1.jpg
724.9 KB
Master Termux and unlock real Linux power on your phone.
Learn essential commands, automation, scripting, OSINT, and cybersecurity basics β all from your Android device.
Your first step to hacking starts here.
01 The Termux Foundation
02 Interacting with the Android UI
03 Accessing Device Hardware
04 Communication & Connectivity
05 Process, Job, & Session Control
06 Advanced File & Text Manipulation
07 Scripting & Automation
08 Storage & Archive Management
09 Advanced Networking & Secure Connections
10 System Internals & Diagnostics
For ethical hacking, cybersecurity tools:
π Follow HexSec on facebook page
π Link: https://www.facebook.com/people/HexSec-Community/61587062189423/
#Termux #HackFromPhone #HexSec #CyberLearning
Learn essential commands, automation, scripting, OSINT, and cybersecurity basics β all from your Android device.
Your first step to hacking starts here.
01 The Termux Foundation
02 Interacting with the Android UI
03 Accessing Device Hardware
04 Communication & Connectivity
05 Process, Job, & Session Control
06 Advanced File & Text Manipulation
07 Scripting & Automation
08 Storage & Archive Management
09 Advanced Networking & Secure Connections
10 System Internals & Diagnostics
For ethical hacking, cybersecurity tools:
π Follow HexSec on facebook page
π Link: https://www.facebook.com/people/HexSec-Community/61587062189423/
#Termux #HackFromPhone #HexSec #CyberLearning
β€21π₯3
1.jpg
2.9 MB
π Linux Commands for Cybersecurity & Forensics Handbook
Master the art of Linux security, threat detection, and digital forensics with practical commands, advanced scripts, and professional investigation techniques.
π» What youβll learn:
π Detect crypto-mining malware, rootkits & suspicious processes
π§ͺ Perform forensic imaging, memory analysis & timeline reconstruction
π Monitor CPU, memory, network traffic & firewall logs
π€ Audit user accounts, SSH security & permissions
βοΈ Automate security checks & incident response scripts
π From now on, all carousels and new content will be published on Facebook.
You can follow me here:
π https://www.facebook.com/people/HexSec-Community/61587062189423/
π All my social media profiles and links can be found here:
π https://hexsec.netlify.app
Master the art of Linux security, threat detection, and digital forensics with practical commands, advanced scripts, and professional investigation techniques.
π» What youβll learn:
π Detect crypto-mining malware, rootkits & suspicious processes
π§ͺ Perform forensic imaging, memory analysis & timeline reconstruction
π Monitor CPU, memory, network traffic & firewall logs
π€ Audit user accounts, SSH security & permissions
βοΈ Automate security checks & incident response scripts
π From now on, all carousels and new content will be published on Facebook.
You can follow me here:
π https://www.facebook.com/people/HexSec-Community/61587062189423/
π All my social media profiles and links can be found here:
π https://hexsec.netlify.app
π₯9β€8
π₯ Android RAT / C2 Frameworks β GitHub Collection
πΉ AhMyth
π LINK
β‘οΈ Classic Android RAT with desktop control panel β ideal for studying Android malware behavior.
πΉ AndroRAT
π LINK
β‘οΈ Simple socket-based Android RAT (Java + Python) to understand core client-server RAT logic.
πΉ Zero-RAT
π LINK
β‘οΈ Web-based Android RAT powered by Firebase β no port forwarding required.
πΉ DogeRAT
π LINK
β‘οΈ Telegram-controlled Android RAT with bot-based command & data handling.
πΉ H4CKINTO
π LINK
β‘οΈ Cloud-based Android monitoring & management suite (L3MON-style framework).
πΉ AURORA-EYE
π LINK
β‘οΈ Stealth Android RAT using Telegram as command & control.
πΉ Pupy
π LINK
β‘οΈ Cross-platform post-exploitation & C2 framework (Windows, Linux, macOS, Android).
πΉ L3MON
π LINK
β‘οΈ Popular Node.js Android RAT with web dashboard and APK builder.
β οΈ Use only in authorized environments
πΉ AhMyth
π LINK
β‘οΈ Classic Android RAT with desktop control panel β ideal for studying Android malware behavior.
πΉ AndroRAT
π LINK
β‘οΈ Simple socket-based Android RAT (Java + Python) to understand core client-server RAT logic.
πΉ Zero-RAT
π LINK
β‘οΈ Web-based Android RAT powered by Firebase β no port forwarding required.
