BOF-SprayAD

Password sprayer

A tool that uses Windows API to perform password spray attacks on domain accounts using either Kerberos or LDAP authentication.

Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray

GitHub

43 stars
1 watching
1 forks
Language: C
last commit: over 3 years ago

Related projects:

RepositoryDescriptionStars
dafthack/msolsprayA tool that simulates password login attempts to Azure accounts, logging relevant information such as account status and error codes.918
outflanknl/spray-adAutomates an Active Directory password spraying attack to identify weak or guessable passwords426
dafthack/domainpasswordsprayA tool designed to automate password spraying attacks against domain users1,799
martiningesen/msolsprayA tool for testing Microsoft Online accounts by spraying passwords and gathering account information.85
ustayready/credkingA tool that automates password spraying using AWS Lambda across multiple regions and IP addresses.579
hagrid29/bof-creduiA C-based tool for invoking Windows credential prompt using the CredUIPromptForWindowsCredentials API18
octoberfest7/killdefender_bofA tool that allows an attacker to elevate privileges and gain control over the Windows Defender service62
netero1010/rdphijack-bofA tool for hijacking remote RDP sessions using the WinStationConnect API297
cube0x0/bofroastToolset for extracting and exploiting Kerberos authentication data from Active Directory domains220
boku7/halosgate-psA Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.95
airbus-cert/invoke-bofLoads and executes a malicious payload in a Windows system using PowerShell.245
cobalt-strike/bof-vsA Beacon Object File Visual Studio template project for creating malicious code executables145
cboesecurity/password_pwncheckA tool that checks password strength against breached lists and other rules to help maintain enterprise password policies.158
netero1010/quser-bofA proof-of-concept implementation of a Windows API-based backdoor using the quser.exe utility83
0x3rhy/adduser-bofA Cobalt Strike BOF that exploits a vulnerability to add an admin user70