SpicyAD is a C# Active Directory penetration testing tool designed for authorized security assessments. It combines multiple AD attack techniques into a single, easy-to-use tool with both interactive and command-line interfaces.
☆99Jun 25, 2026Updated last month
Alternatives and similar repositories for SpicyAD
Users that are interested in SpicyAD are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Model Context Protocol (MCP) server for automating Ludus v1 and v2 cyber range environments through AI assistants. 190+ tools for range…☆83Updated this week
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆209Nov 18, 2025Updated 8 months ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆183May 31, 2026Updated 2 months ago
- Beacon Object Files (BOFs) for Cobalt Strike and Havoc C2. Implementations of Active Directory attacks and post-exploitation techniques.☆118Jan 26, 2026Updated 6 months ago
- wtftp.py is a tool to attack Microsoft Deployment Toolkit (MDT) and Windows Deployment Services (WDS).☆35Jan 22, 2026Updated 6 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆119Dec 21, 2025Updated 7 months ago
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆175Jun 19, 2026Updated last month
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 8 months ago
- ASPX Web Shell with COFF Loader☆134Mar 10, 2026Updated 5 months ago
- 🧠 The ultimate resource for finding Beacon Object Files (BOFs).☆150Updated this week
- Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass☆144Jan 29, 2026Updated 6 months ago
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆312Updated this week
- Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence☆435Nov 7, 2025Updated 9 months ago
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆87Mar 15, 2026Updated 4 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆372Feb 2, 2026Updated 6 months ago
- A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself☆101Apr 9, 2026Updated 4 months ago
- Cobalt Strike module x loader x profile x wike / A public collection of open resources for Cobalt Strike (only legal use in Red Team and …☆126Jun 6, 2026Updated 2 months ago
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆106Apr 4, 2026Updated 4 months ago
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆236May 23, 2026Updated 2 months ago
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆46Sep 25, 2024Updated last year
- Chisel new generation, written in rust. SSH under WSS with some customization.☆136Jan 24, 2026Updated 6 months ago
- AD ACL Abuser for Havoc C2☆25Mar 30, 2026Updated 4 months ago
- Cobalt Strike BOF for evasive .NET assembly execution☆323Mar 31, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆168Nov 2, 2025Updated 9 months ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆107Jan 10, 2026Updated 7 months ago
- A collection of DPAPI hunting and parsing BOFs☆38Mar 3, 2026Updated 5 months ago
- NSecSoftBYOVD POC☆62Feb 12, 2026Updated 5 months ago
- Cobalt Strike Beacon Object File to to change the user's desktop wallpaper☆18Sep 15, 2023Updated 2 years ago
- One WSL BOF to rule them all☆189Jan 14, 2026Updated 6 months ago
- Monitor the Windows Event Log with grep-like features or filtering for specific Event IDs☆138Mar 26, 2026Updated 4 months ago
- abusing windows toast notifications for fun and user manipulation☆106Jul 11, 2026Updated 3 weeks ago
- Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading …☆168Feb 14, 2026Updated 5 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets …☆163Jul 8, 2026Updated last month
- Bof of RegPwn by MDSec☆127Mar 15, 2026Updated 4 months ago
- A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique☆183Apr 14, 2026Updated 3 months ago
- BOF to run PE in Cobalt Strike Beacon without console creation☆200Nov 23, 2025Updated 8 months ago
- Bypassing EDR's with stealthy c++ telegram Bot and Telegram itself as C2 interface !☆43Mar 24, 2026Updated 4 months ago
- Using Chromium-based browsers as a proxy for C2 traffic.☆156Dec 6, 2025Updated 8 months ago
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year