preempt / ntlm-scannerLinks
A simple python tool based on Impacket that tests servers for various known NTLM vulnerabilities
☆205Updated 5 years ago
Alternatives and similar repositories for ntlm-scanner
Users that are interested in ntlm-scanner are comparing it to the libraries listed below
Sorting:
- Domain user enumeration tool☆216Updated 2 years ago
- Fake User Generator for Active Directory Environments☆158Updated 7 years ago
- A curated list of awesome BloodhoundAD resources☆238Updated 3 years ago
- Parse NTLM challenge messages over HTTP and SMB☆150Updated 3 years ago
- Microsoft External Attack Tool☆178Updated 3 years ago
- An Insider Threat Toolkit☆155Updated 7 years ago
- PEAS is a Python 2 library and command line application for running commands on an ActiveSync server e.g. Microsoft Exchange.☆184Updated 3 years ago
- Project that retrieves crackable hashes from KRB5 AS-REP responses for users without kerberoast preauthentication enabled.☆208Updated 7 years ago
- Resources for our Active Directory security workshops☆141Updated 4 years ago
- Check if MS-RPRN is remotely available with powershell/c#☆179Updated 7 years ago
- Abuse CVE-2020-1472 (Zerologon) to take over a domain and then repair the local stored machine account password.☆181Updated 2 years ago
- Repo with various Red Team scripts☆147Updated 5 years ago
- A HTA shell to assist with breakout assessments.☆113Updated 4 years ago
- Tool that automates Active Directory enumeration☆88Updated 4 years ago
- poc for CVE-2020-1337 (Windows Print Spooler Elevation of Privilege)☆171Updated 5 years ago
- lateral movement techniques that can be used during red team exercises☆273Updated 6 years ago
- A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system☆206Updated 2 years ago
- Check-LocalAdminHash is a PowerShell tool that attempts to authenticate to multiple hosts over either WMI or SMB using a password hash to…☆180Updated 2 years ago
- ☆198Updated 5 years ago
- ☆264Updated 3 years ago
- Powershell function to pull the local admin passwords from LDAP, stored there by LAPS.☆122Updated 6 years ago
- ☆140Updated 6 years ago
- Some .ps1 scripts for pentesting☆140Updated 3 weeks ago
- A Network Enumeration and Attack Toolset for Windows Active Directory Environments.☆247Updated last year
- ☆128Updated 2 years ago
- Web-based check for Windows privesc vulnerabilities☆140Updated 2 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆96Updated 3 years ago
- ☆167Updated 3 years ago
- This Repository contains the stuff related to windows Active directory environment exploitation☆153Updated 2 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 6 years ago