awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to mdsecactivebreach/farmer

Open-source alternatives to Farmer

30 open-source projects similar to mdsecactivebreach/farmer, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Farmer alternative.

  • kevin-robertson/invoke-thehashKevin-Robertson avatar

    Kevin-Robertson/Invoke-TheHash

    1,781View on GitHub↗

    Invoke-TheHash contains PowerShell functions for performing pass the hash WMI and SMB tasks. WMI and SMB connections are accessed through the .NET TCPClient. Authentication is performed by passing an NTLM hash into the NTLMv2 authentication protocol. Local administrator privilege is not required…

    PowerShell
    View on GitHub↗1,781
  • kevin-robertson/inveighzeroKevin-Robertson avatar

    Kevin-Robertson/InveighZero

    817View on GitHub↗

    Inveigh is a cross-platform .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers.

    View on GitHub↗817
  • lgandx/responderlgandx avatar

    lgandx/Responder

    6,335View on GitHub↗

    Responder is a network penetration testing tool that intercepts and spoofs link-local name resolution queries, including LLMNR, NBT-NS, and mDNS, to redirect traffic to an attacker-controlled host. It hosts rogue protocol servers for over 15 protocols, capturing authentication credentials during challenge-response handshakes, and stores captured hashes and cleartext credentials in a SQLite database for structured offline analysis. The tool distinguishes itself through its ability to relay captured NTLM authentication challenges to target services for lateral movement without cracking the hash

    Python
    View on GitHub↗6,335
  • k8gege/ladonk8gege avatar

    k8gege/Ladon

    5,297View on GitHub↗

    Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk security flaws and assets across network segments. It operates as a fileless security scanner, executing its engine and modules directly in memory to avoid leaving a disk footprint on target systems. The project is distinguished by its integration as a plugin for command beacons, specifically within the Cobalt Strike framework. This allows for memory-resident network discovery and vulnerability detection. It further supports stealth operations through payload and script obfuscatio

    C#brute-forceexpexploit
    View on GitHub↗5,297

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • ridter/intranet_penetration_tipsRidter avatar

    Ridter/Intranet_Penetration_Tips

    4,606View on GitHub↗

    This project is a technical guide and reference for internal network penetration testing. It serves as a collection of procedures for exploiting and navigating private corporate networks during security assessments. The repository provides specialized manuals and cheat sheets focused on active directory attacks, lateral movement, and privilege escalation. It includes a post-exploitation playbook for maintaining system persistence and clearing forensic traces. The documentation covers a broad range of security capabilities, including initial access, network pivoting and tunneling, and interna

    View on GitHub↗4,606
  • guardicore/monkeyguardicore avatar

    guardicore/monkey

    7,014View on GitHub↗

    Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials. The platform distinguishes itself by simulating specific real-world attacker behaviors, such as ransomware encryption, cryptojacking, and the theft of browser-stored credentials and secure shell keys. It utilizes binary hash randomization to evade antiv

    Python
    View on GitHub↗7,014
  • rhinosecuritylabs/pacuRhinoSecurityLabs avatar

    RhinoSecurityLabs/pacu

    5,234View on GitHub↗

    Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments. It serves as a cloud penetration testing tool and resource enumerator used to identify misconfigurations, map attack surfaces, and execute privilege escalation paths. The framework provides specialized capabilities for post-exploitation and red team operations, including establishing persistence through identity and access management backdooring. It distinguishes itself with a plugin-based module system that allows for the development of custom tasks and the orchestration of A

    Python
    View on GitHub↗5,234
  • mantvydasb/redteaming-tactics-and-techniquesmantvydasb avatar

    mantvydasb/RedTeaming-Tactics-and-Techniques

    4,620View on GitHub↗

    This project is a red teaming knowledge base and offensive security playbook designed to simulate adversary behavior. It serves as a comprehensive collection of technical guides and tactics for executing red team operations. The repository provides detailed instructions for Active Directory exploitation, including Kerberos abuse and domain privilege escalation. It covers defense evasion through API unhooking and payload obfuscation, as well as Windows internals research involving the manipulation of kernel objects and system memory. The capability surface extends to network penetration testi

    PowerShelloffensive-securityoscppentesting
    View on GitHub↗4,620
  • samratashok/nishangsamratashok avatar

    samratashok/nishang

    9,951View on GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    View on GitHub↗9,951
  • funnywolf/viperFunnyWolf avatar

    FunnyWolf/Viper

    4,964View on GitHub↗

    Viper is a command and control infrastructure manager and post-exploitation framework designed for adversary attack simulation and security assessment. It functions as an orchestrator for penetration testing, combining a system for managing compromised hosts across multiple operating systems with tools for security workflow automation. The platform is distinguished by its use of large language model agents to coordinate red team tasks, automate data processing, and provide intelligent decision support. It includes a network pivot visualizer that uses directional graphs to map relationships an

    agentaicobalt-strike
    View on GitHub↗4,964
  • audibleblink/davilA

    audibleblink/davil

    0View on GitHub↗
    View on GitHub↗0
  • byt3bl33d3r/sprayingtoolkitbyt3bl33d3r avatar

    byt3bl33d3r/SprayingToolkit

    1,574View on GitHub↗

    Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient

    Python
    View on GitHub↗1,574
  • checkymander/sshivaC

    checkymander/sshiva

    0View on GitHub↗
    View on GitHub↗0
  • cobbr/sharpsploitcobbr avatar

    cobbr/SharpSploit

    1,881View on GitHub↗

    SharpSploit is a .NET post-exploitation library written in C# that aims to highlight the attack surface of .NET and make the use of offensive .NET easier for red teamers.

