
imposter
Proof-of-concept tool that downgrades LDAP to NTLM authentication and fakes domain controller responses to attack Windows clients on rogue networks.

Proof-of-concept tool that downgrades LDAP to NTLM authentication and fakes domain controller responses to attack Windows clients on rogue networks.

Parallelized network login cracker supporting 50+ protocols for brute-force and dictionary attacks against authentication services, designed for…

Penetration tests guide based on OWASP including test cases, resources and examples.

The ultimate WinRM shell for hacking/pentesting

Multi-threaded brute-forcing tool with modular design for password guessing attacks across FTP, SSH, HTTP, databases, and network services. Supports…

Username enumeration and password spraying tool aimed at Microsoft O365.

Modular VoIP penetration testing toolkit with tools for SIP/RTP fuzzing, man-in-the-middle attacks, SRTP decryption, VLAN enumeration, and…

Man-in-the-middle SSH proxy for security audits and penetration testing. Intercepts SSH, SCP, and SFTP sessions with support for agent and port…

Customizable password spraying tool for Microsoft accounts (Office 365/Azure AD) with execution plans, Smart Lockout bypass, and audit mode for…

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative…