Tools & Resources
10 picksCyberChef
Encode, decode, encrypt, analyse. The Swiss Army knife. Always open.
GTFOBins
Unix binaries for privilege escalation. Bookmarked before my first CTF.
PayloadsAllTheThings
The payload reference. Covers everything from SQLi to SSRF to race conditions.
jwt.io
Decode and inspect JWTs instantly. Essential for any web challenge with auth.
Ghidra
NSA's free reverse engineering tool. Handles Go binaries better than IDA for free.
pwntools
Python CTF framework for exploit development. Makes ROP chains feel like cooking.
Burp Suite CE
HTTP proxy, scanner, repeater. The first tool open on every web challenge.
Wireshark
Packet capture and analysis. Good for network forensics and traffic-based challs.
dnsbin
Self-hosted DNS logger for OOB exfiltration. Required for blind SSRF / RCE.
Revshells
One-click reverse shell payloads in every language. Saves time every single time.