Skip to main content

InSkillSecArsenal

Arsenal

62 tools that do the actual work on an engagement, ordered by the phase you reach for them. Every entry says what the tool is for and links to the course that teaches it. See the course catalog

Reconnaissance

Map the target without touching it: domains, people, exposed assets.

8 tools

Scanning & enumeration

Find what listens, what version it runs, and where it is weak.

7 tools

Exploitation

Turn a finding into an authenticated foothold.

9 tools

Post-exploitation

Escalate, harvest credentials, pivot, and hold the ground.

9 tools

Web & API

Intercept, fuzz and break applications and their endpoints.

8 tools

Wireless & hardware

Attack what travels through the air and what you can hold.

7 tools

Cloud & containers

Audit IAM, buckets, clusters and images before someone else does.

6 tools

Analysis & forensics

Read traffic, binaries and memory to understand what happened.

8 tools

These tools are listed for authorised testing and education. Running them against systems you do not own or have written permission to test is illegal in most jurisdictions.