KrbRoastParser is a tool for parsing Kerberos packets from pcap files to extract AS-REQ, AS-REP and TGS-REP hashes
☆109Jun 26, 2026Updated last month
Alternatives and similar repositories for Krb5RoastParser
Users that are interested in Krb5RoastParser are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, P…☆154Updated this week
- ☆25Sep 6, 2025Updated 11 months ago
- An implementation of PyADRecon using ADWS instead of LDAP. Generates individual CSV files and a single XSLX + HTML report about your AD d…☆55Jul 10, 2026Updated last month
- abusing windows toast notifications for fun and user manipulation☆106Jul 11, 2026Updated last month
- A collection of DPAPI hunting and parsing BOFs☆40Mar 3, 2026Updated 5 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation☆135Mar 27, 2026Updated 4 months ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆183May 31, 2026Updated 2 months ago
- Tool to enumerate privileged Scheduled Tasks on Remote Systems☆312Mar 29, 2026Updated 4 months ago
- Python tool to automatically perform SPN-less RBCD attacks.☆132Jan 7, 2026Updated 7 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆58Jul 4, 2026Updated last month
- Execute commands interactively on remote Windows machines using the WinRM protocol (just faster)☆389Updated this week
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆161Nov 2, 2025Updated 9 months ago
- PowerShell tool that shows how to read and write NTLM OWF values via samlib.dll.☆75Oct 22, 2025Updated 9 months ago
- A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily☆311May 11, 2026Updated 3 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Generate and Manage KeyCredentialLinks☆258Jul 17, 2026Updated last month
- The DCERPC only printerbug.py version☆233Oct 30, 2025Updated 9 months ago
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆286Jun 22, 2026Updated last month
- Native C++ access to Active Directory over ADWS, no .NET, no WCF, no HTTP stack.☆82Mar 27, 2026Updated 4 months ago
- SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.☆425Sep 26, 2025Updated 10 months ago
- Python collector for adding SCCM attack paths to BloodHound with OpenGraph☆139Aug 9, 2026Updated last week
- Active Directory information dumper via ADWS for evasion purposes.☆319Jul 9, 2026Updated last month
- A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for…☆366Aug 10, 2026Updated last week
- adws enumeration bof☆174Feb 16, 2026Updated 6 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Dominate the domain. Relay to royalty.☆344Mar 31, 2026Updated 4 months ago
- This C# tool sprays for admin access over the entire domain☆90Dec 7, 2025Updated 8 months ago
- Go (formerly PowerShell) collector for adding MSSQL attack paths to BloodHound with OpenGraph☆344Jul 10, 2026Updated last month
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆168Nov 2, 2025Updated 9 months ago
- Create local administrators with the SAMR API (lowest-level technique). Implemented in C#, Crystal, Python and Rust☆96Updated this week
- ☆46Apr 13, 2026Updated 4 months ago
- A C# utility for interacting with SCOM☆99Dec 2, 2025Updated 8 months ago
- Automating the MITM attack on WSUS☆402Updated this week
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆87Mar 15, 2026Updated 5 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Impack-only implementation of WinRM protocol with support for NTLM and Kerberos auth☆138May 5, 2026Updated 3 months ago
- An alternative to the builtin clipboard feature in Cobalt Strike that adds the capability to enable/disable and dump the clipboard histor…☆117Apr 16, 2026Updated 4 months ago
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆50Jul 23, 2026Updated 3 weeks ago
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆66Jan 21, 2025Updated last year
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆378Updated this week
- Random BOFs for LDAP tradecraft☆73Sep 9, 2025Updated 11 months ago
- ☆194Oct 21, 2025Updated 9 months ago