Skip to content
View n0kovo's full-sized avatar
SEIZE THE MEANS OF COMPUTATION
SEIZE THE MEANS OF COMPUTATION
Block or Report

Block or report n0kovo

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
n0kovo/README.md

Mastodon Hack The Box Matrix Keybase Email


Hi! 👋

I'm some random 30-something human from the internet.
I thoroughly enjoy fucking with technology 🤷

🛠 Here's some stuff I've made:


  • – An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space. Used as default subdomain wordlist in reconFTW and included in SecLists.


  • – A curated list of awesome tools, research, papers and other projects related to password cracking and password security.
    Featured on the legendary awesome list.


  • – OSINT tool for scraping names and usernames from large friend lists on Facebook, without being rate limited.
    Featured on kitploit.com


  • – Probably the largest collection of hashcat rule-files anywhere.


  • – Collection of danish base wordlists for cracking danish passwords (Hashcat, John the Ripper etc.)


  • – Generate wordlists of Danish phone numbers by area and/or usage (Mobile, landline etc.) Useful for password cracking or fuzzing Danish targets.


  • – Open-source Python module implementation of the Randonautica app functionality. Using a Quantum Random Number Generator to generate random coordinates by kernel density estimation, similar to how the Randonautica app calculates "Attractor" points.


  • – Table of common WiFi router SSIDs with their corresponding router model, WPA key examples, keyspace, format and default web interface credentials.


  • – Cachet configuration leak dumping PoC exploit. Used by the one and only IppSec here.


  • – Simply output a random user-agent. Use it with tools that don't have a --random-agent flag. Like `random-agent` or $(random-agent)


  • – Quickly look up hashes in your terminal using the HashMob API.


  • – A collection of common InfoSec tools patched to be more stealth. Contributions greatly appreciated!


  • – This script provides you with the missing local storage-encryption feature in Signal Desktop, that the developers refuse to implement, using VeraCrypt.

Popular repositories

  1. awesome-password-cracking awesome-password-cracking Public

    A curated list of awesome tools, research, papers and other projects related to password cracking and password security.

    513 65

  2. n0kovo_subdomains n0kovo_subdomains Public

    An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.

    473 58

  3. fb_friend_list_scraper fb_friend_list_scraper Public

    OSINT tool to scrape names and usernames from large friend lists on Facebook, without being rate limited.

    Python 227 21

  4. awesome-wordlists awesome-wordlists Public

    Forked from gmelodie/awesome-wordlists

    A curated list wordlists for bruteforcing and fuzzing

    78 8

  5. hashcat-rules-collection hashcat-rules-collection Public

    Probably the largest collection of hashcat rule-files anywhere.

    54 8

  6. DomainDouche DomainDouche Public archive

    OSINT tool abusing SecurityTrails domain suggestion API to find potentially related domains by keyword and brute force.

    Python 28 6