This is your work, valued

France

Charlie Bromberg

Elite
@ShutdownRepo

pywhisker. Python version of the C# tool for "Shadow Credentials" attacks

918

targetedKerberoast. Kerberoast with ACL abuse capabilities

675

shellerator. Simple CLI tool for the generation of bind and reverse shells in multiple languages

393

smartbrute. Password spraying and bruteforcing tool for Active Directory Domain Services

388

ShadowCoerce. MS-FSRVP coercion abuse PoC

302

dcshadow. Python alternative to Mimikatz lsadump::dcshadow

162

The-Hacker-Tools. This project is aimed at freely providing technical guides on various hacking tools.

125

impacket. Impacket is a collection of Python classes for working with network protocols.

78

httpmethods. HTTP verb tampering & methods enumeration

69

telegram-bot-cli. This is a command line tool I use when I want to get notified, on Telegram (on my phone), that something has finished running (on my laptop).

62

uberfile. Simple CLI tool for the generation of downloader oneliners for UNIX-like or Windows systems

44

hashonymize. Anonymize your hashcat formatted files for online cracking

31

Get-GPPPassword. Python script for extracting and decrypting Group Policy Preferences passwords

26

google-colab-hashcat. Jupyter Notebook

24

CVE-2020-7961. Exploit script for CVE-2020-7961

18

GeoWordlists. GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.

11

openvpn-install. OpenVPN road warrior installer for Debian, Ubuntu and CentOS

10

blackhat-arsenal-tools. Official Black Hat Arsenal Security Tools Repository

7

Responder. Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.

6

BloodHound.py. A Python based ingestor for BloodHound

6

PetitPotam. C

5

CrackMapExec. A swiss army knife for pentesting networks

5

PKINITtools. Tools for Kerberos PKINIT and relaying to AD CS

4

bloodhound-quickwin. Simple script to extract useful informations from the combo BloodHound + Neo4j

4

GoldenCopy. Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.

4

Powermad. PowerShell MachineAccountQuota and DNS exploit tools

3

krbrelayx. Kerberos unconstrained delegation abuse toolkit

3

volatility3. Volatility 3.0 development

3

ldeep. In-depth ldap enumeration utility

3

badges. ToolsWatch and Black Hat Arsenal selection of badges

3

username-anarchy. Username tools for penetration testing

3

CrackMapExec-MachineAccountQuota. CrackMapExec module that retrieves the "MachineAccountQuota" domain-level attribute.

2

BloodHound. Six Degrees of Domain Admin

2

infosec-events.

2

Keyboard. C++

1

github-actions-nested-workflows. GHA bug showcase

1