Step-by-step documentation on how to decrypt SCCM database secrets offline
☆50Oct 20, 2025Updated 11 months ago
Alternatives and similar repositories for offlineSCCMdecrypt
Users that are interested in offlineSCCMdecrypt are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆176Jun 19, 2026Updated 3 months ago
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- Slides and resources from MCTTP 2025 Talk☆70Oct 26, 2025Updated 10 months ago
- An alternative to the builtin clipboard feature in Cobalt Strike that adds the capability to enable/disable and dump the clipboard histor…☆117Apr 16, 2026Updated 5 months ago
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆96Jul 3, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆168Nov 2, 2025Updated 10 months ago
- A C# tool for extracting information from SCCM PXE boot media.☆56May 21, 2026Updated 4 months ago
- Unauthenticated start EFS service on remote Windows host (make PetitPotam great again)☆150Oct 23, 2025Updated 11 months ago
- ☆199Mar 28, 2025Updated last year
- A Windows tool that converts LDIF files to BloodHound CE☆31Dec 20, 2025Updated 9 months ago
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆46Aug 16, 2024Updated 2 years ago
- psexecsvc - a python implementation of PSExec's native service implementation☆314Mar 24, 2026Updated 5 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆173Sep 30, 2025Updated 11 months ago
- modified mssqlclient from impacket to extract policies from the SCCM database☆49Feb 24, 2026Updated 6 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets …☆164Jul 8, 2026Updated 2 months ago
- Remote service-staging tool built on Impacket, designed for BOF-style lateral movement workflows that lets you upload custom service load…☆128Dec 7, 2025Updated 9 months ago
- ☆194Oct 21, 2025Updated 11 months ago
- Enumerate Domain Users Without Authentication☆312Apr 22, 2025Updated last year
- The DCERPC only printerbug.py version☆234Oct 30, 2025Updated 10 months ago
- BOF to steal Teams cookies☆133Nov 2, 2025Updated 10 months ago
- Tool to enumerate privileged Scheduled Tasks on Remote Systems☆311Aug 29, 2026Updated 3 weeks ago
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆118Dec 21, 2025Updated 9 months ago
- Windows Session Hijacking via COM☆350Dec 13, 2025Updated 9 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Obex – Blocking unwanted DLLs in user mode☆280Sep 18, 2025Updated last year
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆190May 31, 2026Updated 3 months ago
- Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.☆222Jan 6, 2026Updated 8 months ago
- Group Policy Objects manipulation and exploitation framework☆319Aug 28, 2026Updated 3 weeks ago
- C# to read WIM files over the network without transferring the whole file☆39Jan 22, 2026Updated 8 months ago
- Windows protocol library, including SMB and RPC implementations, among others.☆834Updated this week
- A POC for developing BOFs for Sliver, Havoc, Cobalt Strike or most COFFLoaders in Rust.☆75Aug 24, 2025Updated last year
- ☆31Aug 13, 2025Updated last year
- gpoParser is a tool designed to extract and analyze configurations applied through Group Policy Objects (GPOs) in an Active Directory env…☆373Apr 28, 2026Updated 4 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Local SYSTEM auth trigger for relaying - X☆160Jul 23, 2025Updated last year
- POC tool to abuse windows server failover clusters☆58Aug 7, 2025Updated last year
- abusing windows toast notifications for fun and user manipulation☆105Jul 11, 2026Updated 2 months ago
- Beacon Object File (BOF) for Using the BadSuccessor Technique for Account Takeover☆90Oct 20, 2025Updated 11 months ago
- Beacon Object Files (BOFs) for Cobalt Strike and Havoc C2. Implementations of Active Directory attacks and post-exploitation techniques.☆117Jan 26, 2026Updated 7 months ago
- A PoC Cobalt Strike UDRL written in Rust☆34Sep 12, 2026Updated last week
- PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads☆256Oct 30, 2025Updated 10 months ago