
KeePwn
A python tool to automate KeePass discovery and secret extraction.

A python tool to automate KeePass discovery and secret extraction.

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

CitrixBleed Exploit Tool - CVE-2025-5777 & CVE-2026-8452. Unauthenticated remote memory read from Citrix NetScaler ADC & Gateway. Steal admin session…

Automated NTLM relay attack tool combining Responder poisoning with Impacket relay and secretsdump for credential capture, hash relaying, and lateral…

RedSnarf is a pen-testing / red-teaming tool for Windows environments

A C# tool to output crackable DPAPI hashes from user MasterKeys

Tool to remotely dump secrets from the Windows registry

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

System-wide NTLM relay tool that hooks Windows authentication APIs to relay incoming NTLM connections, downgrade Kerberos, and dump NetNTLM hashes…

Tool for extracting Windows credentials (passwords, hashes, Kerberos tickets) from memory and performing pass-the-hash, pass-the-ticket, and golden…

Generates malicious LNK files to coerce Net-NTLMv2 hashes via Windows Shell UNC handling, with custom SMB listener and relay integration for…

Offset Independent Credential Extraction Tool

Proof-of-concept exploit for CVE-2024-21413 using Moniker Link in HTML email to trigger SMB connection and capture netNTLMv2 hashes via Responder.…

A tool to dump users's .plist on a Mac OS system and to convert them into a crackable hash

A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.

New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click

Red Team oriented C# Simple HTTP & WebDAV Server with Net-NTLM hashes capture functionality

Mutates signed Windows binaries to retain valid catalog signatures while changing file hashes, bypassing hash-based endpoint blocks and exposing…