peda
mimikatz
Our great sponsors
peda | mimikatz | |
---|---|---|
7 | 25 | |
5,722 | 18,567 | |
- | - | |
0.0 | 5.2 | |
about 2 months ago | 3 months ago | |
Python | C | |
GNU General Public License v3.0 or later | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
peda
- Emulating an emulator inside itself. Meet Blink
- Are there any cpu emulators that could help me learn i386 assembly?
-
Hacked GDB Dashboard Puts It All on Display
There are a lot of these types of tools already in the reverse engineering community (in order of lowest chance of breaking when you throw really weird stuff at it):
GEF: https://gef.readthedocs.io/en/master/
PWNDBG: https://github.com/pwndbg/pwndbg
PEDA: https://github.com/longld/peda
They also come with a slew of different features to aid in RE/exploit dev, but many of them are also useful for debugging really weird issues.
-
Awesome CTF : Top Learning Resource Labs
PEDA - GDB plugin (only python2.7).
-
Awesome Penetration Testing
peda - Python Exploit Development Assistance for GDB.
mimikatz
-
4 AD Attacks and How to Protect Against Them
Mimikatz
-
Compromising Plaintext Passwords in Active Directory
Typically, Mimikatz is used to extract NTLM password hashes or Kerberos tickets from memory. However, one of its lesser-known capabilities is the ability to extract plaintext passwords from dumps created for the LSASS process. This means that an attacker can compromise plaintext passwords without running any nefarious code on domain controllers. Dump files can be created interactively or using ProcDump , and in either case, the activity is unlikely to be flagged by anti-virus software. Once the dumps are created, they can be copied off the domain controller and the plaintext credentials can be harvested using Mimikatz offline.
-
How to Detect Pass-the-Ticket Attacks
Mimikatz can be used to perform pass-the-ticket, but in this post, we wanted to show how to execute the attack using another tool, Rubeus , lets you perform Kerberos based attacks. Rubeus is a C# toolset written by harmj0y and is based on the Kekeo project by Benjamin Delpy, the author of Mimikatz .
-
Manipulating User Passwords with Mimikatz
Using the ChangeNTLM and SetNTLM commands in Mimikatz , attackers can manipulate user passwords and escalate their privileges in Active Directory . Let’s take a look at these commands and what they do.
-
Extracting Service Account Passwords with Kerberoasting
Mimikatz will extract local tickets and save them to disk for offline cracking. Simply install Mimikatz and issue a single command:
-
Hello
A very cool topic. Similar to that, mimikatz has a minesweeper functionality. You can use it to dump passwords and kerberos tickets, or just cheat at minesweeper https://github.com/gentilkiwi/mimikatz/blob/c78b1cf37c517ae9...
-
Your daily toolbox as a pentester
mimikatz is a tool useful to work on Windows security, for example to extract plaintexts passwords, hash, PIN code and kerberos tickets from memory
-
Awesome Penetration Testing
mimikatz - Credentials extraction tool for Windows operating system.
-
GitHub Support just straight up confirmed in an email that yes, they used all public GitHub code, for Codex/Copilot regardless of license
Hi. Here's a random project I just picked off of Github by searching through the "popular today" section and picking something small.
- Help - attempting to replicate CVE-2021-1675 print nightmare
What are some alternatives?
gef - GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux
pwndbg - Exploit Development and Reverse Engineering with GDB Made Easy
impacket - Impacket is a collection of Python classes for working with network protocols. [Moved to: https://github.com/SecureAuthCorp/impacket]
john - John the Ripper jumbo - advanced offline password cracker, which supports hundreds of hash and cipher types, and runs on many operating systems, CPUs, GPUs, and even some FPGAs
bettercap - The Swiss Army knife for 802.11, BLE, IPv4 and IPv6 networks reconnaissance and MITM attacks.
RustScan - 🤖 The Modern Port Scanner 🤖
CVE-2021-1675 - C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527
python-evtx - Pure Python parser for Windows Event Log files (.evtx)
pwntools - CTF framework and exploit development library
RsaCtfTool - RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data
thc-hydra - hydra
Metasploit - Metasploit Framework