
parsedmarc
A Python package and CLI for parsing aggregate and forensic DMARC reports

A Python package and CLI for parsing aggregate and forensic DMARC reports

Asynchronous RDP client for Python (headless)

smbclient-ng, a fast and user friendly way to interact with SMB shares.

Unauthenticated NTLM endpoint reconnaissance tool that decodes Type-2 challenges across HTTP, SMB, MSSQL, SMTP, IMAP, POP3, NNTP, LDAP, and RDP to…

Python3 rewrite of AsOutsider features of AADInternals

Interactive shell for Active Directory enumeration and ACL abuse via LDAP/LDAPS. Supports DCSync, RBCD, Shadow Credentials, password changes, and…

Automated remote credential dumper for Windows environments, extracting DPAPI secrets, browser credentials, certificates, and configuration files…

**CVE-2026-18963** — unauthenticated Keycloak account takeover via the reset-credentials flow.

Python library for auditing Microsoft Active Directory via LDAP, supporting NTLM, Kerberos, SSPI authentication, channel binding, encryption, and…

Username Enumeration via Authentication Timing Side-Channel in PaperCut NG

The fastest and more comprehensive multiprotocol credentials bruteforcer / password sprayer and enumerator. 🥷

A practical client for ADWS in Golang.

Python PoC for CVE-2026-8181, a critical authentication bypass in Burst Statistics WordPress plugin. Includes exploit automation, bulk scanning, and…

Python3 implementation of ADRecon with support for NTLM and Kerberos authentication querying LDAP. Generates individual CSV files and a single XSLX +…

Your MitM sidekick for relaying attacks featuring DHCPv6 DNS takeover as well as mDNS, LLMNR and NetBIOS-NS spoofing.

Mirror moved — see GitHub and Codeberg

Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but for security…

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.