The Toolkit
Reconnaissance, exploitation, defense, and security tools โ battle-tested and operator-approved.
Security & Privacy
NordVPN
RecommendedFast, secure VPN with threat protection. Essential for researchers and operators working remotely.
Proton VPN
RecommendedSwiss-based no-logs VPN with built-in ad blocker, NetShield malware filter, and Secure Core routing through privacy-friendly countries.
Surfshark
RecommendedAll-in-one VPN with CleanWeb ad/malware blocker, unlimited devices, and multi-hop connections. Great value for teams.
Proton Pass
RecommendedOpen-source, end-to-end encrypted password manager with built-in 2FA, email aliases, and passkey support. From the makers of ProtonMail.
1Password
recommendedSecure password manager for teams and individuals. Zero-knowledge architecture, breach monitoring built in.
Bitwarden
openOpen-source password manager. Self-host or cloud โ full control over your credentials.
Reconnaissance
Exploitation
Metasploit
essentialThe world's most used penetration testing framework.
Burp Suite
RecommendedLeading web application security testing toolkit. Community edition is free; Pro unlocks active scanning, advanced crawling, and CI/CD integration.
SQLMap
openAutomatic SQL injection and database takeover tool.
Defense & Monitoring
Training & Labs
Hack The Box
RecommendedReal-world hacking challenges and enterprise security training. Proving grounds for serious operators.
TryHackMe
RecommendedGuided learning paths with hands-on cyber labs. Best starting point for beginners and intermediate learners.
OffSec (OSCP)
RecommendedOffensive Security certifications โ the gold standard for penetration testers. OSCP, OSEP, OSED.
SANS Institute
RecommendedWorld-leading cybersecurity training and GIAC certifications. Deep technical courses for all specialties.
Utilities
SCW Elite tools: IOC Scanner, Detection Vault, Threat Playbooks, and more.