
KeePwn
A python tool to automate KeePass discovery and secret extraction.

A python tool to automate KeePass discovery and secret extraction.

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

Automated NTLM relay attack tool combining Responder poisoning with Impacket relay and secretsdump for credential capture, hash relaying, and lateral…

RedSnarf is a pen-testing / red-teaming tool for Windows environments

A C# tool to output crackable DPAPI hashes from user MasterKeys

Tool to remotely dump secrets from the Windows registry

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

Offset Independent Credential Extraction Tool

a tool to manipulate dcc(domain cached credentials) in windows registry, based mainly on the work of mimikatz and impacket

A tool to dump users's .plist on a Mac OS system and to convert them into a crackable hash

A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.

Automated exploit script combining CVE-2020-1472 (ZeroLogon) with evil-winrm to gain a remote shell on vulnerable Windows Domain Controllers.

cve-2020-1472_Tool collection

Script to steal passwords from ssh.


Pre-auth RCE proof-of-concept chaining a WordPress REST batch API auth bypass with WP_Query SQL injection to dump hashes, add admin users, or plant a…

CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.

Initialized & connected PostgreSQL to Metasploit. Reconnoitered 10.1.16.0/24 with Nmap and imported results. Enumerated hosts/services using SYN, SMB…