfuscator for movfuscated binaries.
GDB plugin.
Decompile Android files.
Java decompiler and disassembler.
Runtime Mobile Exploration.
GDB plugin (only python2.7).
GDB front-end/reverse engineering tool, focused on game-hacking and automation.
A tool which uses intel pin for Side Channel Analysis.
An interactive disassembler for x86/ARM/MIPS which can generate indented pseudo-code with colored syntax.
A GDB plugin that provides a suite of utilities to hack around GDB easily.
A portable reversing framework.
Dynamic Binary Analysis (DBA) framework.
Decompile Python 2.7 binaries (.pyc).
A theorem prover from Microsoft Research.
Collection of utilities including an ActionScript 3 assembler/disassembler.
A Python script for analyzing Flash files.
Steganography
Operating Systems
Starter Packs
Wargames
Wikis
Writeups Collections
Write-ups for CTF challenges by 0e85dc6eaf
CTF challenges + write-ups archive maintained by the community.
Scraps all writeup from CTF Time and organize which to read first.
CTF write-ups repo maintained by HackThisSite team.
CTF competition write-ups by mzfr
A collection of CTF write-ups all using pwntools.
A collection of CTF write-ups by the SababaSec team
CTF write-ups repo maintained by SmokeLeetEveryday team.
CTF challenges + write-ups archive maintained by the community.