knavesec / CredMaster
Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling
☆1,011Updated 6 months ago
Alternatives and similar repositories for CredMaster:
Users that are interested in CredMaster are comparing it to the libraries listed below
- TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!☆1,111Updated 3 months ago
- Username enumeration and password spraying tool aimed at Microsoft O365.☆809Updated 3 months ago
- A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)☆1,071Updated 8 months ago
- ☆653Updated 3 weeks ago
- Powershell tool to automate Active Directory enumeration.☆1,056Updated last month
- Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!☆1,081Updated 7 months ago
- BloodyAD is an Active Directory Privilege Escalation Framework☆1,508Updated 2 weeks ago
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆766Updated 2 years ago
- An Office365 User Attack Tool☆628Updated 11 months ago
- Dumping DPAPI credz remotely☆1,067Updated 3 months ago
- Python version of the C# tool for "Shadow Credentials" attacks☆671Updated last week
- onedrive user enumeration - pentest tool to enumerate valid o365 users☆644Updated 2 months ago
- ☆1,565Updated 8 months ago
- Maximizing BloodHound. Max is a good boy.☆504Updated 3 weeks ago
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts☆1,101Updated 8 months ago
- Windows Local Privilege Escalation from Service Account to System☆757Updated 4 years ago
- Kerberos unconstrained delegation abuse toolkit☆1,244Updated 3 weeks ago
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆705Updated last year
- Compiled Binaries for Ghostpack☆1,266Updated 3 months ago
- A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the ac…☆945Updated 11 months ago
- Python script to enumerate users, groups and computers from a Windows domain through LDAP queries☆842Updated 2 years ago
- A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.☆1,216Updated last year
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆514Updated 3 months ago
- ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping …☆930Updated last month
- The Hunt for Malicious Strings☆1,167Updated 2 years ago
- Collection of PowerShell functions a Red Teamer may use in an engagement☆516Updated last year
- Some notes and examples for cobalt strike's functionality☆1,002Updated 3 years ago
- Extract credentials from lsass remotely☆2,084Updated last month
- A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.☆1,891Updated last week
- Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, …☆850Updated 3 months ago