Skip to content
View The-Viper-One's full-sized avatar

Block or report The-Viper-One

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

The Kerberoasting / AD password-audit wordlist I use on engagements: priority-merged HashMob large list + The-Viper-One's kerberoast_pws, order-preserving dedup via rling, paired with OneRuleToRule…

Shell 13 1 Updated Oct 2, 2026
PowerShell 70 6 Updated Sep 21, 2026

Info on how to use Kerberos KDC on a non-domain joined host

C# 55 3 Updated Jul 31, 2024

Group3r but in Python

Python 60 4 Updated Sep 28, 2026

This repo contains the results of an internal re-write of impacket I undertook at my current company. It contains some of the IoCs found within the library

352 32 Updated Sep 7, 2026

A Linux Privilege Escalation cheat sheet I made prepping for the OSCP that has mophored into the most comprehensive, specific Linux PrivEsc reference online : )

60 4 Updated Mar 21, 2026

A cheatsheet for the Titanis library and reference for using the command line tools from Titanis for Active Directory Penatration Testing

5 Updated May 27, 2026

Tools for CES abuse

Python 44 3 Updated Sep 29, 2026

Active Directory pentest methodology for Claude Code: skills, agents and slash commands for internal AD red-team work (Kerberoasting, ADCS ESC1-17, DCSync, ACL abuse, NTLM relay, delegation), with …

209 33 Updated Aug 24, 2026

Snaffler in Python

Python 117 12 Updated Oct 1, 2026

Drop any Windows DPAPI artifact and it identifies the format and the exact master key it needs, then decrypts once you supply the key. Offline, CLI + web UI.

Python 29 3 Updated Sep 23, 2026

Standalone PowerShell scripts that generate interactive, self-contained HTML reports for Active Directory health and security.

PowerShell 58 12 Updated Oct 5, 2026

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…

Go 110 10 Updated Oct 5, 2026

One-pass anonymous Active Directory enumeration over SAMR and LSARPC — null session, no credentials, with structured reusable output.

Python 69 10 Updated Sep 17, 2026

Ask the Web Account Manager (WAM) for Entra ID tokens

C 158 15 Updated Sep 11, 2026
Python 20 1 Updated Apr 16, 2026

Active Directory snapshots from Linux and macOS in the AD Explorer .dat format. Opens in AD Explorer, works with ADExplorerSnapshot.py and BOFHound.

Python 37 6 Updated Sep 11, 2026
Python 211 44 Updated Oct 1, 2026

Wifite but USB-only & cross-platform.

Python 1,833 155 Updated Oct 6, 2026

Here is a Hashcat rule to generate a list of quick-win passwords. These are the formats I’ve most commonly seen in companies.

2 Updated Nov 28, 2025

Tool to enumerate Windows sessions across one or more hosts via three native RPC interfaces, correlate every observation into a BloodHound HasSession-like JSON report written in Rust. 🦀

Rust 7 Updated Aug 26, 2026

Tool to authenticate to an LDAP/S server with a certificate through Schannel written in Rust. 🦀

Rust 78 9 Updated Sep 12, 2026

Your MitM sidekick for relaying attacks featuring DHCPv6 DNS takeover as well as mDNS, LLMNR and NetBIOS-NS spoofing.

Go 1,326 99 Updated Jul 3, 2026

Recover NT hashes from NetNTLMv1 responses using local WebGPU computation and local/remote table lookup

Rust 131 4 Updated Sep 14, 2026

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

Python 283 32 Updated Aug 30, 2026

A SeImpersonate potato primitive that exploits squatting the IAiddService endpoint

C# 1 Updated Aug 31, 2026

SpicyAD is a C# Active Directory penetration testing tool designed for authorized security assessments. It combines multiple AD attack techniques into a single, easy-to-use tool with both interacti…

C# 108 14 Updated Sep 9, 2026

x64dbg-MCP Server is a native MCP (Model Context Protocol) plugin for x64dbg that exposes the debugger's full functionality over HTTP. Connect any MCP-compatible AI assistant and control x64dbg pro…

Zig 2,210 226 Updated Sep 30, 2026

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber risk through the elimination of attack paths.

30 3 Updated Oct 3, 2026
Next