ViperOne's repositories
Pentest-Everything
A collection of CTF write-ups, pentesting topics, guides and notes. Notes compiled from multiple sources and my own lab research. Topics also support OSCP, Active Directory, CRTE, eJPT and eCPPT.
ActiveDirectoryAttackTool
ADAT is a small tool used to assist CTF players and Penetration testers with easy commands to run against an Active Directory Domain Controller. This tool is is best utilized using a set of known credentials against the host.
Invoke-RDPThief
Inject RDPThief into memory with PowerShell.
OSEP-Notes
Various notes I have compiled during the OSEP PEN-300 course.
DCSync-To-Hashcat
Performs DCSync, extracts all hashes in a Hashcat friendly format
Invoke-DumpMDF
PowerShell script that extracts MSSQL logon hashes from master.mdf
Create-BloodHound-Graph
HTML file that utilises vis.js to create bespoke bloodhound graphs.
Invoke-DomainDictionary
Parses information from the Current or specified Domain into a dictionary file to be used for password cracking
Invoke-SessionExec
Execute commands in context of a user logon session
Invoke-VNCAuth
PowerShell script to enumerate for and identify VNC servers that do not require authentication. Supports Active Directory target acquisition and CIDR notations.
Invoke-PowerIncrease
PowerShell port of SharpIncrease. Inflates binary files to aid in AV evasion
DomainPasswordSpray
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!
hashcat-6.2.6-SCCM
hashcat fork with SCCM hash support
Invoke-PowerStrings
Extract strings from binary files with PowerShell
EncryptedCompiledBinaries
For private use :)
Get-NetNTLM
PowerShell module to get the NTLMv2 / NTLMv1 hash of the current user
Invoke-IPMIDump
PowerShell IPMI Password Hash Dumper
LocalAccountBruteforce
Simple PowerShell script to Bruteforce local accounts.
ConvertTo-NT
Uses PowerShell to convert a given string to its NT hash equivalent.
Invoke-s4u2self
A tool that abuses s4u2self to gain access to remote hosts
Invoke-SMBRemoting
Interactive Shell and Command Execution over Named-Pipes (SMB)
PXEThief
PXEThief is a set of tooling that can extract passwords from the Operating System Deployment functionality in Microsoft Endpoint Configuration Manager