
Awesome OSINT Arsenal
One-command installer for 750+ OSINT and security tools
Description
Doing security or intelligence work, the tools are always scattered: this GitHub repo, that blog post, some forum thread. Your bookmarks hold dozens of links, and when you actually need one you still have to clone it, install dependencies and set up the environment before the real work even starts.
Awesome OSINT Arsenal gathers that into one list plus a set of installers. Over 750 open-source tools across 50 categories — from OSINT gathering, social media intelligence (SOCMINT) and geospatial intelligence (GEOINT) through red team, blue team, digital forensics and reverse engineering — each with an install command or a verified link. Sherlock, Maigret, Amass, Nuclei, BloodHound, Ghidra, Volatility and radare2 are all in there, so no more hunting across the web.
The convenient part is installing a whole category at once: one command sets up an entire set — `osint.sh` for gathering tools, `redteam.sh` for the offensive set, `blueteam.sh` for defensive tools like Wazuh, Sigma and Suricata, `forensics.sh` for DFIR and RE, `hardware.sh` for hardware and SDR, plus a labs script of deliberately vulnerable apps to practice on (DVWA, Juice Shop). The scripts detect the distribution: apt works best on Kali, Debian, Ubuntu, Parrot, Mint and Pop!_OS, Arch and Fedora fall back to git/pip/go, and a trimmed Termux subset runs on Android.
Worth stating plainly: it is aimed at lawful, authorized security research, teaching and forensics. The tools themselves are neutral — red-team tools for authorized penetration testing, blue-team tools for defence — and the repo carries a disclaimer requiring use only within systems you own or are authorized to assess. MIT licensed.
A list organised by category: 750+ tools sorted into 50 categories — OSINT, SOCMINT, GEOINT, network recon, dark web, forensics — so you pick from the right section instead of searching the web.
Install a category in one command: separate osint / redteam / blueteam / forensics / hardware / labs scripts each set up a whole set without cloning and configuring tool by tool.
Multi-distro support: the scripts detect the system — apt is most complete on Kali, Debian, Ubuntu, Parrot, Mint and Pop!_OS, with a git/pip/go fallback on Arch and Fedora.
Termux support: a dedicated trimmed subset runs on Android under Termux with no sudo, bringing part of the arsenal to a phone.
Both red and blue: not only offensive tools — defensive ones such as Wazuh, Sigma, Suricata and Velociraptor are included too, covering both sides.
Practice labs: bundles deliberately vulnerable environments like DVWA and Juice Shop for lawful local practice instead of live targets.
Every entry installable: each tool carries an install command or a verified link, with dead links maintained rather than left as a static list.
Awesome OSINT Arsenal gathers that into one list plus a set of installers. Over 750 open-source tools across 50 categories — from OSINT gathering, social media intelligence (SOCMINT) and geospatial intelligence (GEOINT) through red team, blue team, digital forensics and reverse engineering — each with an install command or a verified link. Sherlock, Maigret, Amass, Nuclei, BloodHound, Ghidra, Volatility and radare2 are all in there, so no more hunting across the web.
The convenient part is installing a whole category at once: one command sets up an entire set — `osint.sh` for gathering tools, `redteam.sh` for the offensive set, `blueteam.sh` for defensive tools like Wazuh, Sigma and Suricata, `forensics.sh` for DFIR and RE, `hardware.sh` for hardware and SDR, plus a labs script of deliberately vulnerable apps to practice on (DVWA, Juice Shop). The scripts detect the distribution: apt works best on Kali, Debian, Ubuntu, Parrot, Mint and Pop!_OS, Arch and Fedora fall back to git/pip/go, and a trimmed Termux subset runs on Android.
Worth stating plainly: it is aimed at lawful, authorized security research, teaching and forensics. The tools themselves are neutral — red-team tools for authorized penetration testing, blue-team tools for defence — and the repo carries a disclaimer requiring use only within systems you own or are authorized to assess. MIT licensed.
Features
A list organised by category: 750+ tools sorted into 50 categories — OSINT, SOCMINT, GEOINT, network recon, dark web, forensics — so you pick from the right section instead of searching the web.
Install a category in one command: separate osint / redteam / blueteam / forensics / hardware / labs scripts each set up a whole set without cloning and configuring tool by tool.
Multi-distro support: the scripts detect the system — apt is most complete on Kali, Debian, Ubuntu, Parrot, Mint and Pop!_OS, with a git/pip/go fallback on Arch and Fedora.
Termux support: a dedicated trimmed subset runs on Android under Termux with no sudo, bringing part of the arsenal to a phone.
Both red and blue: not only offensive tools — defensive ones such as Wazuh, Sigma, Suricata and Velociraptor are included too, covering both sides.
Practice labs: bundles deliberately vulnerable environments like DVWA and Juice Shop for lawful local practice instead of live targets.
Every entry installable: each tool carries an install command or a verified link, with dead links maintained rather than left as a static list.

