SnaffCon / Snaffler
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
☆2,134Updated 2 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for Snaffler
- Tool for Active Directory Certificate Services enumeration and abuse☆2,420Updated 3 months ago
- Extract credentials from lsass remotely☆2,057Updated last month
- A Python based ingestor for BloodHound☆1,940Updated 3 months ago
- BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of…☆2,049Updated last year
- ☆1,526Updated 5 months ago
- Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab☆2,010Updated 7 months ago
- Active Directory certificate abuse.☆1,519Updated 3 months ago
- Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure …☆2,301Updated last week
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆1,784Updated 4 months ago
- Privilege Escalation Enumeration Script for Windows☆2,982Updated last week
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆2,484Updated last year
- Automation for internal Windows Penetrationtest / AD-Security☆3,337Updated 9 months ago
- Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.☆1,979Updated last year
- TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!☆1,060Updated last week
- Trying to tame the three-headed dog.☆4,141Updated 2 months ago
- A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)☆1,005Updated 5 months ago
- Dumping DPAPI credz remotely☆1,007Updated last week
- ScareCrow - Payload creation framework designed around EDR bypass.☆2,740Updated last year
- Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!☆1,019Updated 4 months ago
- A collection of Azure AD/Entra tools for offensive and defensive security purposes☆1,911Updated this week
- A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.☆1,802Updated last month
- This repo contains some Amsi Bypass methods i found on different Blog Posts.☆1,708Updated 4 months ago
- A tool to perform Kerberos pre-auth bruteforcing☆2,672Updated 3 months ago
- Powershell tool to automate Active Directory enumeration.☆1,009Updated 3 months ago
- Compiled Binaries for Ghostpack☆1,179Updated 3 weeks ago
- SharpUp is a C# port of various PowerUp functionality.☆1,262Updated 9 months ago
- A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.☆1,824Updated last month
- A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for secu…☆1,192Updated 3 months ago
- Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)☆1,014Updated 3 years ago
- Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient☆1,451Updated 2 years ago