awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectAboutHow we rankPressMCP server
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
gentilkiwi avatar

gentilkiwi/mimikatz

0
View on GitHub↗
21,630 stars·4,131 forks·C·9 viewsblog.gentilkiwi.com/mimikatz↗

Mimikatz

Mimikatz is a security research suite designed for auditing Windows authentication and managing system security configurations. It provides a comprehensive framework for extracting sensitive credentials, manipulating process privileges, and managing digital identity assets directly from system memory or offline memory dumps.

The project distinguishes itself through advanced system-level exploitation techniques, including runtime process injection, API hooking, and the ability to bypass cryptographic export restrictions. It features a specialized toolkit for Kerberos protocol operations, allowing for the inspection, forgery, and injection of authentication tickets to evaluate network identity security. Additionally, it supports the extraction of authentication secrets from the Local Security Authority and the local security account database.

Beyond its core auditing capabilities, the suite includes utilities for managing system services, digital certificates, and cryptographic providers. It offers functionality for privilege escalation, user session impersonation, and the synchronization of data from domain controllers. The tool also provides observability features such as session logging, output encoding, and network route monitoring to assist in the analysis of administrative and security-related actions.

Features

  • Credential Extraction Toolkits - A toolkit for auditing Windows security by accessing sensitive data stored in the Local Security Authority Subsystem Service.
  • Credential Auditing Tools - Extracting and analyzing authentication secrets from system memory to evaluate the security posture of Windows user accounts.
  • Session and Credential Management - Extracts stored passwords, hashes, and authentication keys from system memory for active user sessions.
  • Credential Extraction Utilities - Extracts authentication secrets and password hashes from the Local Security Authority and local security account databases.
  • Kerberos Authentication - Features a specialized toolkit for inspecting, forging, and injecting Kerberos authentication tickets.
  • Kerberos Security Testers - Managing, forging, and injecting authentication tickets to test the resilience of network identity and access control systems.
  • Ticket Forgery Tools - Constructs and injects forged authentication tickets into memory to simulate valid user identities within a networked domain environment.
  • Memory Inspection Tools - Reads and modifies the memory space of privileged system processes to extract sensitive authentication data and security tokens.
  • Kerberos Ticket Forgers - Generates custom authentication tickets with arbitrary data to impersonate identities within a network.
  • Security Token Manipulators - Elevating process privileges and impersonating user sessions to verify access control boundaries and identify potential privilege escalation paths.
  • Session Impersonators - Impersonates user sessions by executing processes with captured authentication hashes or keys.
  • Security Testing and Auditing - Extracts authentication credentials and security secrets from system memory to audit Windows security posture.
  • Process Injection Frameworks - Injects custom code modules into active system processes to intercept authentication flows and manipulate security service behavior.
  • API Hooking Utilities - Hooks low-level operating system functions to monitor or alter security-sensitive operations performed by the kernel and background services.
  • Windows Administration Utilities - Executing privileged commands and managing system services to perform maintenance, configuration, and security testing on local machines.
  • Authentication Hooking Utilities - Hooks into authentication processes to capture credentials or bypass security checks by modifying memory structures.
  • Certificate Management Utilities - Provides utilities for managing, exporting, and auditing digital certificates within Windows certificate stores.
  • Hooking Utilities - Intercepts calls to system security libraries to bypass export restrictions and extract protected keys from hardware or software vaults.
  • Kerberos Ticket Inspectors - Inspects and displays metadata for active Kerberos authentication tickets to verify identity security.
  • Kerberos Ticket Extractors - Extracts and saves active Kerberos tickets from memory for use in subsequent authentication operations.
  • Kerberos Ticket Injectors - Loads existing Kerberos tickets into the current session memory to enable authentication as the associated user.
  • Privilege Escalation Tools - Manipulates process tokens and system services to evaluate and perform privilege escalation.
  • Process Token Manipulators - Provides capabilities to manipulate process security tokens to elevate privileges and impersonate user contexts.
  • Exploit Development - Tool for Windows security auditing and credential extraction.
  • Active Directory Exploitation - Utility for credential dumping, token manipulation, and Windows security bypasses.
  • Active Directory Tools - Tool for credential extraction and post-exploitation in Windows environments.
  • Credential Access - Extracts hashed and cleartext passwords from system memory.
  • Credential and Access Tools - Comprehensive post-exploitation tool for credential dumping and security testing.
  • Credential Collection - Standard tool for Windows credential extraction and manipulation.
  • Credential Dumping - Extracts authentication credentials and Kerberos tickets from memory.
  • Credential Harvesting - Extracts credentials from Windows memory.
  • Execution and Persistence - Extracts credentials and performs Windows post-exploitation.
  • Offensive Security Frameworks - Extracts credentials and performs advanced Kerberos and hash-based attacks.
  • Password Attacks - Advanced tool for credential dumping and Windows security manipulation.
  • Security Tooling - Utility for extracting credentials and manipulating Kerberos tickets.
  • Security Tools - Tool for exploring and testing Windows security.
  • Cryptographic Asset - Extracts certificates and private keys from system stores or providers into portable file formats to facilitate backup, migration, or analysis.
  • Cryptographic Asset Management - Exporting, importing, and auditing digital certificates and private keys stored within system vaults or hardware security modules.
  • Memory Dump Parsers - Analyzes static snapshots of system memory to recover credentials and security secrets without requiring an active live connection.
  • Client Certificate Generators - Generates client certificates for smartcard authentication by signing them with a specified certificate authority to ensure secure identity verification.
  • Certificate Management Systems - Manages, imports, and exports digital certificates and private keys stored within system or hardware vaults.
  • Cryptographic Key Extractors - Patches system cryptographic services to allow the extraction of keys marked as non-exportable.
  • Elevation Mechanisms - Requests system-level permissions for processes to enable interaction with restricted services.
  • Security Support Providers - Injects custom security modules into system memory to intercept and manipulate authentication processes at runtime.
  • Credential Relay Tools - Injects captured hashes or tickets into active sessions to impersonate users and bypass authentication.
  • Certificate Store Auditors - Lists logical certificate stores and their contents across various system and user-level storage locations to audit and organize digital identity assets.
  • Purging Utilities - The tool removes all Kerberos tickets from the current session to clear the authentication state and force the system to re-authenticate for network requests.
  • Smartcard Token Analyzers - Lists connected smartcard readers and identifies cryptographic keys stored on inserted tokens to verify hardware availability and access to authentication materials.
  • Memory Dump Parsers - Parses offline memory dump files to perform credential extraction without requiring a live system connection.
  • Directory Replication Tools - Requests account information from domain controllers by mimicking directory replication protocols.
  • Security Identifier Modifiers - Modifies security identifiers on user accounts to test and alter access permissions and group memberships.
  • Administrative Command Engines - Executes system-level instructions through a command-line interface to interact with background processes, manage services, and handle sensitive security tokens.

