SpicyAD is a C# Active Directory penetration testing tool designed for authorized security assessments. It combines multiple AD attack techniques into a single, easy-to-use tool with both interactive and command-line interfaces.
☆108Sep 9, 2026Updated last month
Alternatives and similar repositories for SpicyAD
Users that are interested in SpicyAD are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆208Nov 18, 2025Updated 10 months ago
- A Model Context Protocol (MCP) server for automating Ludus v1 and v2 cyber range environments through AI assistants. 190+ tools for range…☆86Aug 5, 2026Updated 2 months ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆191May 31, 2026Updated 4 months ago
- Beacon Object Files (BOFs) for Cobalt Strike and Havoc C2. Implementations of Active Directory attacks and post-exploitation techniques.☆116Jan 26, 2026Updated 8 months ago
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 10 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆117Dec 21, 2025Updated 9 months ago
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆175Jun 19, 2026Updated 3 months ago
- Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass☆145Jan 29, 2026Updated 8 months ago
- ASPX Web Shell with COFF Loader☆135Mar 10, 2026Updated 7 months ago
- 🧠 The ultimate resource for finding Beacon Object Files (BOFs).☆161Updated this week
- Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence☆442Nov 7, 2025Updated 11 months ago
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆318Aug 31, 2026Updated last month
- wtftp.py is a tool to attack Microsoft Deployment Toolkit (MDT) and Windows Deployment Services (WDS).☆43Jan 22, 2026Updated 8 months ago
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. In C#, C++, Cryst…☆386Aug 31, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆44Sep 25, 2024Updated 2 years ago
- Cobalt Strike BOF for evasive .NET assembly execution☆328Mar 31, 2025Updated last year
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆87Mar 15, 2026Updated 6 months ago
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆167Nov 2, 2025Updated 11 months ago
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆244May 23, 2026Updated 4 months ago
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆107Apr 4, 2026Updated 6 months ago
- Chisel new generation, written in rust. SSH under WSS with some customization.☆135Jan 24, 2026Updated 8 months ago
- A collection of DPAPI hunting and parsing BOFs☆39Mar 3, 2026Updated 7 months ago
- A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself☆99Apr 9, 2026Updated 6 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- NSecSoftBYOVD POC☆62Feb 12, 2026Updated 7 months ago
- Cobalt Strike Beacon Object File to to change the user's desktop wallpaper☆18Sep 15, 2023Updated 3 years ago
- Bof of RegPwn by MDSec☆129Mar 15, 2026Updated 6 months ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆106Jan 10, 2026Updated 9 months ago
- BOF to run PE in Cobalt Strike Beacon without console creation☆197Nov 23, 2025Updated 10 months ago
- One WSL BOF to rule them all☆189Jan 14, 2026Updated 8 months ago
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- Monitor the Windows Event Log with grep-like features or filtering for specific Event IDs☆141Mar 26, 2026Updated 6 months ago
- AD ACL Abuser for Havoc C2☆25Mar 30, 2026Updated 6 months ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading …☆167Feb 14, 2026Updated 7 months ago
- Erebus is an Initial Access wrapper for the Mythic Command & Control Server. It converts shellcode into payloads specifically used for ph…☆231Sep 13, 2026Updated 3 weeks ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆465Jun 27, 2025Updated last year
- takes shellcode bad-bytes and banishes them, returning cleaned shellcode with preserved functionalities☆62Mar 1, 2026Updated 7 months ago
- abusing windows toast notifications for fun and user manipulation☆106Jul 11, 2026Updated 2 months ago
- ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets …☆164Jul 8, 2026Updated 3 months ago
- Golang Cobalt Strike Rest API Client☆19Apr 10, 2026Updated 6 months ago