
AutoRDPwn
The Shadow Attack Framework

The Shadow Attack Framework

SIP Security Assessment Framework for VoIP Pentesters. Presented at DEFCON, BlackHat & Offzone.

Wireless penetration testing framework. Automates WPA/WPA2/WEP/WPS attacks - recon to exploitation in one command. aircrack-ng + hashcat + PMKID.

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

A python tool to automate KeePass discovery and secret extraction.

A tool to crack WPA2 passphrase with PMKID value without clients or de-authentication

A C# tool to output crackable DPAPI hashes from user MasterKeys

a tool to manipulate dcc(domain cached credentials) in windows registry, based mainly on the work of mimikatz and impacket

A tool to dump users's .plist on a Mac OS system and to convert them into a crackable hash

🔑 A CLI tool to identify the hash type of a given hash.

Low and slow password spraying tool, designed to spray on an interval over a long period of time

ZipRarHunter is a powerful command-line ethical hacking tool designed to crack passwords of ZIP and RAR archive files using a wordlist.

Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

KrbRoastParser is a tool for parsing Kerberos packets from pcap files to extract AS-REQ, AS-REP and TGS-REP hashes

Pwdlyser is an all encompassing security auditing tool. This repo serves as the open-source base for the new version of Pwdlyser (previously…

A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.

AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with kerberos.

Automated exploit script combining CVE-2020-1472 (ZeroLogon) with evil-winrm to gain a remote shell on vulnerable Windows Domain Controllers.