The Frozen Granite Tundra

Jason Nickola

Expert
@chm0dx

creepyCrawler. OSINT tool to crawl a site and extract useful recon info.

465

gitSome. OSINT tool to extract email addresses and other useful info from various GitHub sources.

53

peepedIn. Gather and scrape info from the LinkedIn profiles of a company's employees.

29

leakyBuckets. Find open storage buckets and accessible files across Amazon Web Services, Google Cloud, Microsoft Azure, and Digital Ocean simultaneously

20

maskRequired. Analyze a list of cleartext passwords and output a list of masks with the associated counts for each. Useful in identifying the highest value masks to use when trying to crack hashes from similar datasets.

7

fireprox. AWS API Gateway management tool for creating on the fly HTTP pass-through proxies for unique IP rotation

5

hashPlease. Create hashes for different algorithms from wordlists or dynamically generated from masks in order to practice cracking.

4

envFuscator. Reconstructs command text by referencing env value character indexes. Can be run live and pull values directly from a host's env variables or alternatively by importing a csv file export of env variables from a target system.

2

crtshRecon. Certificate transparency domain recon via crt.sh. Query either web or DB interfaces with features to add stability.

2

Teaching-Notes-and-Extras. Notes and other extras

1

DriverRecon. Enumerate drivers registered on a machine and return back useful info such as certificate subject, certificate issue date, whether IoCreateDevice or IoCreateDeviceSecure are found, and string matches which may represent SDDLs, devices, or symlinks. Designed to make your life a little easier in deciding which drivers to target for exploitation.

1

slaps. Simple and light TCP port scanner when all you want to know is what ports are open

1
12
Apply