praetorian-inc / NTLMReconLinks
A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.
☆99Updated last year
Alternatives and similar repositories for NTLMRecon
Users that are interested in NTLMRecon are comparing it to the libraries listed below
Sorting:
- Convert ldapdomaindump to Bloodhound☆80Updated last year
- Static standalone binaries for Linux and Windows (x64) of Python offensive tools. Compiled using PyInstaller, Docker for Windows, WSL2, a…☆111Updated 3 years ago
- User enumeration and password spraying tool for testing Azure AD☆70Updated 3 years ago
- Checks for signature requirements over LDAP☆98Updated 3 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆32Updated 3 years ago
- My BloodHound custom queries☆26Updated 2 years ago
- Automated exploitation of MSSQL servers at scale☆128Updated this week
- ACL abuse swiss-knife☆125Updated 2 years ago
- Retrieve AD accounts description and search for password in it☆82Updated 3 years ago
- Get Fine Grained Password Policy☆78Updated 7 months ago
- ☆129Updated 2 years ago
- C# tool to discover low hanging fruits☆96Updated 2 years ago
- Secretsdump C# version only supporting local (live) operation☆52Updated 7 months ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆186Updated 3 years ago
- ☆95Updated 3 years ago
- Tool for efficient directory enumeration☆65Updated last year
- Azure AD Password Checker☆85Updated 10 months ago
- Modified version of Pypykatz to print encrypted credentials☆54Updated 2 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- ☆84Updated last year
- Enumerate valid users within Microsoft Teams and OneDrive with clean output.☆58Updated 10 months ago
- Microsoft Exchange password spray tool with proxy support.☆40Updated 4 years ago
- Some scripts to support with importing large datasets into BloodHound☆81Updated 2 years ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆48Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆64Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆76Updated 2 years ago
- Rewriting SIET to python3☆54Updated last year
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆91Updated 3 years ago
- The ldapconsole script allows you to perform custom LDAP requests to a Windows domain.☆64Updated 2 months ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆58Updated 3 years ago