0xZDH / msspray
A basic username enumeration and password spraying tool aimed at spraying Microsoft's DOM based authentication using selenium.
☆32Updated 11 months ago
Related projects ⓘ
Alternatives and complementary repositories for msspray
- User enumeration and password spraying tool for testing Azure AD☆68Updated 2 years ago
- Tool to perform GCP Domain Wide Delegation abuse and access Gmail and Drive data☆43Updated last year
- Modified version of PEAS client for offensive operations☆38Updated last year
- ☆46Updated 2 years ago
- Convert ldapdomaindump to Bloodhound☆77Updated 11 months ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- Script written in python to perform Resource-Based Constrained Delegation (RBCD) attack by leveraging Impacket toolkit.☆20Updated 3 years ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆38Updated 2 years ago
- Azure pentesting reference for Altered Security Lab☆24Updated 2 years ago
- Ruby script that calls an almost interactive shell via WinRM (TCP/5985) on an Windows machine, relaying on a valid Kerberos ticket. (Very…☆16Updated 5 years ago
- This extension allows a user to specify a lockout policy in order to automate a password spray attack via Intruder.☆23Updated 4 years ago
- Federated Office365 user enumeration based on correlated response trend analysis☆47Updated 2 years ago
- ☆51Updated last year
- airCross is a tool that takes advantage of API functionality within VMWare's AirWatch MDM solution to perform single-factor authenticatio…☆40Updated 2 years ago
- Analyzing AD domains for security risks related to user accounts☆63Updated 2 years ago
- RedDrop is a quick and easy web server for capturing and processing encoded and encrypted payloads and tar archives.☆57Updated 2 years ago
- Red Teaming & Active Directory Cheat Sheet.☆39Updated last year
- Linux Post-Exploitation tools wrapper☆20Updated last year
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆31Updated 2 years ago
- A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.☆79Updated 11 months ago
- Active Directory ACL exploitation with BloodHound☆12Updated 3 years ago
- Multi-threaded C2 framework built in Flask with keylogger - from the Offensive C# Course by Naga Sai Nikhil☆20Updated 2 years ago
- ☆15Updated last year
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated 11 months ago
- Super organized and flexible script for sending phishing campaigns☆54Updated 2 years ago
- SMB Auto Relay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environme…☆47Updated 3 years ago
- Open-Source Phishing Toolkit☆17Updated 3 years ago
- Create PDFs with HTML smuggling attachments that save on opening the document.☆27Updated last year
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆28Updated 7 months ago