πΉ DogeRAT
π LINK
β‘οΈ Telegram-controlled Android RAT with bot-based command & data handling.
πΉ H4CKINTO
π LINK
β‘οΈ Cloud-based Android monitoring & management suite (L3MON-style framework).
πΉ AURORA-EYE
π LINK
β‘οΈ Stealth Android RAT using Telegram as command & control.
πΉ Pupy
π LINK
β‘οΈ Cross-platform post-exploitation & C2 framework (Windows, Linux, macOS, Android).
πΉ L3MON
π LINK
β‘οΈ Popular Node.js Android RAT with web dashboard and APK builder.
β οΈ Use only in authorized environments
GitHub
GitHub - Morsmalleo/AhMyth: Cross-Platform Android Remote Administration Tool | Official maintained repository for the AhMyth R.A.Tβ¦
Cross-Platform Android Remote Administration Tool | Official maintained repository for the AhMyth R.A.T Project | A dedicated revival of the original repository at https://GitHub.com/AhMyth/AhMyth-...
β€22π₯9π2
1. http://ChatGPT.com (solve any problem)
2. http://PicWish.com (remove backgrounds)
3. http://Perplexity.ai (research anything)
4. http://Suno.ai (compose music)
5. http://Canva.com (design graphics)
6. http://ElevenLabs.io (clone voices)
7. http://Grammarly.com (perfect writing)
8. http://Luma.ai (create 3D models)
9. http://RecCloud.com (summarize YouTube)
10. http://Runway.ml (edit videos)
11. http://Descript.com (edit podcasts)
12. http://Syllaby.io (create faceless videos)
13. https://skysnail.io/ (create viral thumbnails)
Donβt lose this list, it could be incredibly helpful.
2. http://PicWish.com (remove backgrounds)
3. http://Perplexity.ai (research anything)
4. http://Suno.ai (compose music)
5. http://Canva.com (design graphics)
6. http://ElevenLabs.io (clone voices)
7. http://Grammarly.com (perfect writing)
8. http://Luma.ai (create 3D models)
9. http://RecCloud.com (summarize YouTube)
10. http://Runway.ml (edit videos)
11. http://Descript.com (edit podcasts)
12. http://Syllaby.io (create faceless videos)
13. https://skysnail.io/ (create viral thumbnails)
Donβt lose this list, it could be incredibly helpful.
ChatGPT
ChatGPT helps you get answers, find inspiration, and be more productive.
β€27π€1
1.jpg
759 KB
Kali Linux Ultimate Hacking Tools Cheat Sheet
20 essential tools every ethical hacker must know β Nmap, Metasploit, SQLmap, Aircrack-ng, Burp Suite, Hashcat, Wireshark & more.
Each tool includes a short description + 10 powerful commands.
Perfect for learning, pentesting & bug bounty π
Save it and level up π Join me on Instagram and Facebook β thatβs where I post all my content now.
If you want to see everything and stay updated, follow me there π
πΈ Instagram: https://www.facebook.com/people/HexSec-Community/61587062189423/
π Facebook: https://www.instagram.com/ethicalshadow/
See you there π₯
20 essential tools every ethical hacker must know β Nmap, Metasploit, SQLmap, Aircrack-ng, Burp Suite, Hashcat, Wireshark & more.
Each tool includes a short description + 10 powerful commands.
Perfect for learning, pentesting & bug bounty π
Save it and level up π Join me on Instagram and Facebook β thatβs where I post all my content now.
