preempt / ntlm-scannerLinks
A simple python tool based on Impacket that tests servers for various known NTLM vulnerabilities
☆204Updated 4 years ago
Alternatives and similar repositories for ntlm-scanner
Users that are interested in ntlm-scanner are comparing it to the libraries listed below
Sorting:
- Domain user enumeration tool☆215Updated last year
- Fake User Generator for Active Directory Environments☆158Updated 6 years ago
- Project that retrieves crackable hashes from KRB5 AS-REP responses for users without kerberoast preauthentication enabled.☆205Updated 6 years ago
- A curated list of awesome BloodhoundAD resources☆234Updated 2 years ago
- PEAS is a Python 2 library and command line application for running commands on an ActiveSync server e.g. Microsoft Exchange.☆179Updated 2 years ago
- Parse NTLM challenge messages over HTTP and SMB☆151Updated 2 years ago
- Tool that automates Active Directory enumeration☆88Updated 4 years ago
- Repo with various Red Team scripts☆145Updated 4 years ago
- Powershell function to pull the local admin passwords from LDAP, stored there by LAPS.☆120Updated 5 years ago
- Microsoft External Attack Tool☆179Updated 2 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆96Updated 3 years ago
- ☆140Updated 5 years ago
- An Insider Threat Toolkit☆152Updated 6 years ago
- A HTA shell to assist with breakout assessments.☆113Updated 3 years ago
- Check-LocalAdminHash is a PowerShell tool that attempts to authenticate to multiple hosts over either WMI or SMB using a password hash to…☆179Updated last year
- Check if MS-RPRN is remotely available with powershell/c#☆174Updated 6 years ago
- lateral movement techniques that can be used during red team exercises☆273Updated 5 years ago
- Resources for our Active Directory security workshops☆140Updated 3 years ago
- ☆129Updated 2 years ago
- A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system☆204Updated 2 years ago
- ☆193Updated 5 years ago
- ☆257Updated 3 years ago
- Weaponizing Splunk with reverse and bind shells.☆183Updated 8 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆125Updated 6 years ago
- poc for CVE-2020-1337 (Windows Print Spooler Elevation of Privilege)☆173Updated 4 years ago
- Some .ps1 scripts for pentesting☆133Updated 4 years ago
- A Network Enumeration and Attack Toolset for Windows Active Directory Environments.☆247Updated last year
- Simple C# for checking for the existence of credential files related to AWS, Microsoft Azure, and Google Compute.☆172Updated 6 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆166Updated 4 years ago
- This Repository contains the stuff related to windows Active directory environment exploitation☆152Updated 2 years ago