Skip to content
KitploitKITPLOIT
StrumentiExploitsBlog
Log in
Invia
StrumentiExploitsBlog
Invia

Strumenti di Hacking, PenTest e Cybersecurity per il tuo Arsenale di Sicurezza!

Kitploit è una directory di strumenti di hacking, cybersecurity e pentesting. Scopri gli ultimi aggiornamenti dei progetti per trovare vulnerabilità, analizzare sistemi, automatizzare i test e rafforzare la tua sicurezza.

··Feed·Contatto·Privacy·© 2026 Kitploit

Directory degli strumenti

Categorie

Vedi tutte le categorie
Loading categories
habu — Kit di hacking | Kitploit
Strumenti/GitHubGitHub/fportantier/habu
OSINT (Open Source Intelligence)Raccolta InformazioniSicurezza WebSicurezza di ReteCrittografiaPenetration TestingApprendimento e FormazioneAnalisi DNS
GitHubfportantier/habu

habu

Kit di hacking

Vedi Repository
983163179 mesi faRevisionato da Kitploit

Più Popolari

Vedi tutti →

Scopri gli strumenti più utilizzati dalla nostra community.

Esplora tutti gli strumenti

Sfoglia la nostra collezione di strumenti

Vedi tutti gli strumenti →
Condividi

Habu Hacking Toolkit

Sto sviluppando Habu per insegnare (e imparare) alcuni concetti su Python e l'Hacking di Rete.

Alcune tecniche implementate nella versione attuale sono:

  • ARP Poisoning e Sniffing
  • DHCP Discover e Starvation
  • Identificazione dei Sottodomini
  • Clonazione di Certificati
  • Analisi TCP (ISN, Flags)
  • Verifica nomi utente sui social network
  • Identificazione delle Tecnologie Web
  • e molto altro!

Lo sviluppo di questo software è supportato da Securetia SRL (https://www.securetia.com/)

Hacking con Habu

Vari scenari di utilizzo utili sono dettagliati in https://fportantier.github.io/hacking-with-habu/

Video di Utilizzo

La seguente playlist di Youtube contiene video che mostrano l'installazione e l'utilizzo:

https://www.youtube.com/watch?v=rgp9seLLyqE&list=PL4HZnX8VnFXqSvNw7x-bXOn0dgxNdfnVD

Gruppo Telegram

Se vuoi discutere di alcune funzionalità di Habu, possibili miglioramenti, ecc., puoi utilizzare il gruppo Telegram di Habu: https://t.me/python_habu

Contribuire

Issues e pull request devono essere inviate al repository github: https://github.com/fportantier/habu

Installazione

Metodo consigliato per installare:

::

$ python3 -m pip install --upgrade git+https://github.com/fportantier/habu.git

Questo funziona su qualsiasi sistema che abbia Python 3 installato.

Nota: Su alcuni sistemi (come Microsoft Windows) è necessario modificare il comando per puntare al percorso corretto dell'eseguibile Python.

Aggiornamento

Ora abbiamo un comando per aggiornare direttamente dal repository Git e pulire eventuali vecchi comandi che non esistono più o che sono stati rinominati.

::

$ habu.upgrade

Ottenere Aiuto

Tutti i comandi implementano l'opzione '--help', che mostra l'aiuto, gli argomenti, le opzioni e i valori predefiniti.

Modalità Verbosa

Quasi tutti i comandi implementano la modalità verbosa con l'opzione '-v'. Questo può darti alcune informazioni extra su ciò che habu sta facendo.

Indice dei Comandi

  • arp.ping <#habuarpping>_
  • arp.poison <#habuarppoison>_
  • arp.sniff <#habuarpsniff>_
  • asydns <#habuasydns>_
  • b64 <#habub64>_
  • cert.clone <#habucertclone>_
  • cert.crtsh <#habucertcrtsh>_
  • cert.names <#habucertnames>_
  • config.del <#habuconfigdel>_
  • config.set <#habuconfigset>_
  • config.show <#habuconfigshow>_
  • crack.luhn <#habucrackluhn>_
  • crack.snmp <#habucracksnmp>_
  • crypto.fernet <#habucryptofernet>_
  • crypto.fernet.genkey <#habucryptofernetgenkey>_
  • crypto.gppref <#habucryptogppref>_
  • crypto.hasher <#habucryptohasher>_
  • crypto.xor <#habucryptoxor>_
  • data.enrich <#habudataenrich>_
  • data.extract.domain <#habudataextractdomain>_
  • data.extract.email <#habudataextractemail>_
  • data.extract.fqdn <#habudataextractfqdn>_
  • data.extract.ipv4 <#habudataextractipv4>_
  • data.filter <#habudatafilter>_
  • data.select <#habudataselect>_
  • dhcp.discover <#habudhcpdiscover>_
  • dhcp.starvation <#habudhcpstarvation>_
  • dns.lookup.forward <#habudnslookupforward>_
  • dns.lookup.reverse <#habudnslookupreverse>_
  • eicar <#habueicar>_
  • forkbomb <#habuforkbomb>_
  • fqdn.finder <#habufqdnfinder>_
  • gateway.find <#habugatewayfind>_
  • host <#habuhost>_
  • http.headers <#habuhttpheaders>_
  • http.options <#habuhttpoptions>_
  • http.tech <#habuhttptech>_
  • icmp.ping <#habuicmpping>_
  • ip.asn <#habuipasn>_
  • ip.geolocation <#habuipgeolocation>_
  • ip.internal <#habuipinternal>_
  • ip.public <#habuippublic>_
  • karma <#habukarma>_
  • karma.bulk <#habukarmabulk>_
  • land <#habuland>_
  • nc <#habunc>_
  • net.contest <#habunetcontest>_
  • net.interfaces <#habunetinterfaces>_
  • nmap.excluded <#habunmapexcluded>_
  • nmap.open <#habunmapopen>_
  • nmap.ports <#habunmapports>_
  • protoscan <#habuprotoscan>_
  • server.ftp <#habuserverftp>_
  • shodan <#habushodan>_
  • shodan.query <#habushodanquery>_
  • tcp.flags <#habutcpflags>_
  • tcp.isn <#habutcpisn>_
  • tcp.scan <#habutcpscan>_
  • tcp.synflood <#habutcpsynflood>_
  • traceroute <#habutraceroute>_
  • upgrade <#habuupgrade>_
  • usercheck <#habuusercheck>_
  • version <#habuversion>_
  • vhosts <#habuvhosts>_
  • virustotal <#habuvirustotal>_
  • web.report <#habuwebreport>_
  • web.screenshot <#habuwebscreenshot>_
  • whois.domain <#habuwhoisdomain>_
  • whois.ip <#habuwhoisip>_

