knavesec / CredMaster
Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling
☆994Updated 4 months ago
Alternatives and similar repositories for CredMaster:
Users that are interested in CredMaster are comparing it to the libraries listed below
- TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!☆1,095Updated 2 months ago
- Username enumeration and password spraying tool aimed at Microsoft O365.☆793Updated 2 months ago
- A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)☆1,047Updated 7 months ago
- ☆640Updated last month
- BloodyAD is an Active Directory Privilege Escalation Framework☆1,401Updated 3 weeks ago
- Powershell tool to automate Active Directory enumeration.☆1,033Updated 2 weeks ago
- Dumping DPAPI credz remotely☆1,044Updated 2 months ago
- An Office365 User Attack Tool☆628Updated 9 months ago
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆762Updated 2 years ago
- ☆1,547Updated 7 months ago
- Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!☆1,052Updated 6 months ago
- Azure JWT Token Manipulation Toolset☆611Updated last month
- onedrive user enumeration - pentest tool to enumerate valid o365 users☆635Updated last month
- A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.☆1,860Updated last month
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts☆1,086Updated 7 months ago
- Python version of the C# tool for "Shadow Credentials" attacks☆650Updated last month
- The Hunt for Malicious Strings☆1,137Updated 2 years ago
- Maximizing BloodHound. Max is a good boy.☆503Updated 5 months ago
- A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the ac…☆927Updated 9 months ago
- Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, …☆832Updated 2 months ago
- Windows Local Privilege Escalation from Service Account to System☆725Updated 4 years ago
- A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.☆552Updated 3 years ago
- Compiled Binaries for Ghostpack☆1,232Updated 2 months ago
- Some notes and examples for cobalt strike's functionality☆995Updated 2 years ago
- A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.☆1,192Updated last year
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆704Updated last year
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,171Updated last year
- ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping …☆917Updated 2 weeks ago
- ☆749Updated 2 years ago