awesome-repositories.com
博客
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目关于排名机制媒体报道MCP 服务器
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to wazehell/sam-the-admin

Open-source alternatives to Sam The Admin

30 open-source projects similar to wazehell/sam-the-admin, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Sam The Admin alternative.

  • cube0x0/nopaccube0x0 的头像

    cube0x0/noPac

    1,403在 GitHub 上查看↗

    CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.

    C#
    在 GitHub 上查看↗1,403
  • gentilkiwi/mimikatzgentilkiwi 的头像

    gentilkiwi/mimikatz

    21,630在 GitHub 上查看↗

    Mimikatz is a security research suite designed for auditing Windows authentication and managing system security configurations. It provides a comprehensive framework for extracting sensitive credentials, manipulating process privileges, and managing digital identity assets directly from system memory or offline memory dumps. The project distinguishes itself through advanced system-level exploitation techniques, including runtime process injection, API hooking, and the ability to bypass cryptographic export restrictions. It features a specialized toolkit for Kerberos protocol operations, allow

    C
    在 GitHub 上查看↗21,630
  • ghostpack/rubeusGhostPack 的头像

    GhostPack/Rubeus

    4,890在 GitHub 上查看↗

    Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full suite of operations for manipulating Kerberos tickets, exploiting delegation configurations, and performing credential attacks against Windows domains. The toolkit enables ticket extraction from logon sessions and memory, with real-time monitoring via Event Tracing for Windows. It supports forging golden and silver tickets with arbitrary privileges, as well as the creation of forged delegation contexts. Delegation attacks include abuse of constrained and unconstrained delegat

    C#kerberos
    在 GitHub 上查看↗4,890
  • ly4k/spoolfoolL

    ly4k/SpoolFool

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Find more with AI search
theori-io/copy-fail-cve-2026-31431theori-io 的头像

theori-io/copy-fail-CVE-2026-31431

3,958在 GitHub 上查看↗

This project is a proof of concept implementation for CVE-2026-31431, serving as a local privilege escalation tool for the Linux kernel. It functions as an exploit that allows a standard user account to obtain root permissions. The tool demonstrates a kernel page cache attack, where root access is achieved by writing shellcode into the cached pages of a privileged binary. This process manipulates how the Linux kernel handles page caches to execute code with elevated permissions. The repository covers areas of Linux security research, including kernel memory corruption analysis and local priv

Python
在 GitHub 上查看↗3,958
  • powershellmafia/powersploitPowerShellMafia 的头像

    PowerShellMafia/PowerSploit

    12,880在 GitHub 上查看↗

    PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team operations. It provides a framework for auditing Windows system configurations and evaluating the effectiveness of security defenses within an enterprise environment. The framework focuses on techniques that leverage native system administration tools and scripting environments to perform operations. It includes capabilities for executing arbitrary commands, escalating user privileges, and maintaining system persistence through event subscriptions. By utilizing in-memory execu

    PowerShell
    在 GitHub 上查看↗12,880
  • decoder-it/localpotatoD

    decoder-it/LocalPotato

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • arthepsy/cve-2021-4034arthepsy 的头像

    arthepsy/CVE-2021-4034

    1,156在 GitHub 上查看↗

    PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec (CVE-2021-4034)

    Ccvecve-2021-4034poc
    在 GitHub 上查看↗1,156
  • klinix5/installerfiletakeoverK

    klinix5/InstallerFileTakeOver

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • ly4k/pwnkitly4k 的头像

    ly4k/PwnKit

    1,312在 GitHub 上查看↗

    Self-contained exploit for CVE-2021-4034 - Pkexec Local Privilege Escalation

    Ccve-2021-4034
    在 GitHub 上查看↗1,312
  • byt3bl33d3r/crackmapexecbyt3bl33d3r 的头像

    byt3bl33d3r/CrackMapExec

    9,144在 GitHub 上查看↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    在 GitHub 上查看↗9,144
  • liuk3r/cve-2023-32233Liuk3r 的头像

    Liuk3r/CVE-2023-32233

    377在 GitHub 上查看↗

    CVE-2023-32233: Linux内核中的安全漏洞

    C
    在 GitHub 上查看↗377
  • secureauthcorp/impacketSecureAuthCorp 的头像

    SecureAuthCorp/impacket

    15,850在 GitHub 上查看↗

    Impacket is a Python network protocol library and packet crafting framework used for constructing, modifying, and sending raw network packets. It functions as a network protocol manipulation toolkit that allows for the implementation of communication protocols through structured object models. The project provides a Windows network security toolkit specifically designed for interacting with Active Directory and SMB services. It enables network security testing and auditing of Windows environments by executing authentication sequences using passwords, hashes, tickets, or security keys. The li

    Python
    在 GitHub 上查看↗15,850
  • ridter/nopacR

    Ridter/noPac

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • ghostpack/certifyGhostPack 的头像

    GhostPack/Certify

    1,994在 GitHub 上查看↗

    Certify is a C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS).

