
LaZagne
Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Native Windows remote access tool with stealth client, reflective DLL injection, keylogger, Chrome password recovery, reverse shell, file system…

Offline Windows credential extractor that dumps LM/NT hashes, cached domain passwords, and LSA secrets from registry hives without relying on system…

Queue and resource system for cracking passwords

Distributed brute-force password cracking system that parallelizes dictionary and crunch-based attacks across multiple machines via web and desktop…

Advanced hash cracking and manipulation system supporting bruteforce attacks, dictionary generation, automatic hash algorithm verification, and…

Industrial-grade secure snippet warehouse for your system tray. 📦 Built with Rust (Tauri v2) & React. Offline-first, AES-256 encrypted, and…

Windows privilege escalation toolchain that exploits arbitrary file read bugs to create Volume Shadow Copies as a standard user, extract SAM/SECURITY…

A tool to dump users's .plist on a Mac OS system and to convert them into a crackable hash

Proof-of-concept demonstrating information exposure in KeePass 2.48 via CVE-2022-0725, where plaintext passwords are logged to system journal.

Rust-based exploit for CVE-2021-36934 (HiveNightmare) that dumps SAM, SECURITY, and SYSTEM registry hives from shadow copies for privilege escalation…

KeePass 2.53.1 with removed ECAS Trigger System Remediating CVE-2023-24055

Distributed password brute-force system with hashcat integration, enabling task management across multiple agents via a REST API and web interface…

Comprehensive penetration testing cheat sheet for PWK/OSCP exam preparation, covering privilege escalation, password cracking, payload generation,…

Identify 300+ hash types instantly via CLI or web app. Prioritizes popular hashes, provides summaries, and integrates with HashCat and John the…

Modular personalized dictionary generator.

Built a custom Virtual Machine, running Ubuntu 18.04.1 and Webmin 1.810. Using CVE-2019-15107 to exploit a backdoor in the Linux machine

Proof-of-concept exploit for Microsoft Outlook RCE (CVE-2024-21413) with SMTP-based phishing email delivery, malicious RTF attachment generation, and…