Stars
Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database
Leaking kernel addresses from ETW consumers. Requires Administrator privileges.
A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable with a simple HTML GUI.
Interact with Chromium-based browsers' debug port to view open tabs, installed extensions, and cookies
SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using Windows Filtering Platform (WFP). This version fo…
Windows protocol library, including SMB and RPC implementations, among others.
A small tool to convert Base64-encoded .kirbi tickets from Rubeus into .ccache files for Impacket
Beacon Object File (BOF) for Using the BadSuccessor Technique for Account Takeover
Proof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.
Unauthenticated start EFS service on remote Windows host (make PetitPotam great again)
Six Degrees of Domain Admin
A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.
SSCEP is a command line client for the SCEP protocol
AeroSpace is an i3-like tiling window manager for macOS
A tiling window manager for macOS based on binary space partitioning
The recursive internet scanner for hackers. 🧡
The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).
FUSE driver to read/write Windows' BitLocker-ed volumes under Linux / Mac OSX
Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and comprehensive network discovery. Export results as BloodHound‑…
BloodHound-MCP-AI is integration that connects BloodHound with AI through Model Context Protocol, allowing security professionals to analyze Active Directory attack paths using natural language ins…
Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.