blacklanternsecurity / TREVORspray
TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!
☆1,163Updated last week
Alternatives and similar repositories for TREVORspray:
Users that are interested in TREVORspray are comparing it to the libraries listed below
- Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling☆1,078Updated last month
- Username enumeration and password spraying tool aimed at Microsoft O365.☆854Updated 6 months ago
- A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the ac…☆969Updated last year
- Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!☆1,121Updated 9 months ago
- A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)☆1,125Updated 11 months ago
- a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )☆2,356Updated last month
- Powershell tool to automate Active Directory enumeration.☆1,101Updated last month
- onedrive user enumeration - pentest tool to enumerate valid o365 users☆670Updated 3 weeks ago
- Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient☆1,491Updated 2 years ago
- BloodyAD is an Active Directory Privilege Escalation Framework☆1,609Updated 3 weeks ago
- Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.☆1,815Updated 6 months ago
- A tool for checking if MFA is enabled on multiple Microsoft Services☆1,493Updated 2 months ago
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts☆1,139Updated 3 weeks ago
- A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for secu …☆1,317Updated last month
- Dumping DPAPI credz remotely☆1,114Updated last month
- ☆683Updated 3 months ago
- Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab☆2,111Updated last year
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆778Updated 2 years ago
- Extract credentials from lsass remotely☆2,111Updated last week
- A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.☆1,958Updated last month
- ☆1,585Updated 3 weeks ago
- A Python based ingestor for BloodHound☆2,101Updated last month
- An Office365 User Attack Tool☆636Updated last year
- linWinPwn is a bash script that streamlines the use of a number of Active Directory tools☆1,962Updated this week
- Wordlists for creating statistically likely username lists for use in password attacks and security testing☆1,071Updated 2 years ago
- Compiled Binaries for Ghostpack☆1,338Updated 6 months ago
- Bloodhound Reporting for Blue and Purple Teams☆1,184Updated 2 months ago
- Identify privilege escalation paths within and across different clouds☆692Updated 3 weeks ago
- Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (c…☆1,030Updated 6 months ago
- Azure JWT Token Manipulation Toolset☆655Updated 5 months ago