
CredNinja
A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale via SMB, plus…

A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale via SMB, plus…

Check-LocalAdminHash is a PowerShell tool that attempts to authenticate to multiple hosts over either WMI or SMB using a password hash to determine…

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

SMBeagle - Fileshare auditing tool.

Remotely Enumerate sessions using undocumented Windows Station APIs

Nerv0us r4bbit - Post Exploitation Windows Enumeration Tool

Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32…

Automating situational awareness for cloud penetration tests.

SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY,…

SharpSploit is a .NET post-exploitation library written in C#

C# implementation of harmj0y's PowerView

Open source C2 server created for stealth red team operations

Windows protocol library, including SMB and RPC implementations, among others.

Bash post exploitation toolkit

Intranet penetration tools

This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported is…

New generation of wmiexec.py

SharpWMI is a C# implementation of various WMI functionality.