    C#
    View on GitHub↗1,881
  • byt3bl33d3r/deathstarbyt3bl33d3r avatar

    byt3bl33d3r/DeathStar

    1,618View on GitHub↗

    Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Directory environments using some of the most common offensive TTPs.

    Python
    View on GitHub↗1,618
  • antoniococo/runascsantonioCoco avatar

    antonioCoco/RunasCs

    1,399View on GitHub↗

    RunasCs - Csharp and open version of windows builtin runas.exe

    C#
    View on GitHub↗1,399
  • 0xthirteen/sharprdp0xthirteen avatar

    0xthirteen/SharpRDP

    1,156View on GitHub↗

    To compile open the project in Visual Studio and build for release. Two DLLs will be output to the Release directory, you do not need those because the DLLs are in the assembly. If you do not want to use the provided DLLs you will need to .NET SDK to create the AxMSTSCLib.dll DLL. To create it…

    C#
    View on GitHub↗1,156
  • byt3bl33d3r/crackmapexecbyt3bl33d3r avatar

    byt3bl33d3r/CrackMapExec

    9,144View on GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    View on GitHub↗9,144
  • danmcinerney/net-credsDanMcInerney avatar

    DanMcInerney/net-creds

    1,847View on GitHub↗

    Thoroughly sniff passwords and hashes from an interface or pcap file. Concatenates fragmented packets and does not rely on ports for service identification.

    Python
    View on GitHub↗1,847
  • danmcinerney/lans.pyDanMcInerney avatar

    DanMcInerney/LANs.py

    2,622View on GitHub↗

    Inject code and spy on wifi users

    Python
    View on GitHub↗2,622
  • dev-2null/adcollectorD

    dev-2null/ADCollector

    0View on GitHub↗
    View on GitHub↗0
  • dirkjanm/krbrelayxdirkjanm avatar

    dirkjanm/krbrelayx

    1,614View on GitHub↗

    Kerberos relaying and unconstrained delegation abuse toolkit

    Python
    View on GitHub↗1,614
  • dirkjanm/pkinittoolsdirkjanm avatar

    dirkjanm/PKINITtools

    907View on GitHub↗

    Tools for Kerberos PKINIT and relaying to AD CS

    Python
    View on GitHub↗907
  • evilsocket/bettercapevilsocket avatar

    evilsocket/bettercap

    2,495View on GitHub↗

    Bettercap is an extensible framework for network security testing that provides a unified interface for performing man-in-the-middle attacks, network reconnaissance, and traffic manipulation across WiFi, Bluetooth, and wired networks. It operates through a modular attack module system that loads and executes interchangeable offensive or diagnostic modules, supported by event-driven session management and multi-protocol network spoofing capabilities. The framework distinguishes itself by covering a broad range of network domains, including Bluetooth Low Energy scanning and enumeration, CAN-Bus

    bettercapettercapman-in-the-middle
    View on GitHub↗2,495
  • fdiskyou/hunterF

    fdiskyou/hunter

    0View on GitHub↗
    View on GitHub↗0
  • fortra/impacketfortra avatar

    fortra/impacket

    15,467View on GitHub↗

    Impacket is a collection of Python classes designed for the construction, manipulation, and analysis of low-level network packets and services. It functions as a framework for building custom network tools, providing a programmatic interface to interact with communication protocols and service architectures. The library provides primitives for managing authentication, session state, and remote procedure calls within network environments. By offering a modular class hierarchy, it allows for the assembly of network packets and the implementation of specialized communication stacks. The project

    Pythondcerpcdcomimpacket
    View on GitHub↗15,467
  • fortynorthsecurity/cimplantFortyNorthSecurity avatar

    FortyNorthSecurity/CIMplant

    204View on GitHub↗

    C# port of WMImplant which uses either CIM or WMI to query remote systems. It can use provided credentials or the current user's session.

    C#
    View on GitHub↗204
  • fox-it/mitm6fox-it avatar

    fox-it/mitm6

    1,911View on GitHub↗

    mitm6 is a pentesting tool that exploits the default configuration of Windows to take over the default DNS server. It does this by replying to DHCPv6 messages, providing victims with a link-local IPv6 address and setting the attackers host as default DNS server. As DNS server, mitm6 will…

    Python
    View on GitHub↗1,911
  • bohops/wsman-winrmB

    bohops/WSMan-WinRM

    0View on GitHub↗
    View on GitHub↗0
  • amzza0x00/go-impacketA

    Amzza0x00/go-impacket

    0View on GitHub↗
    View on GitHub↗0