If you want to see everything and stay updated, follow me there π
πΈ Instagram: https://www.facebook.com/people/HexSec-Community/61587062189423/
π Facebook: https://www.instagram.com/ethicalshadow/
See you there π₯
β€17π3
Top 10 Ethical Hacking OS π
1οΈβ£ Kali Linux β Industry standard
2οΈβ£ Parrot OS β Privacy focused
3οΈβ£ BlackArch β Advanced tools
4οΈβ£ BackBox β Simple & fast
5οΈβ£ Fedora Security Lab β Research ready
6οΈβ£ Tails OS β Full anonymity
7οΈβ£ DEFT Linux β Digital forensics
8οΈβ£ Pentoo β GPU optimized
9οΈβ£ ArchStrike β Minimal control
π Cyborg Hawk β Beginner friendly
π Educational use only πΈ Instagram: https://www.facebook.com/people/HexSec-Community/61587062189423/
π Facebook: https://www.instagram.com/ethicalshadow/
See you there π₯
1οΈβ£ Kali Linux β Industry standard
2οΈβ£ Parrot OS β Privacy focused
3οΈβ£ BlackArch β Advanced tools
4οΈβ£ BackBox β Simple & fast
5οΈβ£ Fedora Security Lab β Research ready
6οΈβ£ Tails OS β Full anonymity
7οΈβ£ DEFT Linux β Digital forensics
8οΈβ£ Pentoo β GPU optimized
9οΈβ£ ArchStrike β Minimal control
π Cyborg Hawk β Beginner friendly
π Educational use only πΈ Instagram: https://www.facebook.com/people/HexSec-Community/61587062189423/
π Facebook: https://www.instagram.com/ethicalshadow/
See you there π₯
π₯10β€8π2β1
1.jpg
411.6 KB
π§ +100 Linux Commands in one place! Fast lookup by category for files, processes, networking, text tools, Git, cron, and more. π π Educational use only πΈ Instagram: https://www.facebook.com/people/HexSec-Community/61587062189423/
π Facebook: https://www.instagram.com/ethicalshadow/
π Facebook: https://www.instagram.com/ethicalshadow/
β€6
π‘ Wireshark.pdf
6.1 MB
π‘ Master Wireshark β Stop Guessing, Start Analyzing
If youβre trying to get serious about cybersecurity, Wireshark isnβt optional. This guide cuts the nonsense and shows you how to analyze real traffic: Nmap scans, ARP spoofing, DNS/ICMP tunneling, cleartext creds, HTTP/FTP investigation, and even decrypting HTTPS.
π Website: https://hexsec.netlify.app
Level up your network analysis and hunting skills β the tools are right here.
If youβre trying to get serious about cybersecurity, Wireshark isnβt optional. This guide cuts the nonsense and shows you how to analyze real traffic: Nmap scans, ARP spoofing, DNS/ICMP tunneling, cleartext creds, HTTP/FTP investigation, and even decrypting HTTPS.
π Website: https://hexsec.netlify.app
Level up your network analysis and hunting skills β the tools are right here.
β€8π₯3
1.jpg
609.9 KB
π New PDF drop: Top 10 Mobile Penetration Testing Tools for Ethical Hackers π±π
A fast, practical, repeatable mobile AppSec workflow (MobSF, Frida, Objection, mitmproxy, JADX, Apktool, Drozer, Androguard, Quark Engine + more).
π HexSec links & social media on our profile.
π‘ Educational content for ethical use only.
If you found this useful, share it with others. π Website: https://hexsec.netlify.app
A fast, practical, repeatable mobile AppSec workflow (MobSF, Frida, Objection, mitmproxy, JADX, Apktool, Drozer, Androguard, Quark Engine + more).
π HexSec links & social media on our profile.
π‘ Educational content for ethical use only.
If you found this useful, share it with others. π Website: https://hexsec.netlify.app
π₯7β€5
Top Mobile Pentest Tools π±π
MobSF
Automated static & dynamic mobile app analysis
https://github.com/MobSF/Mobile-Security-Framework-MobSF
Frida
Runtime instrumentation and live app hooking
https://github.com/frida/frida
Objection
Frida-based mobile exploration toolkit
https://github.com/sensepost/objection
mitmproxy
Intercept and inspect HTTPS traffic
https://github.com/mitmproxy/mitmproxy
apk-mitm
Patch APKs for HTTPS traffic inspection
https://github.com/shroudedcode/apk-mitm
JADX
DEX to Java decompiler for fast code review
https://github.com/skylot/jadx
Apktool
Decode, modify and rebuild APK files
https://github.com/iBotPeaches/Apktool
Drozer
Android IPC and component security testing
