// free tools by W-Logic LLC

Security & Network
Tools That Actually Work.

Built by offensive security professionals. No sign-up. No tracking. No paywalls. All calculations run client-side — your data never leaves your browser.

// client-side only // no data collected // no sign-up required
23+
Tools Available
0
Data Collected
100%
Client-Side
Free.
Always, No Catch
// w-logic consulting
Need more than a free tool? Red team ops · Active Directory · Azure identity · Purple team exercises
Schedule a Free Call →
// Ethical Hacker's Workshop Series

EHWS Toolkit

Interactive tools built alongside the EHWS series — operator view, defender view, and the intelligence layer that makes findings screenshot-worthy.

// YouTube · @ethicalsoup
Watch the EHWS Series
Each tool has a companion episode — attack walkthrough, detection engineering, and the build process.
Watch on YouTube →
EHWS
SIGMA Rule Builder
Live YAML generation with syntax highlighting. Build detection rules visually — MITRE ATT&CK tags, log source, detection conditions, false positives. Copy or download .yml instantly.
SIGMADetectionYAMLMITRE
→ Launch tool
EHWS
ADCS ESC1–ESC16 Reference
All 16 ADCS escalation techniques with attack conditions, live Certipy commands, detection notes, and remediation steps. Filterable by severity. Used in W-Logic PKI audits.
ADCSCertipyPKIESC1-16
→ Launch tool
EHWS
BloodHound Query Builder
25 pre-built Cypher queries across DA paths, ACL abuse, Kerberos, Azure, and enumeration. Live editor with formatter, parameter substitution, and attack context panel per query.
BloodHoundCypherADNeo4j
→ Launch tool
EHWS
Purple Team Scorecard
Track detection outcomes across attack scenarios — Detected, Alerted, Missed, Blocked. MTTD tracking, per-tactic detection rate bars, and print-to-PDF client report.
Purple TeamMTTDDetectionSOC
→ Launch tool
EHWS
C2 Payload Encoder
31 transforms across encoding, obfuscation, format/wrap, and hashing. Base64, XOR, ROT13, PS -EncodedCommand, IEX wrap, NTLM (MD4). Chain builder and entropy meter.
C2ObfuscationRed TeamNTLM
→ Launch tool
EHWS
Kerberos Attack Simulator
7 attack modules — Kerberoasting, AS-REP Roasting, Golden/Silver Ticket, Pass-the-Ticket, Unconstrained Delegation, Overpass-the-Hash. Live command builders for Rubeus, Mimikatz, Impacket.
KerberosRubeusMimikatzImpacket
→ Launch tool
NEW
JWT Decoder & Analyzer
Decode any JWT and understand what each claim means to an attacker and defender. alg:none detection, IDOR sub analysis, privilege claim flags, expiry replay, audience gaps. Operator + defender views.
JWTOAuthAuthPentest
→ Launch tool
NEW
GPO Analyzer
Paste gpresult or Get-GPO output — get operator attack paths and defender detection per finding. 8 GPO attack techniques, 40+ enum commands, SYSVOL abuse, scheduled task persistence.
GPOADGroup PolicySYSVOL
→ Launch tool
NEW
Windows PrivEsc Reference
28 local privilege escalation techniques — Potato attacks, SeBackupPrivilege, unquoted paths, DLL hijacking, AlwaysInstallElevated, GPP passwords, UAC bypass, PrintNightmare. Checklist + enum commands.
PrivEscWindowsSYSTEMPost-Exploit
→ Launch tool
NEW
NTLM Relay Cheatsheet
Complete source → target → outcome attack matrix. 7 coercion methods (PetitPotam, PrinterBug, mitm6, WebDAV, Responder), 5 full relay chain playbooks, signing checks, Splunk detection queries.
NTLMRelayCoercionImpacket
→ Launch tool
NEW
External Recon Tool
Paste a domain — get subdomains via certificate transparency, SPF/DKIM/DMARC analysis, MX routing, email format guessing, phishing viability score, and operator findings with attack notes. Live DNS queries.
OSINTEmail SecurityPhishingExternal
→ Launch tool
NEW
AD Privileged Groups Reference
14 built-in AD groups — Schema Admins, Backup Operators, DnsAdmins, Server Operators, Print Operators and more. Exact abuse path, operator commands, detection events, and remediation per group. Membership analyzer included.
ADEnumerationPrivilegeGroups
→ Launch tool
NEW
Fitness Tracker
Log workouts with sets, reps, weight, muscles, and notes. Progress charts, personal records by exercise, and a 90-day streak calendar. All data stored locally — nothing transmitted.
FitnessTrackerPRsLocalStorage
→ Launch tool
// github.com/ethicalsoup/ad-arsenal

AD Arsenal

Interactive Active Directory attack reference and mind map — built from real pentests, HTB, Vulnlab, TryHackMe, CWL, and CPTS exam prep.

