Pre-Installed • Zero Configuration

The Arsenal

Alfred Linux ships with 110+ military-grade security, forensics, reverse engineering, and offensive tools — pre-installed, pre-configured, ready to deploy.

110+
Security Tools
12
Categories
0
Setup Required
🔍
Reconnaissance & Scanning
20
Nmap
The gold standard network scanner. Port scanning, service detection, OS fingerprinting.
scanner
Masscan
Internet-scale port scanner. Scans the entire Internet in under 5 minutes.
scanner
Recon-ng
Full-featured web reconnaissance framework with modular design.
osint
theHarvester
E-mail, subdomain, and name harvester from public sources.
osint
Maltego
Interactive data mining and link analysis for OSINT investigations.
osint
Amass
In-depth attack surface mapping and asset discovery via DNS.
dns
Subfinder
Fast passive subdomain enumeration using multiple sources.
dns
Dmitry
Deepmagic information gathering tool for host intelligence.
osint
Enum4linux
SMB/Samba enumeration. Extract shares, users, groups.
smb
NBTscan
NetBIOS name network scanner for Windows host discovery.
smb
Onesixtyone
Fast SNMP community string scanner.
snmp
SNMPwalk
Retrieve full SNMP MIB tree from network devices.
snmp
DNSRecon
DNS enumeration: zone transfers, brute force, cache snooping.
dns
Fierce
DNS reconnaissance tool for locating non-contiguous IP space.
dns
Netdiscover
Active/passive ARP reconnaissance on local networks.
network
ARP-scan
Low-level ARP packet sender for Layer 2 host discovery.
network
Zenmap
Official Nmap GUI with topology mapping and scan comparison.
scanner
Nikto
Web server vulnerability scanner. 6,700+ dangerous files/CGIs.
web
WhatWeb
Website fingerprinter. Identifies CMS, frameworks, server tech.
web
wafw00f
Web Application Firewall detection and fingerprinting.
web
💥
Exploitation
14
Metasploit
The world's most advanced penetration testing framework. 2,000+ exploits.
framework
SQLmap
Automatic SQL injection and database takeover tool.
injection
Hydra
Parallelized network login cracker. Supports 50+ protocols.
brute-force
Medusa
Speedy, massively parallel, modular login brute-forcer.
brute-force
SearchSploit
Command-line search for Exploit-DB's massive exploit archive.
exploits
Responder
LLMNR/NBT-NS/mDNS poisoner for credential harvesting.
mitm
CrackMapExec
Swiss army knife for pentesting Active Directory networks.
ad
Evil-WinRM
Windows Remote Management shell for penetration testing.
windows
Impacket
Python classes for working with SMB, MSRPC, NTLM, Kerberos.
ad
GoBuster
Directory/file, DNS, and vhost brute-forcing in Go.
brute-force
Dirb
URL brute-forcer for hidden web content discovery.
web
DirBuster
Multi-threaded Java app for brute-forcing web directories.
web
Wfuzz
Web application fuzzer for brute-forcing parameters and paths.
fuzzer
FFuf
Fast web fuzzer written in Go. Content discovery and parameter testing.
fuzzer
🔐
Password Cracking
8
John the Ripper
The legendary password cracker. Supports 200+ hash types.
cracker
Hashcat
World's fastest GPU-accelerated password recovery.
gpu
Ophcrack
Windows password cracker using rainbow tables.
rainbow
Hydra
Online brute-force: SSH, FTP, HTTP, RDP, SMB, and 45+ more.
online
Medusa
Parallel, modular brute-forcer with thread-pool architecture.
online
CeWL
Custom wordlist generator — spiders websites for targeted lists.
wordlist
Crunch
Generates wordlists with custom character sets and patterns.
wordlist
Wordlists
Pre-loaded: RockYou, SecLists, common passwords, and custom lists.
data
📡
Wireless Attacks
14
Aircrack-ng
Complete WiFi security suite. WEP/WPA/WPA2 cracking.
wifi
Airodump-ng
802.11 packet capture and export for analysis.
capture
Airmon-ng
Enable monitor mode on wireless interfaces.
monitor
Aireplay-ng
Wireless frame injection — deauth, fake auth, replay attacks.
injection
Kismet
Wireless network detector, sniffer, and IDS.
sniffer
Wifite
Automated wireless attack tool. WEP, WPA, WPS in one command.
automated
Bettercap
Swiss army knife for WiFi, BLE, and network attacks.
mitm
Reaver
WPS brute-force attack. Recovers WPA/WPA2 passphrases.
wps
Pixiewps
Offline WPS pixie-dust attack. Cracks PIN in seconds.
wps
Wash
Scan for WPS-enabled access points.
wps
Hostapd-Mana
Rogue access point with credential harvesting.
evil-twin
MDK3
802.11 proof-of-concept: beacon flood, deauth, SSID brute-force.
dos
MDK4
Next-gen wireless attack tool with modern protocol support.
dos
Fluxion
Automated evil twin attack framework with captive portal.
evil-twin
📻
Software Defined Radio