https://github.com/FSecureLABS/drozer
Androguard
Python toolkit for APK and DEX analysis
https://github.com/androguard/androguard
Quark Engine
Rule-based Android malware and risk analysis
https://github.com/quark-engine/quark-engine
Ghidra
Advanced native code reverse engineering
https://github.com/NationalSecurityAgency/ghidra
radare2
Low-level binary analysis framework
https://github.com/radareorg/radare2
Wireshark
Network packet capture and analysis
https://github.com/wireshark/wireshark
ADB
Android Debug Bridge for device interaction
https://github.com/aosp-mirror/platform_system_core
π‘ Educational content for ethical use only
π All HexSec social media & links:
https://hexsec.netlify.app
MobSF
Automated static & dynamic mobile app analysis
https://github.com/MobSF/Mobile-Security-Framework-MobSF
Frida
Runtime instrumentation and live app hooking
https://github.com/frida/frida
Objection
Frida-based mobile exploration toolkit
https://github.com/sensepost/objection
mitmproxy
Intercept and inspect HTTPS traffic
https://github.com/mitmproxy/mitmproxy
apk-mitm
Patch APKs for HTTPS traffic inspection
https://github.com/shroudedcode/apk-mitm
JADX
DEX to Java decompiler for fast code review
https://github.com/skylot/jadx
Apktool
Decode, modify and rebuild APK files
https://github.com/iBotPeaches/Apktool
Drozer
Android IPC and component security testing
https://github.com/FSecureLABS/drozer
Androguard
Python toolkit for APK and DEX analysis
https://github.com/androguard/androguard
Quark Engine
Rule-based Android malware and risk analysis
https://github.com/quark-engine/quark-engine
Ghidra
Advanced native code reverse engineering
https://github.com/NationalSecurityAgency/ghidra
radare2
Low-level binary analysis framework
https://github.com/radareorg/radare2
Wireshark
Network packet capture and analysis
https://github.com/wireshark/wireshark
ADB
Android Debug Bridge for device interaction
https://github.com/aosp-mirror/platform_system_core
π‘ Educational content for ethical use only
π All HexSec social media & links:
https://hexsec.netlify.app
β€11π3π1
π₯ Top XSS Tools Every Ethical Hacker Must Know
π Real-world, open-source tools for discovering and exploiting XSS vulnerabilities.
1. XSStrike β (Smart XSS scanner)
https://github.com/s0md3v/XSStrike
2. DalFox β (Fast and modern)
https://github.com/hahwul/dalfox
3. OWASP ZAP β (Beginner-friendly GUI)
https://github.com/zaproxy/zaproxy
4. BeEF β (Post-XSS control)
https://github.com/beefproject/beef
5. XSS Hunter β (Blind XSS detector)
https://github.com/mandatoryprogrammer/xsshunter
6. XSSer β (Fuzzing brute-force tool)
https://github.com/epsylon/xsser
7. KXSS β (Reflection recon)
https://github.com/tomnomnom/hacks/tree/master/kxss
8. PwnXSS β (Simple Python scanner)
https://github.com/pwn0sec/PwnXSS
9. FinDOM-XSS β (DOM XSS finder)
https://github.com/dwisiswant0/findom-xss
10. XSpear β (Ruby-based hybrid)
https://github.com/hahwul/XSpear
π² Want to see how each tool works in action?
Follow me on social for daily hacking demos, tutorials & XSS breakdowns.
π Real-world, open-source tools for discovering and exploiting XSS vulnerabilities.
1. XSStrike β (Smart XSS scanner)
https://github.com/s0md3v/XSStrike
2. DalFox β (Fast and modern)
https://github.com/hahwul/dalfox
3. OWASP ZAP β (Beginner-friendly GUI)
https://github.com/zaproxy/zaproxy
4. BeEF β (Post-XSS control)
https://github.com/beefproject/beef
5. XSS Hunter β (Blind XSS detector)
https://github.com/mandatoryprogrammer/xsshunter
6. XSSer β (Fuzzing brute-force tool)
https://github.com/epsylon/xsser
7. KXSS β (Reflection recon)
https://github.com/tomnomnom/hacks/tree/master/kxss
8. PwnXSS β (Simple Python scanner)
https://github.com/pwn0sec/PwnXSS
9. FinDOM-XSS β (DOM XSS finder)
https://github.com/dwisiswant0/findom-xss
10. XSpear β (Ruby-based hybrid)
https://github.com/hahwul/XSpear
π² Want to see how each tool works in action?
Follow me on social for daily hacking demos, tutorials & XSS breakdowns.
