
ms-photos_NTLM_Leak
New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click

New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click

This exploit targets a vulnerability in DNN (formerly DotNetNuke) versions 6.0.0 to before 10.0.1 that allows attackers to disclose NTLM hashes…

Python-based password cracker supporting wordlist and brute-force attacks with multiple hash algorithms, salt, parallel processing, and password…

Advisory detailing a pass-the-hash vulnerability in VeryFitPro app (<=3.3.7) where SHA-1 password hashes are used for authentication, enabling…

Crack any Microsoft Windows users password without any privilege (Guest account included)

🔓 A dynamic dictionary merger for successful dictionary based attacks.

CVE-2026-63030 (wp2shell) POC.

Hashcat wrapper to help automate the cracking process

Python script for Kerberoasting with targeted ACL abuse: sets temporary SPNs on users without them, extracts Kerberos hashes, then removes the SPN.…

Python exploit for CVE-2019-14314: authenticated SQL injection in NextGEN Gallery 3.2.10 WordPress plugin, extracting password hashes from the…

Malicious shortcut generator for collecting NTLM hashes from insecure file shares.

Easy brute forcing to whatever you want - Jose Pino

A tool for automating cracking methodologies through Hashcat from the TrustedSec team.

Shreder is a powerful multi-threaded SSH protocol password brute-force tool.

Radmin Server 3 credentials dumper/cracker

XMLRPC server for password cracking


Python3 implementation for converting Artemis PBKDF2WithHmacSHA1 hashes to hashcat format