Kamerka is the ultimate Internet of Things/Industrial Control Systems reconnaissance tool powered by Shodan, supported by Binary Edge & WhoisXMLAPI. It is recommended by NSA and CISA for immediate actions to reduce exposure across operational technologies and control systems. Kamerka allows users to scan for Internet-facing Industrial Control Systems, Medical and IoT devices, gather passive and active intelligence, pinpoint devices to specific locations, and potentially gain access to devices with default passwords (not recommended).
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
An open-source intelligence collection, research, and artifact management tool inspired by SpiderFoot, Harpoon, and DataSploit.
A modular and script-friendly multithread bruteforcer for managing task parameters in Python scripts.
A Linux-based environment for penetration testing and vulnerability exploitation
Emulates Docker HTTP API with event logging and AWS deployment script.
PwnAuth is an open-source tool for generating and managing authentication tokens for penetration testing and red teaming exercises.
A collection of precompiled Windows exploits for privilege escalation.
A free, safe, and legal training ground for ethical hackers to test and expand their skills
A proof-of-concept obfuscation toolkit for C# post-exploitation tools, designed to conceal malicious activities from detection.
Abusing SCF files to gather user hashes from an unauthenticated writable Windows-based file share.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.