Tw1sm / spraycharlesView external linksLinks
Low and slow password spraying tool, designed to spray on an interval over a long period of time
β218Jan 30, 2026Updated 2 weeks ago
Alternatives and similar repositories for spraycharles
Users that are interested in spraycharles are comparing it to the libraries listed below
Sorting:
- Enumerate information from NTLM authentication enabled web endpoints πβ504Sep 23, 2025Updated 4 months ago
- Ask a TGS on behalf of another user without passwordβ481Mar 30, 2025Updated 10 months ago
- Check for LDAP protections regarding the relay of NTLM authenticationβ532Nov 19, 2024Updated last year
- Maximizing BloodHound. Max is a good boy.β531Apr 25, 2025Updated 9 months ago
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercerβ738May 19, 2023Updated 2 years ago
- Modular Enumeration and Password Spraying Frameworkβ129Apr 10, 2024Updated last year
- A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.β448Aug 18, 2023Updated 2 years ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinelβ387Feb 23, 2024Updated last year
- DPAPI looting remotely and locally in Pythonβ540Oct 7, 2025Updated 4 months ago
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accountsβ1,369Oct 22, 2025Updated 3 months ago
- Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cβ¦β1,049Nov 9, 2024Updated last year
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijackingβ285Jun 8, 2023Updated 2 years ago
- Find Microsoft Exchange instance for a given domain and identify the exact versionβ188Jan 30, 2023Updated 3 years ago
- β413Apr 28, 2021Updated 4 years ago
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniβ¦β1,364Oct 27, 2023Updated 2 years ago
- A C# tool to output crackable DPAPI hashes from user MasterKeysβ140Sep 14, 2024Updated last year
- SCCMHunter is a post-ex tool built to streamline identifying, profiling, and attacking SCCM related assets in an Active Directory domain.β¦β886Updated this week
- Exchangelib wrapper for pentestingβ67Feb 17, 2025Updated 11 months ago
- Lateral Movement Using DCOM and DLL Hijackingβ326Jun 18, 2023Updated 2 years ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinelβ359Jan 29, 2026Updated 2 weeks ago
- Dump NTDS with golden certificates and UnPAC the hashβ647Mar 20, 2024Updated last year
- tool for identifying guest relationships between companiesβ102Jun 27, 2024Updated last year
- Lookup for interesting stuff in SMB sharesβ150Jun 16, 2023Updated 2 years ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilegeβ224Nov 23, 2023Updated 2 years ago
- Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttlingβ1,254Mar 19, 2025Updated 10 months ago
- Azure JWT Token Manipulation Toolsetβ711Dec 6, 2024Updated last year
- Proof of Concept in Go from Secureworks' research on Azure Active Directory Brute-Force Attacks. Inspired by @treebuilder's POC on PowerSβ¦β14Feb 23, 2022Updated 3 years ago
- A tool for enumerating potential hosts that are open to GSSAPI abuse within Active Directory networksβ182Aug 16, 2025Updated 5 months ago
- Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!β1,288Feb 5, 2026Updated last week
- An Office365 User Attack Toolβ645Mar 19, 2024Updated last year
- A tool for checking if MFA is enabled on multiple Microsoft Servicesβ1,631Mar 4, 2025Updated 11 months ago
- A C# utility for interacting with SCCMβ682Aug 20, 2025Updated 5 months ago
- A tool to query for the existence of pre-windows 2000 computer objects.β366Dec 23, 2025Updated last month
- An other No-Fix LPE, NTLMRelay2Self over HTTP (Webdav).β417Jan 27, 2024Updated 2 years ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.β98Apr 13, 2023Updated 2 years ago
- Fully modular persistence frameworkβ258Apr 10, 2023Updated 2 years ago
- smbcrawler is no-nonsense tool that takes credentials and a list of hosts and 'crawls' (or 'spiders') through those sharesβ186Nov 19, 2025Updated 2 months ago
- A collection of tools using OCR to extract potential usernames from RDP screenshots.β30Apr 15, 2024Updated last year
- Exactly what it sounds like, which is something radβ22Oct 12, 2022Updated 3 years ago