Tool for viewing NTDS.dit
☆205Mar 14, 2025Updated last year
Alternatives and similar repositories for DitExplorer
Users that are interested in DitExplorer are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Enumerate Domain Users Without Authentication☆306Apr 22, 2025Updated last year
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- ☆239Oct 8, 2024Updated last year
- A C++ proof of concept demonstrating the exploitation of Windows Protected Process Light (PPL) by leveraging COM-to-.NET redirection and …☆337Mar 6, 2025Updated last year
- ☆202Mar 28, 2025Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- .NET Post-Exploitation Utility for Abusing Strong Explicit Certificate Mappings in ADCS☆154Feb 10, 2025Updated last year
- Weaponizing DCOM for NTLM Authentication Coercions☆215Nov 4, 2025Updated 9 months ago
- Generate and Manage KeyCredentialLinks☆258Jul 17, 2026Updated 3 weeks ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆460Jun 27, 2025Updated last year
- Run native PE or .NET executables entirely in-memory. Build the loader as an .exe or .dll—DllMain is Cobalt Strike UDRL-compatible☆275Jun 18, 2025Updated last year
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆312Mar 28, 2026Updated 4 months ago
- A tool to modify SCCM remote control settings on the client machine, enabling remote control without permission prompts or notifications.…☆121Oct 20, 2024Updated last year
- ☆248May 5, 2024Updated 2 years ago
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆362Updated this week
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Weaponizing DCOM for NTLM Authentication Coercions☆275Jul 1, 2025Updated last year
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆389Dec 13, 2024Updated last year
- SACL Scanner is a tool designed to scan and analyze SACLs.☆52Feb 13, 2025Updated last year
- ForsHops☆155Mar 25, 2025Updated last year
- ☆96Apr 7, 2026Updated 4 months ago
- Beacon Object File (BOF) for identifying dependent child services of a given parent.☆19Jun 20, 2025Updated last year
- Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data☆415Jul 15, 2026Updated 3 weeks ago
- An example reference design for a proposed BOF PE☆238Jan 23, 2026Updated 6 months ago
- Fileless atexec, no more need for port 445☆416Mar 28, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)☆745May 7, 2025Updated last year
- The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencie…☆182Sep 3, 2025Updated 11 months ago
- ☆137Feb 11, 2025Updated last year
- Abusing Azure services over C2☆380Jan 20, 2026Updated 6 months ago
- Local SYSTEM auth trigger for relaying - X☆160Jul 23, 2025Updated last year
- ☆165May 5, 2025Updated last year
- Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework☆650May 8, 2025Updated last year
- A Python POC for CRED1 over SOCKS5☆172Oct 5, 2024Updated last year
- Robust Cobalt Strike shellcode loader with multiple advanced evasion features☆206Apr 21, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- wspcoerce coerces a Windows computer account via SMB to an arbitrary target using MS-WSP☆141Nov 24, 2025Updated 8 months ago
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆96Jul 3, 2025Updated last year
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆437Sep 29, 2025Updated 10 months ago
- ☆388Oct 17, 2025Updated 9 months ago
- Lateral Movement as loggedon User via Speech Named Pipe COM & ISpeechNamedPipe + COM Hijacking☆149Jul 2, 2025Updated last year
- ☆133Jan 23, 2025Updated last year
- SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.☆423Sep 26, 2025Updated 10 months ago