
ridenum
Rid_enum is a null session RID cycle attack for brute forcing domain controllers.

Rid_enum is a null session RID cycle attack for brute forcing domain controllers.

The great CrackMapExec tool compiled for Windows

Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but for security…

Tool for assessing on-premises Microsoft servers authentication such as ADFS, Skype, Exchange, and RDWeb

A tool for enumerating potential hosts that are open to GSSAPI abuse within Active Directory networks

Python3 rewrite of AsOutsider features of AADInternals

Kerberos CNAME abuse PoC

LDAP Querying without the Suck

A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.


A Python based ingestor for BloodHound

A salty-ass 100% verified hacker status python script to turn apple id's into apple crisp #nicememe

A practical client for ADWS in Golang.

active directory query tool using LDAP Protocol , helps red teamer / penetration testers to validate users credentials , retrieve information about…

WordPress社交登录和注册(Discord,Google,Twitter,LinkedIn)<=7.6.4-绕过身份验证

NLA Honeypot Associated Research

WPBF - a multithreaded WP brute forcer

Exploit for CVE-2020-25200: enumerates valid Pritunl VPN usernames by analyzing HTTP response code changes after repeated login attempts.