A comprehensive, automated build pipeline for essential Windows offensive security tools. Fresh builds delivered weekly from official sources.
- PingCastle - Active Directory security assessment and auditing
- ADRecon - Active Directory reconnaissance with Excel reporting
- AzureADRecon - Azure AD/Entra ID reconnaissance tool
- Adalanche - Active Directory ACL visualizer and explorer
- SharpHound - BloodHound data collector for AD analysis
- Certify - AD CS enumeration and abuse (C#)
- Certipy - AD CS enumeration and abuse (Python)
- Whisker - Shadow credentials manipulation
- Seatbelt - Security enumeration for privilege escalation
- SharpUp - Windows privilege escalation checks
- WinPEAS - Windows privilege escalation awesome scripts
- Crassus - Windows privilege escalation discovery
- SharpWSUS - WSUS lateral movement tool
- PowerMad - MachineAccountQuota and DNS exploitation
- Inveigh - .NET IPv4/IPv6 MITM platform
- Snaffler - Network share enumeration and sensitive data discovery
- LaZagne - Local password and credential recovery
- Stracciatella - OpSec-safe PowerShell runspace from C#
Download the latest release from the Releases page. Each release contains pre-compiled binaries for all tools.
Compiling offensive security tools from source is time-consuming and requires various build dependencies. Our automated pipeline saves hours of setup time, letting you focus on what matters - the assessment.
Yes! Each release bundles everything - compiled binaries and PowerShell scripts - giving you a complete toolkit ready for deployment.
Nope - that's the point.
Always the latest. Our pipeline pulls the most recent commit from each tool's official repository. Check commit messages for exact version references.
Weekly automated releases ensure you always have access to the latest features and bug fixes.
Open an issue! We're always looking to expand our collection with community-recommended tools.
Each tool maintains its original license. Please review individual tool repositories for specific licensing terms.
These tools are for authorized security assessments only. Users are responsible for compliance with all applicable laws and regulations.
Automated with ❤️ for the security community