
ADCSync
Use ESC1 to perform a makeshift DCSync and dump hashes

Use ESC1 to perform a makeshift DCSync and dump hashes

EvilMist is a collection of scripts and utilities designed to support cloud penetration testing & red teaming. The toolkit helps identify…

Kali365 - EvilTokens Replica

Self-hosted email alias masking service using Postfix and Telegram bot to create disposable addresses for signups, with full control over email…

LDAP Querying without the Suck

A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.

scanner/exploiter CVE-2026-24061 & CVE-2026-32746

AIO Cloud Managment Server

Post-Exploitation EVTX Analyzer for BloodHound Mapping

Bulk scanner and mass exploitation tool for CVE-2026-41940 on cPanel/WHM, built for automated target validation and high-speed multi-threaded…

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

cupntlm

Local-first encrypted password vault for Android with Master Password access, Recovery Key support, Autofill integration, and portable encrypted…

A TryHackme room covering the CVE-2025-53779 exploitation using windows

A minimal authenticated reverse shell framework for reaching hosts with outbound internet access.

Modern cyber range with 50 hands-on challenges across web, API, cloud, AI, and blue-team security tracks. Features guided attack chains, transparent…

Lightweight Python checker that tests Active Directory credentials for exposure to CVE-2022-33679 (Kerberos AS-REP roast without pre-authentication).…

This rough PoC checker script tests targets for CVE-2025-33073 vulnerability by attempting to perform NTLM reflection attacks using NTLM auth…