awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to checkymander/carbuncle

Open-source alternatives to Carbuncle

25 open-source projects similar to checkymander/carbuncle, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Carbuncle alternative.

  • 3gstudent/passwordfilter3

    3gstudent/PasswordFilter

    0View on GitHub↗
    View on GitHub↗0
  • antoniococo/runascsantonioCoco avatar

    antonioCoco/RunasCs

    1,399View on GitHub↗

    RunasCs - Csharp and open version of windows builtin runas.exe

    C#
    View on GitHub↗1,399
  • api0cradle/ultimateapplockerbypasslistapi0cradle avatar

    api0cradle/UltimateAppLockerByPassList

    2,067View on GitHub↗

    The goal of this repository is to document the most common techniques to bypass AppLocker.

    PowerShell
    View on GitHub↗2,067
  • bohops/sharprdphijackB

    bohops/SharpRDPHijack

    0View on GitHub↗
    View on GitHub↗0
  • djhohnstein/wiretapD

    djhohnstein/WireTap

    0View on GitHub↗
    View on GitHub↗0
  • eksperience/knockoutlookE

    eksperience/KnockOutlook

    0View on GitHub↗
    View on GitHub↗0
  • emilyanncr/windows-post-exploitationemilyanncr avatar

    emilyanncr/Windows-Post-Exploitation

    545View on GitHub↗

    Windows post-exploitation tools, resources, techniques and commands to use during post-exploitation phase of penetration test. Contributions are appreciated. Enjoy!

    View on GitHub↗545

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • ghostpack/locklessG

    GhostPack/Lockless

    0View on GitHub↗
    View on GitHub↗0
  • hackplayers/evil-winrmHackplayers avatar

    Hackplayers/evil-winrm

    5,403View on GitHub↗

    Evil-WinRM is a penetration testing tool and interactive remote shell designed for managing and executing commands on remote Windows systems via the WinRM protocol. It functions as a security utility for auditing Windows environments through remote command execution and credential manipulation. The tool distinguishes itself through its authentication capabilities, acting as both a Kerberos authentication client using ticket-based files and an NTLM pass-the-hash client that accesses services using password hashes instead of plaintext credentials. To evade detection, it supports in-memory paylo

    Ruby
    View on GitHub↗5,403
  • infosecn1nja/sharpdoorI

    infosecn1nja/SharpDoor

    0View on GitHub↗
    View on GitHub↗0
  • klsecservices/invoke-vncK

    klsecservices/Invoke-Vnc

    0View on GitHub↗
    View on GitHub↗0
  • mandatoryprogrammer/cursedchromemandatoryprogrammer avatar

    mandatoryprogrammer/CursedChrome

    1,719View on GitHub↗

    Chrome-extension implant that turns victim Chrome browsers into fully-functional HTTP proxies, allowing you to browse sites as your victims.

    JavaScript
    View on GitHub↗1,719
  • mandiant/sharpersistmandiant avatar

    mandiant/SharPersist

    1,538View on GitHub↗

    Windows persistence toolkit written in C#. For detailed usage information on each technique, see the Wiki.

    C#
    View on GitHub↗1,538
  • mubix/post-exploitationmubix avatar

    mubix/post-exploitation

    1,582View on GitHub↗

    Post Exploitation Collection

    C
    View on GitHub↗1,582
  • n00py/lapsdumperN

    n00py/LAPSDumper

    0View on GitHub↗
    View on GitHub↗0
  • nettitude/invoke-powerthiefN

    nettitude/Invoke-PowerThIEf

    0View on GitHub↗
    View on GitHub↗0
  • powershellmafia/powersploitPowerShellMafia avatar

    PowerShellMafia/PowerSploit

    12,880View on GitHub↗

    PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team operations. It provides a framework for auditing Windows system configurations and evaluating the effectiveness of security defenses within an enterprise environment. The framework focuses on techniques that leverage native system administration tools and scripting environments to perform operations. It includes capabilities for executing arbitrary commands, escalating user privileges, and maintaining system persistence through event subscriptions. By utilizing in-memory execu

    PowerShell
    View on GitHub↗12,880
  • qwqdanchum/multirdpQ

    qwqdanchum/MultiRDP

    0View on GitHub↗
    View on GitHub↗0
  • skahwah/sqlreconskahwah avatar

    skahwah/SQLRecon

    813View on GitHub↗

    A C# MS-SQL toolkit designed for offensive reconnaissance and post-exploitation. For detailed usage information on each technique, refer to the wiki .

    C#
    View on GitHub↗813
  • slyd0g/sharpclipboardS

    slyd0g/SharpClipboard

    0View on GitHub↗
    View on GitHub↗0
  • swisskyrepo/sharplapsswisskyrepo avatar

    swisskyrepo/SharpLAPS

    446View on GitHub↗

    This executable is made to be executed within Cobalt Strike session using execute-assembly. It will retrieve the LAPS password from the Active Directory.

    C#
    View on GitHub↗446
  • thewover/certstealerTheWover avatar

    TheWover/CertStealer

    501View on GitHub↗
    C#
    View on GitHub↗501
  • thewover/donutTheWover avatar

    TheWover/donut

    4,461View on GitHub↗

    Donut is a toolset for loading and executing payloads in memory, featuring a position-independent shellcode generator, an in-memory payload injector, and a .NET assembly loader. It is designed to convert executable files and scripts into shellcode that can be executed within the memory space of a remote process without writing files to disk. The project specializes in security evasion through memory-based patching and payload obfuscation using symmetric block ciphers and compression. It includes a remote payload stager to retrieve encrypted modules from HTTP or DNS servers during runtime, red

    C
    View on GitHub↗4,461
  • thundergunexpress/badministrationT

    ThunderGunExpress/BADministration

    0View on GitHub↗
    View on GitHub↗0
  • yaxser/sharpphishY

    Yaxser/SharpPhish

    0View on GitHub↗
    View on GitHub↗0