8
GNU Radio
Free software toolkit for signal processing and radio systems.
framework
GQRX
SDR receiver. Demodulate FM, AM, SSB, CW.
receiver
RTL-SDR
DVB-T dongle turned SDR receiver. 24–1766 MHz.
hardware
RTL_433
Decode ISM band devices: weather stations, car keys, sensors.
decoder
RTL_power
Wideband spectrum scanning and recording tool.
spectrum
HackRF
HackRF One tool suite. TX/RX 1 MHz – 6 GHz.
transceiver
gr-osmosdr
GNU Radio source block for RTL-SDR, HackRF, BladeRF, USRP.
driver
Inspectrum
Offline radio signal analysis and spectrogram viewer.
analysis
🔬
Digital Forensics
10
Volatility
Advanced memory forensics framework. Analyze RAM dumps.
memory
Autopsy
Digital forensics platform. Timeline analysis, keyword search.
platform
Binwalk
Firmware analysis. Extract embedded files and filesystems.
firmware
Foremost
File carving based on headers, footers, and data structures.
carving
Scalpel
High-performance file carver for forensics recovery.
carving
bulk_extractor
Extract emails, URLs, credit cards from disk images at scale.
extraction
fls
List files and directories in a disk image (Sleuth Kit).
sleuthkit
icat
Extract file contents by inode from disk images.
sleuthkit
mmls
Display partition layout of a disk volume.
sleuthkit
img_stat
Display details of a disk image file.
sleuthkit
⚙️
Reverse Engineering
7
Ghidra
NSA's software reverse engineering suite. Decompiler, disassembler.
decompiler
Radare2
Advanced commandline hexadecimal editor and disassembler.
disassembler
r2
Radare2 shorthand — full binary analysis from the terminal.
cli
GDB
GNU Debugger. Step through code, inspect memory, catch exploits.
debugger
objdump
Display information from object files. Disassemble binaries.
binary
strace
Trace system calls and signals. Debug processes in real time.
tracer
ltrace
Library call tracer. Monitor shared library function calls.
tracer
🌐
Network Analysis & MITM
11
Wireshark
The world's most popular network protocol analyzer.
sniffer
TShark
Terminal-based Wireshark. Capture and analyze from CLI.
cli
Tcpdump
Classic packet analyzer. Lightweight, scriptable.
capture
Ettercap
Comprehensive MITM attack suite. ARP poisoning, DNS spoofing.
mitm
mitmproxy
Interactive TLS-capable intercepting HTTP proxy.
proxy
Burp Suite
The #1 web security testing toolkit.
web
Proxychains4
Route TCP connections through proxy chains.
proxy
Socat
Multipurpose relay. Bidirectional data transfer.
relay
Netcat
The TCP/IP swiss army knife.
utility
Ncat
Nmap's reimagined Netcat with SSL and proxy chaining.
utility
hping3
TCP/IP packet assembler/analyzer. Firewall testing.
crafting
🛡️
Cryptography & Steganography
9
Steghide
Embed and extract hidden data in JPEG, BMP, WAV, AU.
stego
Stegseek
Lightning-fast steghide cracker. Billions of passwords/sec.
cracker
ExifTool
Read, write, edit metadata in images, audio, video, PDF.
metadata
zsteg
Detect stegano-hidden data in PNG and BMP.
detection
OpenStego
Digital watermarking and data hiding solution.
stego
OutGuess
Universal steganographic tool with statistical resistance.
stego
GPG
GNU Privacy Guard. Encrypt, sign, and verify.
encryption
OpenSSL
Cryptographic toolkit. TLS/SSL, certificates.
encryption
Age
Modern file encryption. Simple, secure, composable.
encryption
🕸️
Web Application Testing
7
Burp Suite
Industry-standard web vulnerability scanner and proxy.
proxy
ZAP Proxy
OWASP's free web app security scanner.
scanner
SQLmap
Automatic SQL injection exploitation.
injection
WPScan
WordPress security scanner.
cms
JoomScan
Joomla CMS vulnerability scanner.
cms
Commix
Automated command injection exploiter.
injection
XSSer
Cross-site scripting detection and exploitation framework.
xss
👻
Anonymity & Evasion
5
Tor
The Onion Router. Anonymous communication.
network
I2P
Invisible Internet Project. Garlic-routed anonymous network.
network
Proxychains4
Force any app through SOCKS/HTTP proxy chains.
proxy
Macchanger
Spoof MAC addresses. Randomize identity.
identity
AnonSurf
System-wide Tor tunnel. Route ALL traffic through Tor.
system
⚔️
Network Warfare
7
Yersinia
Layer 2 attack framework. STP, CDP, DTP, DHCP attacks.
layer2
Scapy
Packet manipulation. Forge, decode, send any protocol.
crafting
Dsniff
Password sniffer suite for insecure protocols.
sniffer
Arpspoof
ARP cache poisoning for MITM position.
mitm
Urlsnarf
Sniff HTTP requests in CLF format.
sniffer
Webspy
Display sniffed URLs in real-time in a browser.
sniffer
Filesnarf
Sniff NFS traffic and save transferred files.
sniffer