BackBox has a massive list of tools that come installed with the OS. There are more than 70 tools in the Backbox and some of the most popular tools are below –
The Metasploit Project is a computer security project that provides information about security vulnerabilities and aids in penetration testing and IDS signature development.
Nmap (Network Mapper) is a security scanner originally written by Gordon Lyon (also known by his pseudonym Fyodor Vaskovich) used to discover hosts and services on a computer network, thus creating a “map” of the network. To accomplish its goal, Nmap sends specially crafted packets to the target host and then analyzes the responses.
The Browser Exploitation Framework (BeEF) is an open-source penetration testing tool used to test and exploit web application and browser-based vulnerabilities. BeEF provides the penetration tester with practical client-side attack vectors. It leverages web application and browser vulnerabilities to assess the security of a target and carry out further intrusions.
OpenVAS (Open Vulnerability Assessment System, the name of the fork originally known as GNessUs) is a framework of several services and tools offering a vulnerability scanning and vulnerability management solution.
w3af (web application attack and audit framework) is an open-source web application security scanner. The project provides a vulnerability scanner and exploitation tool for Web applications
- The Social Engineering Toolkit
Social engineering, in the context of information security, refers to psychological manipulation of people into performing actions or divulging confidential information. A type of confidence trick for the purpose of information gathering, fraud, or system access, it differs from a traditional “con” in that it is often one of many steps in a more complex fraud scheme.
- BackBox 4.4 is based on Ubuntu 14.04.3
- Preinstalled Linux Kernel 3.19
- Ruby 2.1
- Installer with LVM and Full Disk Encryption options
- Handy Thunar custom actions
- RAM wipe at shutdown/reboot
- System improvements
- Upstream components
- Bug corrections
- Performance boost
- Improved Anonymous mode
- Automotive Analysis category
- Predisposition to ARM architecture (armhf Debian packages)
- Predisposition to BackBox Cloud platform
- New and updated hacking tools: apktool, armitage, beef-project, can-utils, dex2jar, fimap, jd-gui, metasploit-framework, openvas, setoolkit, sqlmap, tor, weevely, wpscan, zaproxy, etc.
$ sudo apt-get update$ sudo apt-get dist-upgrade $ sudo apt-get install -f $ sudo apt-get install linux-image-generic-lts-vivid linux-headers-generic-lts-vivid linux-signed-image-generic-lts-vivid $ sudo apt-get purge ri1.9.1 ruby1.9.1 ruby1.9.3 bundler $ sudo gem cleanup $ sudo rm -rf /var/lib/gems/1.* $ sudo apt-get install backbox-default-settings backbox-desktop backbox-menu backbox-tools --reinstall $ sudo apt-get install beef-project metasploit-framework whatweb wpscan setoolkit --reinstall $ sudo apt-get autoremove --purge $ sudo apt-get install openvas sqlite3 $ sudo openvas-launch sync $ sudo openvas-launch start