praetorian-inc / NTLMReconLinks
A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.
☆92Updated last year
Alternatives and similar repositories for NTLMRecon
Users that are interested in NTLMRecon are comparing it to the libraries listed below
Sorting:
- Convert ldapdomaindump to Bloodhound☆80Updated last year
- Static standalone binaries for Linux and Windows (x64) of Python offensive tools. Compiled using PyInstaller, Docker for Windows, WSL2, a…☆102Updated 3 years ago
- User enumeration and password spraying tool for testing Azure AD☆70Updated 3 years ago
- ACL abuse swiss-knife☆125Updated 2 years ago
- Secretsdump C# version only supporting local (live) operation☆50Updated 2 months ago
- ☆126Updated 2 years ago
- Retrieve AD accounts description and search for password in it☆83Updated 2 years ago
- Checks for signature requirements over LDAP☆97Updated 2 years ago
- Get Fine Grained Password Policy☆70Updated 2 months ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆185Updated 3 years ago
- C# tool to discover low hanging fruits☆94Updated 2 years ago
- Automated exploitation of MSSQL servers at scale☆109Updated 3 weeks ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆64Updated last year
- Some scripts to support with importing large datasets into BloodHound☆80Updated last year
- ☆82Updated 11 months ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- Another tool for exploiting CVE-2017-9248, a cryptographic weakness in Telerik UI for ASP.NET AJAX dialog handler.☆53Updated 10 months ago
- Enumerate valid users within Microsoft Teams and OneDrive with clean output.☆58Updated 5 months ago
- Impacket is a collection of Python classes for working with network protocols.☆18Updated 2 months ago
- My BloodHound custom queries☆24Updated 2 years ago
- POC for Veeam Backup and Replication CVE-2023-27532☆64Updated 2 years ago
- Goscan is a fast TCP scanner I created while learning Golang.☆52Updated 3 years ago
- ☆93Updated 2 years ago
- ☆71Updated 3 weeks ago
- Determine the running software version of a remote F5 BIG-IP management interface.☆67Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆56Updated 3 years ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆91Updated 3 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆32Updated 2 years ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆46Updated 2 years ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated 2 years ago