Skip to content

Repository files navigation

SEC-SUITE

A security toolkit for password auditing and network reconnaissance. Provides both an interactive CLI and direct terminal commands.

Features

Category Capabilities
Password Attacks Markov Chain (probabilistic), Brute Force (configurable), Dictionary (multi-process), Rule-Based (transformations), Rainbow Table
Performance Multi-processing across all attack modules, optimized password batching with tqdm progress bars
Hash Support Argon2, Bcrypt, Scrypt, SHA-256/512, MD5, and more with auto-detection
Network SYN Stealth Scanner (requires root) & TCP Connect Scanner (non-root), banner grabbing, service name identification, CIDR support
Output Support for JSON and CSV export for all primary operations
Utilities Encoding/decoding (Base64, Hex, URL, HTML), password strength analyzer

Setup

git clone https://github.com/gab-dev-7/sec-suite.git
cd sec-suite
poetry install
poetry shell

Interactive Mode

python run.py

Menu-driven access to all features: password cracking, network scanning, password generation, hash analysis, and encoding utilities.

CLI Usage

Ensure you have run poetry shell first.

Password Cracking

# Dictionary attack
python main.py crack -t <HASH> -a sha256 -m dictionary

# Rule-Based attack (leet speak, numbers, etc.)
python main.py crack -t <HASH> -a md5 -m rules --rule-set all

# Multi-hash mode (load from file)
python main.py crack --target-file hashes.txt -m dictionary -w data/rockyou.txt

# Save results to file (JSON or CSV)
python main.py crack -t <HASH> -m dictionary --output results.csv --format csv

# Markov chain attack
python main.py crack -t <HASH> -a md5 -m markov --max-passwords 50000

# Brute force (lowercase + digits, length 4-6)
python main.py crack -t <HASH> -a sha1 -m bruteforce --charset "ld" --min-length 4 --max-length 6

# Estimate candidate count without cracking
python main.py crack -t <HASH> -m bruteforce --charset "ld" --min-length 4 --max-length 6 --count

Network Scanning

# Stealth SYN scan (Requires root/sudo)
sudo python main.py scan -t 192.168.1.5 -p 1-1000 --scan-type syn

# TCP Connect scan (No root needed, grabs service banners)
python main.py scan -t 192.168.1.0/24 -p 22,80,443 --scan-type connect

# Export scan results
python main.py scan -t 192.168.1.1 -p 1-100 --scan-type connect --output scan.json
python main.py scan -t 192.168.1.1 -p 1-100 --scan-type connect --output scan.csv --format csv

Utilities

# Single password — shows score, entropy, recommendations
python main.py analyze -p "Sup3rS3cr3t!"

# Bulk analysis from file
python main.py analyze -f passwords.txt --output report.csv --format csv
python main.py encode -d "hello world" -e base64 -o encode
python main.py encode -d "hello%20world" -e url -o decode

Project Structure

sec-suite/
├── attacks/     # Modular attack implementations
├── tools/       # Network scanner and encoders
├── utils/       # Core logic (hash detection, crypto)
├── data/        # Wordlists (auto-downloads rockyou.txt)
└── main.py      # CLI entry point

Custom wordlists: place in data/ and use -w data/my_custom_list.txt.

Legal

For educational purposes, authorized security research, and personal auditing only. Do not use against systems you don't own or lack explicit permission to test.

About

[ Read-Only Mirror ]

Topics

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages