
AADOutsider-py
Python3 rewrite of AsOutsider features of AADInternals

Python3 rewrite of AsOutsider features of AADInternals

Unauthenticated NTLM endpoint reconnaissance tool that decodes Type-2 challenges across HTTP, SMB, MSSQL, SMTP, IMAP, POP3, NNTP, LDAP, and RDP to…

**CVE-2026-18963** — unauthenticated Keycloak account takeover via the reset-credentials flow.

Detection tool for cPanel/WHM CVE-2026-41940 (CRLF injection auth bypass). Verify vulnerability on servers you own or have permission to test. For…

A Python package and CLI for parsing aggregate and forensic DMARC reports

Username Enumeration via Authentication Timing Side-Channel in PaperCut NG

A Python based ingestor for BloodHound

Asynchronous RDP client for Python (headless)

smbclient-ng, a fast and user friendly way to interact with SMB shares.

.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation


NLA Honeypot Associated Research

Python utility that reads accessible gMSA password blobs from Active Directory and extracts plaintext passwords for use in security audits and red…

Lightweight Python script to test username/password combinations against Zimbra webmail login pages for security assessments and password auditing.

Opens 1K+ IPs or Shodan search results and attempts to login

WPBF - a multithreaded WP brute forcer

Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.

Rid_enum is a null session RID cycle attack for brute forcing domain controllers.