SpicyAD is a C# Active Directory penetration testing tool designed for authorized security assessments. It combines multiple AD attack techniques into a single, easy-to-use tool with both interactive and command-line interfaces.
☆108Sep 9, 2026Updated last week
Alternatives and similar repositories for SpicyAD
Users that are interested in SpicyAD are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆208Nov 18, 2025Updated 10 months ago
- A Model Context Protocol (MCP) server for automating Ludus v1 and v2 cyber range environments through AI assistants. 190+ tools for range…☆84Aug 5, 2026Updated last month
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆190May 31, 2026Updated 3 months ago
- Beacon Object Files (BOFs) for Cobalt Strike and Havoc C2. Implementations of Active Directory attacks and post-exploitation techniques.☆117Jan 26, 2026Updated 7 months ago
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆118Dec 21, 2025Updated 8 months ago
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆176Jun 19, 2026Updated 3 months ago
- Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass☆146Jan 29, 2026Updated 7 months ago
- ASPX Web Shell with COFF Loader☆136Mar 10, 2026Updated 6 months ago
- 🧠 The ultimate resource for finding Beacon Object Files (BOFs).☆160Updated this week
- Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence☆438Nov 7, 2025Updated 10 months ago
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆317Aug 31, 2026Updated 2 weeks ago
- wtftp.py is a tool to attack Microsoft Deployment Toolkit (MDT) and Windows Deployment Services (WDS).☆42Jan 22, 2026Updated 7 months ago
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. In C#, C++, Cryst…☆386Aug 31, 2026Updated 2 weeks ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆45Sep 25, 2024Updated last year
- Cobalt Strike BOF for evasive .NET assembly execution☆326Mar 31, 2025Updated last year
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆86Mar 15, 2026Updated 6 months ago
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆168Nov 2, 2025Updated 10 months ago
- A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself☆100Apr 9, 2026Updated 5 months ago
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆243May 23, 2026Updated 3 months ago
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆105Apr 4, 2026Updated 5 months ago
- Chisel new generation, written in rust. SSH under WSS with some customization.☆135Jan 24, 2026Updated 7 months ago
- A collection of DPAPI hunting and parsing BOFs☆39Mar 3, 2026Updated 6 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- NSecSoftBYOVD POC☆61Feb 12, 2026Updated 7 months ago
- Cobalt Strike Beacon Object File to to change the user's desktop wallpaper☆18Sep 15, 2023Updated 3 years ago
- Bof of RegPwn by MDSec☆129Mar 15, 2026Updated 6 months ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆106Jan 10, 2026Updated 8 months ago
- BOF to run PE in Cobalt Strike Beacon without console creation☆198Nov 23, 2025Updated 9 months ago
- One WSL BOF to rule them all☆189Jan 14, 2026Updated 8 months ago
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- Monitor the Windows Event Log with grep-like features or filtering for specific Event IDs☆140Mar 26, 2026Updated 5 months ago
- AD ACL Abuser for Havoc C2☆25Mar 30, 2026Updated 5 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading …☆168Feb 14, 2026Updated 7 months ago
- Erebus is an Initial Access wrapper for the Mythic Command & Control Server. It converts shellcode into payloads specifically used for ph…☆227Sep 13, 2026Updated last week
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆463Jun 27, 2025Updated last year
- abusing windows toast notifications for fun and user manipulation☆105Jul 11, 2026Updated 2 months ago
- takes shellcode bad-bytes and banishes them, returning cleaned shellcode with preserved functionalities☆62Mar 1, 2026Updated 6 months ago
- ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets …☆164Jul 8, 2026Updated 2 months ago
- Golang Cobalt Strike Rest API Client☆19Apr 10, 2026Updated 5 months ago