habu.arp.ping

.. code-block::

Usage: habu.arp.ping [OPTIONS] IP

  Invia pacchetti ARP per verificare se un host è attivo nella rete locale.

  Esempio:

  # habu.arp.ping 192.168.0.1
  Ether / ARP is at a4:08:f5:19:17:a4 says 192.168.0.1 / Padding

Options:
  -i TEXT  Interfaccia da usare
  -v       Output dettagliato
  --help   Mostra questo messaggio ed esci.

habu.arp.poison

.. code-block::

Usage: habu.arp.poison [OPTIONS] VICTIM1 VICTIM2

  Invia pacchetti ARP 'is-at' a ciascuna vittima, avvelenando le loro tabelle ARP per inviare il traffico al tuo sistema.

  Nota: Se vuoi un attacco Man In The Middle completamente funzionante, devi abilitare l'inoltro dei pacchetti sul tuo sistema operativo per agire come un router. Puoi farlo usando:

  # echo 1 > /proc/sys/net/ipv4/ip_forward

  Esempio:

  # habu.arpoison 192.168.0.1 192.168.0.77
  Ether / ARP is at f4:96:34:e5:ae:1b says 192.168.0.77
  Ether / ARP is at f4:96:34:e5:ae:1b says 192.168.0.70
  Ether / ARP is at f4:96:34:e5:ae:1b says 192.168.0.77
  ...

Options:
  -i TEXT  Interfaccia da usare
  -v       Verboso
  --help   Mostra questo messaggio ed esci.

habu.arp.sniff

.. code-block::

Usage: habu.arp.sniff [OPTIONS]

  Ascolta i pacchetti ARP e mostra informazioni per ogni dispositivo.

  Colonne: Secondi dall'ultimo pacchetto | IP | MAC | Vendor

  Esempio:

  1   192.168.0.1     a4:08:f5:19:17:a4   Sagemcom Broadband SAS
  7   192.168.0.2     64:bc:0c:33:e5:57   LG Electronics (Mobile Communications)
  2   192.168.0.5     00:c2:c6:30:2c:58   Intel Corporate
  6   192.168.0.7     54:f2:01:db:35:58   Samsung Electronics Co.,Ltd

Options:
  -i TEXT  Interfaccia da usare
  --help   Mostra questo messaggio ed esci.

habu.asydns

.. code-block::

Usage: habu.asydns [OPTIONS]

  Richiede un nome di dominio DNS basato su chiavi RSA pubbliche e private utilizzando il protocollo AsyDNS https://github.com/portantier/asydns

  Esempio:

  $ habu.asydns -v
  Generating RSA key ...
  Loading RSA key ...
  {
      "ip": "181.31.41.231",
      "name": "07286e90fd6e7e6be61d6a7919967c7cf3bbfb23a36edbc72b6d7c53.a.asydns.org"
  }

  $ dig +short 07286e90fd6e7e6be61d6a7919967c7cf3bbfb23a36edbc72b6d7c53.a.asydns.org
  181.31.41.231

Options:
  -u TEXT  URL API
  -g       Forza la generazione di una nuova coppia di chiavi
  -r       Revoca la chiave pubblica
  -v       Output dettagliato
  --help   Mostra questo messaggio ed esci.

habu.b64

.. code-block::

Usage: habu.b64 [OPTIONS] [F]

  Codifica o decodifica dati in base64, proprio come il comando base64.

  $ echo awesome | habu.b64
  YXdlc29tZQo=

  $ echo YXdlc29tZQo= | habu.b64 -d
  awesome

Options:
  -d      decodifica invece di codificare
  --help  Mostra questo messaggio ed esci.

habu.cert.clone

.. code-block::

Scarica lo strumento