Lists (22)
Sort Name ascending (A-Z)
Active Directory
Binary
Database
DNS
Evasion
Exploitation
Fuzzing
Information Gathering
Most Used
Obfuscation
Passwords
Payloads
Pivoting
PoC
Post Exploitation
Privilege Escalation
Reconnaissance
Reverse Engineering
Sniffing
Spraying
Vulnerability
Web
Stars
dnSpyEx / dnSpy
Forked from dnSpy/dnSpyUnofficial revival of the well known .NET debugger and assembly editor, dnSpy
SCADA StrangeLove Default/Hardcoded Passwords List
Tool for Active Directory Certificate Services enumeration and abuse
Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket
PowerShell MachineAccountQuota and DNS exploit tools
SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket
PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as well.
A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) with various protocols.
Kerberos unconstrained delegation abuse toolkit
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)
A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.
Password spraying using AWS Lambda for IP rotation
Username guessing tool primarily for use against the default Solaris SMTP service. Can use either EXPN, VRFY or RCPT TO.
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
WhiteWinterWolf's PHP web shell
Open Source Intelligence gathering tool aimed at reducing the time spent harvesting information from open sources.
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
A fast, simple, recursive content discovery tool written in Rust.
In-depth attack surface mapping and asset discovery
Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.
Find domains and subdomains related to a given domain