awesome-repositories.com
Blog
MCP
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetServeur MCPÀ proposNotre méthodologiePresse
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
S3cur3Th1sSh1t avatar

S3cur3Th1sSh1t/WinPwn

0
View on GitHub↗
3,674 stars·538 forks·PowerShell·BSD-3-Clause·4 vues

WinPwn

WinPwn is a Windows penetration testing framework and security toolkit designed for auditing Active Directory and exploiting Windows environments. It provides a collection of automated tools and scripts for domain enumeration, credential theft, and privilege escalation.

The toolkit distinguishes itself through capabilities for neutralizing antimalware scanning interfaces to evade detection and providing offline binary packaging for execution on isolated systems without internet access. It also includes specialized utilities for intercepting and relaying SMB authentication traffic to gain unauthorized network access.

The project covers a broad surface of security auditing, including local system inspection for software inventories, domain asset mapping to identify network vulnerabilities, and the extraction of passwords and hashes from system memory and browser histories. It further includes methods for gaining higher system permissions by identifying registry misconfigurations and kernel vulnerabilities.

Features

  • Active Directory Security Tools - Maps network assets and audits directory users and groups to identify weaknesses in Active Directory configurations.
  • Network Discovery and Enumeration - Maps directory users and groups through active scanning of domain services and network shares.
  • SMB Relay Attacks - Intercepts authentication traffic and redirects it to a target system to gain unauthorized network access.
  • SMB Relay Tools - Intercepts and relays authentication traffic to gain unauthorized access to resources.
  • Credential Memory Extraction - Retrieves passwords and hashes by scanning system memory and analyzing local storage files.
  • Security Product Evasions - Neutralizes antimalware scanning interfaces and blocks event tracing to evade detection during exploitation.
  • Credential Extraction - Retrieves passwords and hashes from system memory, system files, and browser histories.
  • Windows Privilege Escalation Suites - Provides a toolset for identifying misconfigurations and exploiting kernel vulnerabilities to gain higher system permissions.
  • Credential Extraction Utilities - Provides a utility for retrieving passwords and hashes from system memory, files, and browser histories.
  • Active Directory Enumerations - Enumerates directory users and groups to map the Active Directory environment and identify domain vulnerabilities.
  • Privilege Escalation Scanning - Facilitates gaining higher system permissions by scanning for and exploiting misconfigurations and registry weaknesses.
  • Registry-Based Escalations - Increases system permissions by identifying and modifying insecure configuration keys within the Windows registry.
  • Penetration Testing Suites - Provides a comprehensive collection of automated tools and scripts for security auditing and exploiting Windows environments.
  • SMB Relay Attack Execution - Intercepts and relays SMB authentication traffic using session management to gain unauthorized network access.
  • SMB Relay Attacks - Intercepts and relays authentication traffic to gain unauthorized access to network resources.
  • Windows Vulnerability Assessments - Automates security assessments on Windows systems to identify vulnerabilities and test defense mechanisms.
  • Standalone Binary Packaging - Bundles required scripts and binaries into standalone packages for execution on isolated systems.
  • Script Wrapper Executables - Provides standalone packages for executing essential scripts and binaries on systems without internet connectivity.
  • Offline Security Auditing - Executes security scripts and binaries on isolated systems that lack an active internet connection.
  • Host Reconnaissance - Provides automated collection of software inventories, network shares, and sensitive files from targeted hosts.
  • AMSI and WLDP Patchers - Provides capabilities to neutralize antimalware scanning interfaces by patching runtime memory to avoid detection.
  • PowerShell Tooling - Automates various Windows penetration testing tasks.
  • Privilege Escalation Tools - Tool for Windows privilege escalation and enumeration.

Historique des stars

Graphique de l'historique des stars pour s3cur3th1ssh1t/winpwnGraphique de l'historique des stars pour s3cur3th1ssh1t/winpwn

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Start searching with AI

Alternatives open source à WinPwn

Projets open source similaires, classés selon le nombre de fonctionnalités partagées avec WinPwn.
  • securethisshit/winpwnAvatar de SecureThisShit

    SecureThisShit/WinPwn

    3,673Voir sur GitHub↗

    WinPwn is a Windows penetration testing framework designed for conducting internal security assessments and privilege escalation. It functions as a suite for Active Directory security auditing, credential extraction, and the execution of privilege escalation scripts. The toolset enables the automation of SMB relay attacks to intercept and reuse authentication hashes. It provides specialized capabilities for retrieving passwords and hashes from system memory, registries, and browsers using obfuscated techniques to avoid detection. The framework covers broad capability areas including domain a

    PowerShell
    Voir sur GitHub↗3,673
  • specterops/bloodhoundAvatar de SpecterOps

    SpecterOps/BloodHound

    2,789Voir sur GitHub↗

    BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity relationships and permissions in Active Directory. It functions as a security tool for auditing directory services, uncovering unintended privilege relationships, and visualizing sequences of permissions that can lead to domain compromise. The project differentiates itself as a comprehensive adversary emulation framework that coordinates remote agents and executes post-exploitation commands. It includes a reverse proxy for bypassing multi-factor authentication via real-time session hij

    Go
    Voir sur GitHub↗2,789
  • byt3bl33d3r/crackmapexecAvatar de byt3bl33d3r

    byt3bl33d3r/CrackMapExec

    9,144Voir sur GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    Voir sur GitHub↗9,144
  • pentestmonkey/windows-privesc-checkAvatar de pentestmonkey

    pentestmonkey/windows-privesc-check

    1,496Voir sur GitHub↗

    Windows-privesc-check is an automated security auditing tool designed to identify misconfigurations and vulnerabilities that may allow for unauthorized privilege escalation on Windows systems. It functions by scanning local system configurations, including file system permissions, registry settings, and service configurations, to detect security weaknesses that could lead to elevated administrative access. The tool distinguishes itself by providing both local auditing and remote assessment capabilities. It can query remote Windows hosts to enumerate network shares, user accounts, and domain t

    Python
    Voir sur GitHub↗1,496
Voir les 30 alternatives à WinPwn→

Questions fréquentes

Que fait s3cur3th1ssh1t/winpwn ?

WinPwn is a Windows penetration testing framework and security toolkit designed for auditing Active Directory and exploiting Windows environments. It provides a collection of automated tools and scripts for domain enumeration, credential theft, and privilege escalation.

Quelles sont les fonctionnalités principales de s3cur3th1ssh1t/winpwn ?

Les fonctionnalités principales de s3cur3th1ssh1t/winpwn sont : Active Directory Security Tools, Network Discovery and Enumeration, SMB Relay Attacks, SMB Relay Tools, Credential Memory Extraction, Security Product Evasions, Credential Extraction, Windows Privilege Escalation Suites.

Quelles sont les alternatives open-source à s3cur3th1ssh1t/winpwn ?

Les alternatives open-source à s3cur3th1ssh1t/winpwn incluent : securethisshit/winpwn — WinPwn is a Windows penetration testing framework designed for conducting internal security assessments and privilege… specterops/bloodhound — BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity… byt3bl33d3r/crackmapexec — CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security… pentestmonkey/windows-privesc-check — Windows-privesc-check is an automated security auditing tool designed to identify misconfigurations and… k8gege/k8tools — K8tools is a multi-stage attack framework that combines memory-only payload execution, credential testing, port… empireproject/empire — Empire is a command and control framework and post-exploitation toolkit used for network penetration testing. It…