moloch54 / b4blood
Finds Domain Controller on a network, enumerates users, AS-REP Roasting and hash cracking, bruteforces password, dumps AD users, DRSUAPI, scans SMB/NFS shares for passwords, scans for remote accesses, dumps NTDS.dit.
☆18Updated last year
Alternatives and similar repositories for b4blood:
Users that are interested in b4blood are comparing it to the libraries listed below
- Simple Python script to sort nuclei scans by severity and URL☆29Updated last year
- Saves pages to Wayback machine☆13Updated 4 months ago
- A straightforward tool for exploiting SMTP Smuggling vulnerabilities.☆15Updated 8 months ago
- This repository presents a proof-of-concept of CVE-2023-22527☆12Updated last year
- Public repo of Nuclei scanner templates.☆18Updated last year
- Wounty is a simple web enumeration script that makes use of other popular tools to automate the early stages of recognition in Bug Bounty…☆14Updated 3 years ago
- FireProx written in Go☆19Updated 11 months ago
- Ffuf output browser☆39Updated 2 years ago
- H&E- Burp Highlighter and Extractor☆18Updated 2 years ago
- Reversing Citrix Gateway for XSS☆17Updated last year
- tool that generates bypasses for open redirects☆52Updated 2 years ago
- A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.☆14Updated 3 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- OSINT tool abusing SecurityTrails domain suggestion API to find potentially related domains by keyword and brute force.☆26Updated 2 years ago
- A script used to query the dehashed API and filter for more useful results☆15Updated 3 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 7 months ago
- Bcheck scripts for Burp☆26Updated 8 months ago
- Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.☆12Updated last year
- Burp extension to track your current IP address. Extension focused for red teams where the attacker needs to log all used IP addresses.☆25Updated last year
- ☆26Updated 2 years ago
- Tomcat backdoor based on CS blog☆27Updated last year
- Template Nuclei SSTI☆29Updated last year
- Backend for Nuclear Pond☆21Updated last year
- RepoReaper is an automated tool crafted to meticulously scan and identify exposed .git repositories within specified domains and their su…☆34Updated last year
- Burp extension used to snip any header from all the requests.☆22Updated last year
- PoC for Exploiting CVE-2024-31848/49/50/51 - File Path Traversal☆16Updated 11 months ago
- Automated compromise detection of the world's most popular packages☆15Updated last year
- A basic proxylogon scanner☆27Updated 3 years ago
- ☆12Updated 3 years ago
- Creating a Database for Mass Recon☆12Updated 4 years ago