
Modlishka
Modlishka. Reverse Proxy.

Modlishka. Reverse Proxy.

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2,…

Powershell tool to automate Active Directory enumeration.

Kali365 - EvilTokens Replica

Unauthenticated NTLM endpoint reconnaissance tool that decodes Type-2 challenges across HTTP, SMB, MSSQL, SMTP, IMAP, POP3, NNTP, LDAP, and RDP to…

Trying to tame the three-headed dog.

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

A Python package and CLI for parsing aggregate and forensic DMARC reports

A high-speed covert tunnel that disguises TCP traffic as SMTP email communication to bypass Deep Packet Inspection (DPI) firewalls.

Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)

Rid_enum is a null session RID cycle attack for brute forcing domain controllers.

🦄 A curated list of privacy & security-focused software and services

A tool to perform Kerberos pre-auth bruteforcing

A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a…

Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833)

Windows-native penetration testing swiss army knife for lateral movement, credential access, data exfiltration, and vulnerability scanning across…

Python3 implementation of ADRecon with support for NTLM and Kerberos authentication querying LDAP. Generates individual CSV files and a single XSLX +…

Bulk scanner and mass exploitation tool for CVE-2026-41940 on cPanel/WHM, built for automated target validation and high-speed multi-threaded…