β€14π₯4π€1
1.jpg
316.7 KB
π΅ Blue Team Toolkit β Essential Resources for Defenders π
The Blue Team Toolkit is a complete collection of tools and resources every cybersecurity defender needs. From network discovery and vulnerability management to incident response and malware analysis, this guide has you covered. π
Inside you will find:
πΈ Network Discovery & Mapping: Nmap, Masscan, Shodan, ZMap
π‘ Vulnerability Management: OpenVAS, Nessus, Nexpose
π‘ Security Monitoring: Sysmon, Wazuh, ELK, Splunk
π§© Threat Intelligence: MISP, VirusTotal, MITRE ATT&CK
β‘οΈ Incident Response: NIST 800-61, TheHive, Velociraptor
𧬠Malware Analysis: Cuckoo Sandbox, Ghidra, YARA, ClamAV
πΎ Data Recovery & Forensics: Autopsy, FTK, TestDisk, Volatility
This toolkit empowers defenders to detect, analyze, and respond to cyber threats effectively, making it a must-have for anyone in cybersecurity. π‘
π Tools β’ Tutorials β’ Community
π https://hexsec.netlify.app
The Blue Team Toolkit is a complete collection of tools and resources every cybersecurity defender needs. From network discovery and vulnerability management to incident response and malware analysis, this guide has you covered. π
Inside you will find:
πΈ Network Discovery & Mapping: Nmap, Masscan, Shodan, ZMap
π‘ Vulnerability Management: OpenVAS, Nessus, Nexpose
π‘ Security Monitoring: Sysmon, Wazuh, ELK, Splunk
π§© Threat Intelligence: MISP, VirusTotal, MITRE ATT&CK
β‘οΈ Incident Response: NIST 800-61, TheHive, Velociraptor
𧬠Malware Analysis: Cuckoo Sandbox, Ghidra, YARA, ClamAV
πΎ Data Recovery & Forensics: Autopsy, FTK, TestDisk, Volatility
This toolkit empowers defenders to detect, analyze, and respond to cyber threats effectively, making it a must-have for anyone in cybersecurity. π‘
π Tools β’ Tutorials β’ Community
π https://hexsec.netlify.app
β€14β‘2π₯1π―1
2.jpg
2.9 MB
Linux is the backbone of modern cybersecurity.
If you work in Blue Team, Red Team, SOC, or Incident Response, mastering the Linux command line gives you speed, control, and confidence when incidents hit.
This guide focuses on real-world Linux commands for monitoring, forensics, incident response, and system hardening β practical knowledge, no theory fluff.
π Learn fast. Respond faster. Stay ahead.
π Follow us for more guides & tools
Instagram: https://www.instagram.com/ethicalshadow/
Facebook: https://www.facebook.com/hexsecteam
π‘ Educational content only.
If you work in Blue Team, Red Team, SOC, or Incident Response, mastering the Linux command line gives you speed, control, and confidence when incidents hit.
This guide focuses on real-world Linux commands for monitoring, forensics, incident response, and system hardening β practical knowledge, no theory fluff.
π Learn fast. Respond faster. Stay ahead.
π Follow us for more guides & tools
Instagram: https://www.instagram.com/ethicalshadow/
Facebook: https://www.facebook.com/hexsecteam
π‘ Educational content only.
β€15π2π₯1π1
1.jpg
1.8 MB
π¨ NEW FREE PDF (39 Pages)
Windows Event Log Analysis β Advanced Threat Detection
Most breaches arenβt missed because logs donβt exist.
Theyβre missed because teams donβt know which Event IDs to watch.
Whatβs inside:
π Critical Windows Event IDs (4624, 4625, 4648, 4688, more)
βοΈ Lateral movement & persistence detection
π Event correlation & attack timelines
π¬ DFIR & forensics procedures
β‘οΈ Performance optimization scripts
π‘ SIEM rules (Splunk, Elastic, Sentinel)
π Follow us for more guides & tools
Instagram: https://www.instagram.com/ethicalshadow/
Facebook: https://www.facebook.com/hexsecteam
π‘ Educational content only.
Windows Event Log Analysis β Advanced Threat Detection
Most breaches arenβt missed because logs donβt exist.
Theyβre missed because teams donβt know which Event IDs to watch.
Whatβs inside:
π Critical Windows Event IDs (4624, 4625, 4648, 4688, more)
βοΈ Lateral movement & persistence detection
π Event correlation & attack timelines
π¬ DFIR & forensics procedures
β‘οΈ Performance optimization scripts
π‘ SIEM rules (Splunk, Elastic, Sentinel)
π Follow us for more guides & tools
Instagram: https://www.instagram.com/ethicalshadow/
Facebook: https://www.facebook.com/hexsecteam
π‘ Educational content only.
β€11π₯2π₯°1