Arsenal
AD Attack Mind Map
Full-screen radial mind map of Active Directory attack techniques. Click any node to jump to the reference card. Colour-coded by category. Zoom, pan, search, and branch collapse across 12 attack categories.
Mind MapADInteractiveReference
→ Launch tool
Arsenal
AD Arsenal Reference
Full AD attack chain — unauthenticated enum through cross-trust exploitation. Every technique has copy-able commands, tool list, severity rating, and operational gotchas from real engagements.
ADADCSKerberosLateral Movement
→ Launch tool
// tool directory

Free Tools, No Strings

Each tool is a standalone utility. Pick one, use it, close the tab. Nothing is tracked, stored, or transmitted.

// live
Subnet Calculator
Enter any IP + CIDR prefix. Instantly get network address, broadcast, usable range, wildcard mask, host count, and binary visualizer. IPv4 & IPv6 supported.
IPv4IPv6CIDRNetworking
→ Launch tool
// live
What Is My IP
Your public IP address, ASN, ISP, geolocation, reverse DNS, and IPv6 status — instantly. Also look up any IP. All data via ipapi.co; no logging on our end.
IPv4IPv6ASNrDNS
→ Launch tool
// live
JSON Formatter
Paste any JSON — pretty-print with syntax highlighting, validate, minify, or explore as a collapsible tree. Two-pane editor. Ctrl+Enter to format. 100% client-side.
JSONValidateMinifyDevOps
→ Launch tool
// live
Hash Identifier
Paste any hash string. Identify MD5, SHA-1, SHA-256, NTLM, bcrypt, LM, and 40+ algorithms with confidence scoring and format notes.
MD5SHA-256NTLMbcrypt
→ Launch tool
// live
Hash Generator
Generate MD5, SHA-1, SHA-256, SHA-512, and NTLM hashes live as you type. Hex, Base64, and Base64URL output via WebCrypto API.
MD5SHA-512NTLMWebCrypto
→ Launch tool
// live
Encoder / Decoder
Base64, URL encode/decode, hex, HTML entities, Unicode escape, ROT13 — all in one tool. Useful for web testing, CTF, and payload crafting.
Base64URL EncodeHexROT13
→ Launch tool
// live
Password Generator
Cryptographically secure passwords and passphrases. NIST SP 800-63B compliant. Entropy meter, passphrase mode. WebCrypto — nothing transmitted.
NISTEntropyPassphraseWebCrypto
→ Launch tool
// live
CRON Builder
Build and validate CRON expressions visually. Plain-English to crontab syntax. Unix, Quartz, and AWS EventBridge. 16 presets included.
DevOpsSysadminAWSUnix
→ Launch tool
// why these tools exist

Built by a Practitioner,
for Practitioners.

Most free tools online are bloated, ad-heavy, or send your data to a server. These don't. Every tool runs entirely in your browser.

Privacy by Architecture
Every tool computes client-side. Your IP addresses, hashes, and passwords are processed in JavaScript in your browser tab — nothing touches a server.
No Friction
No account creation. No email. No cookie consent walls beyond what is legally required. Tools load, you use them, you leave.
Accurate by Default
Built and tested by an OSCP/CRTO/CRTE-certified offensive security consultant who uses these calculations daily in red team operations.
Built by W-Logic
W-Logic LLC is an offensive security consultancy specializing in red team operations, Active Directory attack chains, and Azure identity attacks.
w-logic-tools — privacy_model.txt
cat privacy_model.txt
[+] Data collected by w-logic.net: none [*] IP addresses processed: client-side JavaScript only [*] Hashes processed: client-side JavaScript only [*] Passwords generated: window.crypto.getRandomValues() — never transmitted [+] Server logs: standard nginx access logs (IP + path, no query strings) [*] Analytics: none (no GA, no Plausible, no Mixpanel) [*] Ads: none — replaced with consulting CTA [*] Cookies: none beyond legally required

Need More Than a Free Tool?

W-Logic LLC provides offensive security consulting — red team operations, Active Directory attack chains, Azure/Entra ID assessments, and purple team exercises. Based in Columbia, MO. Engagements available nationwide.

Red Team Ops AD Attack Chains Azure / Entra ID ADCS / PKI Audits Purple Team EHWS Training
Schedule a Call → → W-Logic.com
// support the project
Find These Tools Useful?
All tools are free and always will be. If they've saved you time on an engagement or exam, a coffee keeps them coming.
☕ Buy Me a Coffee