ToolSicurezza Wiki

Welcome. This wiki explains how to install, run, and extend
ToolSicurezza — a defensive infostealer audit suite for Windows.

⚠️ Read DISCLAIMER.md before doing anything else.
By using the software you accept its terms.

Getting started

Understanding the tool

Extending

Help


Recent changes (v2.1 — 2026-05-20)


What this project is, in one paragraph

When an infostealer (RedLine, Lumma, Vidar, Kepavll, Glove Stealer, ...)
runs on a Windows PC, it does a known set of things: read the master
keys out of Chrome/Edge/Brave/Firefox local files, decrypt the saved
passwords, harvest cookies and Discord tokens, list browser-installed
crypto wallets, dump Windows Credential Manager, scan for SSH keys,
and so on. ToolSicurezza does exactly the same enumeration on the
user's own machine, locally, with no exfiltration — so the user can
see what would be lost if such malware ran.

Why this project exists

Most people, even technical users, do not really know:

Without that knowledge, "I should change my passwords after an incident"
is a guess. ToolSicurezza turns it into a measurement.

What this project is not

License

MIT + Acceptable Use Notice + DISCLAIMER.