    C#
    在 GitHub 上查看↗1,994
  • bloodhoundad/bloodhoundBloodHoundAD 的头像

    BloodHoundAD/BloodHound

    10,552在 GitHub 上查看↗

    BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for

    PowerShell
    在 GitHub 上查看↗10,552
  • mantvydasb/redteaming-tactics-and-techniquesmantvydasb 的头像

    mantvydasb/RedTeaming-Tactics-and-Techniques

    4,620在 GitHub 上查看↗

    This project is a red teaming knowledge base and offensive security playbook designed to simulate adversary behavior. It serves as a comprehensive collection of technical guides and tactics for executing red team operations. The repository provides detailed instructions for Active Directory exploitation, including Kerberos abuse and domain privilege escalation. It covers defense evasion through API unhooking and payload obfuscation, as well as Windows internals research involving the manipulation of kernel objects and system memory. The capability surface extends to network penetration testi

    PowerShelloffensive-securityoscppentesting
    在 GitHub 上查看↗4,620
  • shellphish/how2heapshellphish 的头像

    shellphish/how2heap

    8,444在 GitHub 上查看↗

    how2heap is an educational resource and technical testbed for learning heap-based vulnerabilities and memory allocator internals. It provides a collection of source code examples and binaries that serve as a laboratory for studying memory corruption techniques specifically targeting the glibc malloc implementation. The project focuses on the development of exploit primitives, such as tcache poisoning and double frees, to redirect program execution. It includes a suite of implementations for bypassing memory protections and manipulating heap metadata to achieve arbitrary memory writes. The fr

    C
    在 GitHub 上查看↗8,444
  • ridter/intranet_penetration_tipsRidter 的头像

    Ridter/Intranet_Penetration_Tips

    4,606在 GitHub 上查看↗

    This project is a technical guide and reference for internal network penetration testing. It serves as a collection of procedures for exploiting and navigating private corporate networks during security assessments. The repository provides specialized manuals and cheat sheets focused on active directory attacks, lateral movement, and privilege escalation. It includes a post-exploitation playbook for maintaining system persistence and clearing forensic traces. The documentation covers a broad range of security capabilities, including initial access, network pivoting and tunneling, and interna

    在 GitHub 上查看↗4,606
  • hmaverickadams/beginner-network-pentestinghmaverickadams 的头像

    hmaverickadams/Beginner-Network-Pentesting

    6,205在 GitHub 上查看↗

    This is a hands-on lab environment for learning network penetration testing techniques, centered on setting up and attacking a vulnerable Active Directory network. The project provides a structured framework for practicing the full attack chain, from initial reconnaissance and scanning through exploitation, privilege escalation, lateral movement, and credential theft, all within isolated virtual machine labs. The lab environment is designed to simulate real-world attack scenarios, including the ability to compile and execute exploit code directly against targets without relying on Metasploit.

    在 GitHub 上查看↗6,205
  • ignitetechnologies/mindmapIgnitetechnologies 的头像

    Ignitetechnologies/Mindmap

    8,656在 GitHub 上查看↗

    Mindmap is a cybersecurity knowledge base and reference library that organizes security tools, frameworks, and methodologies into a visual knowledge map. It functions as a curated directory of cheat sheets and command guides for offensive and defensive security operations, presented as a hierarchical interface with collapsible nodes. The project converts structured markdown files into navigable visual trees to facilitate the study of penetration testing workflows and DevOps learning roadmaps. It also serves as a security compliance framework, providing structured mappings of NIST and ISO 2700

    在 GitHub 上查看↗8,656
  • a1ohadance/cve-2026-38360A

    a1ohadance/CVE-2026-38360

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • 5170temp/cve-2026-252125

    5170Temp/CVE-2026-25212

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • 0xblackash/cve-2026-352730

    0xBlackash/CVE-2026-35273

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • akashsingh0454/cve-2026-0257-pocA

    akashsingh0454/CVE-2026-0257-PoC

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • akamai/badsuccessorA

    akamai/BadSuccessor

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • akpmarcelin/cve-2026-24061-labA

    akpmarcelin/CVE-2026-24061-lab

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • al1ex/cve-2021-27928A

    Al1ex/CVE-2021-27928

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • alardiians/gitea-cve-2026-28699A

    Alardiians/gitea-CVE-2026-28699

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • 4d4j/cormem-read-poc4D4J 的头像

    4D4J/cormem-read-poc

    5在 GitHub 上查看↗

    This tool demonstrates CVE-2026-38194, a vulnerability in Teledyne Digital Imaging Sapera Memory Manager (v9.0.0.0 and below). The CORMEM.SYS kernel driver exposes IOCTLs without any access control checks, allowing a standard unprivileged user to read and write arbitrary process memory directly through the kernel — bypassing Win32 API monitoring

    C++
    在 GitHub 上查看↗5