A fast enumeration tool for Windows Active Directory Pentesting written in Go
☆286Jan 14, 2023Updated 3 years ago
Alternatives and similar repositories for ADReaper
Users that are interested in ADReaper are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- linWinPwn is a bash script that streamlines the use of a number of Active Directory tools☆2,192Updated this week
- OPSEC safe Kerberoasting in C#☆200Jun 14, 2022Updated 4 years ago
- Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.☆488Jul 9, 2024Updated 2 years ago
- BloodyAD is an Active Directory Privilege Escalation Framework☆2,248May 13, 2026Updated 2 months ago
- Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.☆504Jan 23, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆490Oct 14, 2022Updated 3 years ago
- Framework for Kerberos relaying☆954May 29, 2022Updated 4 years ago
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆373Dec 24, 2021Updated 4 years ago
- AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with…☆317Jul 4, 2023Updated 3 years ago
- Dump NTDS with golden certificates and UnPAC the hash☆648Mar 20, 2024Updated 2 years ago
- An Office365 User Attack Tool☆653Mar 19, 2024Updated 2 years ago
- ☆499Nov 20, 2022Updated 3 years ago
- KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default…☆1,652Aug 6, 2022Updated 3 years ago
- DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the …☆574Jun 5, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆750May 19, 2023Updated 3 years ago
- Retrieve AD accounts description and search for password in it☆81Jul 21, 2022Updated 4 years ago
- AD ACL abuse☆407Sep 11, 2025Updated 10 months ago
- Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.☆132Nov 25, 2021Updated 4 years ago
- A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.☆640Oct 18, 2025Updated 9 months ago
- Convert shellcode into different formats!☆356Jan 24, 2023Updated 3 years ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆188Jun 22, 2022Updated 4 years ago
- PIC lsass dumper using cloned handles☆596Oct 18, 2022Updated 3 years ago
- evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)☆1,504Dec 21, 2023Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀☆1,164Oct 21, 2024Updated last year
- CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.☆1,410Dec 16, 2021Updated 4 years ago
- A User Impersonation tool - via Token or Shellcode injection☆422May 21, 2022Updated 4 years ago
- Hide your payload in DNS☆622May 3, 2023Updated 3 years ago
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆743Aug 18, 2023Updated 2 years ago
- ☆413Dec 14, 2023Updated 2 years ago
- The swiss army knife of LSASS dumping☆2,129Sep 17, 2024Updated last year
- ☆536Nov 20, 2021Updated 4 years ago
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆399Jan 10, 2025Updated last year
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A quick handy script to harvest credentials off of a user during a Red Team and get execution of a file from the user☆254Mar 7, 2022Updated 4 years ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆207Feb 23, 2022Updated 4 years ago
- Automation for internal Windows Penetrationtest / AD-Security☆3,685Aug 28, 2025Updated 10 months ago
- Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-softw…☆275Apr 4, 2023Updated 3 years ago
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆813Jun 16, 2026Updated last month
- Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts wa…☆1,093Oct 14, 2025Updated 9 months ago
- Find vulnerabilities in AD Group Policy, but do it better than Grouper2 did.☆931Apr 8, 2025Updated last year