preempt / ntlm-scannerLinks
A simple python tool based on Impacket that tests servers for various known NTLM vulnerabilities
☆204Updated 5 years ago
Alternatives and similar repositories for ntlm-scanner
Users that are interested in ntlm-scanner are comparing it to the libraries listed below
Sorting:
- Domain user enumeration tool☆214Updated 2 years ago
- Fake User Generator for Active Directory Environments☆158Updated 7 years ago
- Parse NTLM challenge messages over HTTP and SMB☆151Updated 3 years ago
- Project that retrieves crackable hashes from KRB5 AS-REP responses for users without kerberoast preauthentication enabled.☆208Updated 7 years ago
- An Insider Threat Toolkit☆155Updated 6 years ago
- Microsoft External Attack Tool☆178Updated 2 years ago
- A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system☆205Updated 2 years ago
- A curated list of awesome BloodhoundAD resources☆235Updated 3 years ago
- Tool that automates Active Directory enumeration☆88Updated 4 years ago
- PEAS is a Python 2 library and command line application for running commands on an ActiveSync server e.g. Microsoft Exchange.☆184Updated 2 years ago
- ☆140Updated 5 years ago
- Check if MS-RPRN is remotely available with powershell/c#☆178Updated 7 years ago
- ☆198Updated 5 years ago
- lateral movement techniques that can be used during red team exercises☆273Updated 5 years ago
- ☆261Updated 3 years ago
- Powershell function to pull the local admin passwords from LDAP, stored there by LAPS.☆121Updated 5 years ago
- Resources for our Active Directory security workshops☆140Updated 4 years ago
- An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.☆306Updated 3 years ago
- poc for CVE-2020-1337 (Windows Print Spooler Elevation of Privilege)☆171Updated 5 years ago
- A HTA shell to assist with breakout assessments.☆112Updated 4 years ago
- This Repository contains the stuff related to windows Active directory environment exploitation☆153Updated 2 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆167Updated 5 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆125Updated 6 years ago
- Office 365 and Exchange Enumeration☆199Updated 6 years ago
- Simple C# for checking for the existence of credential files related to AWS, Microsoft Azure, and Google Compute.☆177Updated 7 years ago
- Aggressor scripts for phases of a pen test or red team assessment☆184Updated last year
- Exploit for Pulse Connect Secure SSL VPN arbitrary file read vulnerability (CVE-2019-11510)☆137Updated 5 years ago
- Abuse CVE-2020-1472 (Zerologon) to take over a domain and then repair the local stored machine account password.☆181Updated 2 years ago
- Some .ps1 scripts for pentesting☆138Updated 2 weeks ago
- Repo with various Red Team scripts☆146Updated 5 years ago