BC-SECURITY / DomainPasswordSpray
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!
☆11Updated 4 years ago
Alternatives and similar repositories for DomainPasswordSpray:
Users that are interested in DomainPasswordSpray are comparing it to the libraries listed below
- ☆45Updated 9 months ago
- CobaltStrike Extentions☆38Updated 3 years ago
- List/Read contents of Zip files (in memory and without extraction) using CobaltStrike's Execute-Assembly☆58Updated 2 years ago
- CVE-2019-1040 with Kerberos delegation☆32Updated 3 years ago
- SamrSearch can get user info and group info with MS-SAMR.☆15Updated 3 years ago
- CVE-2021-42287/CVE-2021-42278 exploits in powershell☆37Updated 3 years ago
- Proof of Concept for EFSRPC Arbitrary File Upload (CVE-2021-43893)☆63Updated 3 years ago
- AD Pentest Cheatsheet by BlackWasp☆21Updated 2 years ago
- Terminate the eventlog thread to disable the windows eventlog☆20Updated 5 years ago
- resource-based constrained delegation RBCD☆43Updated 3 years ago
- dump lsass tool☆39Updated 2 years ago
- Using fibers to execute shellcode in a local process via csharp☆28Updated 3 years ago
- Use current thread token to execute command☆15Updated 4 years ago
- ScareCrow loader binary source which easier to read and learn☆25Updated 2 years ago
- C# 编写的用于 Dropbox 文件上传☆20Updated 3 years ago
- BOF/COFF obj file to PIC(shellcode). by golang☆37Updated 2 years ago
- EventViewer Bypass Uac Bof☆22Updated 2 years ago
- Stop Windows Defender programmatically☆15Updated 3 years ago
- about the redis attack script, we can use it to crack the redis password and upload reverse shell to control the machine.☆10Updated 3 years ago
- Exploit POC code for CVE-2022-31898, a command injection for GL-iNet routers with firmware below 3.215☆17Updated 2 years ago
- Cs-Sleep-Mask-Fiber☆17Updated 6 months ago
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆45Updated 2 years ago
- Post-exploitation script developed using impacket☆21Updated 3 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆57Updated 3 years ago
- Beacon Object Files.☆35Updated last year
- Atlassian Questions Hardcoded Password (CVE-2022-26138)☆31Updated 2 years ago
- 免杀shellcode☆14Updated 3 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 3 years ago
- Burp Suite extension for parsing Swagger web service definition files☆19Updated 4 months ago
- A wrapper of ldap_shell.py module which in ntlmrelayx☆62Updated 2 years ago