Star history

Star history chart for gentilkiwi/mimikatzStar history chart for gentilkiwi/mimikatz

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Mimikatz

Similar open-source projects, ranked by how many features they share with Mimikatz.
  • ghostpack/rubeusGhostPack avatar

    GhostPack/Rubeus

    4,890View on GitHub↗

    Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full suite of operations for manipulating Kerberos tickets, exploiting delegation configurations, and performing credential attacks against Windows domains. The toolkit enables ticket extraction from logon sessions and memory, with real-time monitoring via Event Tracing for Windows. It supports forging golden and silver tickets with arbitrary privileges, as well as the creation of forged delegation contexts. Delegation attacks include abuse of constrained and unconstrained delegat

    C#kerberos
    View on GitHub↗4,890
  • powershellmafia/powersploitPowerShellMafia avatar

    PowerShellMafia/PowerSploit

    12,880View on GitHub↗

    PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team operations. It provides a framework for auditing Windows system configurations and evaluating the effectiveness of security defenses within an enterprise environment. The framework focuses on techniques that leverage native system administration tools and scripting environments to perform operations. It includes capabilities for executing arbitrary commands, escalating user privileges, and maintaining system persistence through event subscriptions. By utilizing in-memory execu

    PowerShell
    View on GitHub↗12,880
  • parrotsec/mimikatzParrotSec avatar

    ParrotSec/mimikatz

    2,536View on GitHub↗

    Mimikatz is a Windows post-exploitation framework designed for extracting plaintext passwords, hashes, PIN codes, and security tokens from system memory and the registry. It functions as a credential extraction tool that targets the Local Security Authority Subsystem Service to retrieve cached credentials and sensitive account data. The project provides specialized capabilities for Active Directory penetration testing, including the simulation of domain controllers to replicate directory secrets. It features a Kerberos ticket manipulator capable of exporting, injecting, and forging authentica

    YARA
    View on GitHub↗2,536
  • alessandroz/lazagneAlessandroZ avatar

    AlessandroZ/LaZagne

    10,867View on GitHub↗

    LaZagne is a cross-platform credential recovery tool designed to extract passwords and secrets from operating systems, browsers, and applications. It functions as a security utility for retrieving stored credentials from compromised systems during penetration testing. The tool provides capabilities for decrypting domain credentials and extracting sensitive data from system storage, including memory dumps, credential managers, keychains, and password hashes. It recovers stored passwords from common software by accessing plaintext files, APIs, and local databases. The project supports digital

    Python
    View on GitHub↗10,867
See all 30 alternatives to Mimikatz→

Frequently asked questions

What does gentilkiwi/mimikatz do?

Mimikatz is a security research suite designed for auditing Windows authentication and managing system security configurations. It provides a comprehensive framework for extracting sensitive credentials, manipulating process privileges, and managing digital identity assets directly from system memory or offline memory dumps.

What are the main features of gentilkiwi/mimikatz?

The main features of gentilkiwi/mimikatz are: Credential Extraction Toolkits, Credential Auditing Tools, Session and Credential Management, Credential Extraction Utilities, Kerberos Authentication, Kerberos Security Testers, Ticket Forgery Tools, Memory Inspection Tools.

What are some open-source alternatives to gentilkiwi/mimikatz?

Open-source alternatives to gentilkiwi/mimikatz include: ghostpack/rubeus — Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full… powershellmafia/powersploit — PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team… parrotsec/mimikatz — Mimikatz is a Windows post-exploitation framework designed for extracting plaintext passwords, hashes, PIN codes, and… alessandroz/lazagne — LaZagne is a cross-platform credential recovery tool designed to extract passwords and secrets from operating systems,… samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… hfiref0x/uacme — UACME is a set of specialized tools designed to audit security configurations, escalate user privileges, and…