
Get-NetNTLM
Powershell module to get the NetNTLMv2 hash of the current user

Powershell module to get the NetNTLMv2 hash of the current user

Python script that brute-forces Joomla administrator login credentials using wordlists, with proxy and verbose options for penetration testing.

8-14 character Hashcat masks based on analysis of 3.2 million NTLM hashes cracked while pentesting

Python/Go framework that generates SQL injection PoC requests, automates sqlmap attacks, and manages modular exploit scripts with parameter detection…

Offset Independent Credential Extraction Tool

Brute Ratel C4 BOF that exploits a registry symlink race condition in Windows Accessibility ATConfig to escalate privileges to SYSTEM by writing…

This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)

Mutates signed Windows binaries to retain valid catalog signatures while changing file hashes, bypassing hash-based endpoint blocks and exposing…

Long Range Pager Systems pagers and coasters URH and YS1 (yardstick one / cc11xx) information and brute force tool

badger-builder is an AI-assisted tool for generating dynamic Brute Ratel C4 profiles

Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later

A C# tool to output crackable DPAPI hashes from user MasterKeys

Windows绕过EDR实现DumpHash

Collection of Brute Ratel C4 BOFs for Windows post-exploitation: process memory access, NetNTLMv2 hash retrieval, contact harvesting, and…

unauthenticated RCE in WordPress core (CVE-2026-63030 + CVE-2026-60137)

XMLRPC server for password cracking

Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling

cve-2024-21413