Open-source Windows credential audit tool — extracts NTLM hashes from SAM/SYSTEM hives, cracks passwords using Hashcat, and tests password strength. Generates TXT, JSON, and HTML reports.
-
Updated
Mar 8, 2026 - Python
Open-source Windows credential audit tool — extracts NTLM hashes from SAM/SYSTEM hives, cracks passwords using Hashcat, and tests password strength. Generates TXT, JSON, and HTML reports.
This script tests Ricoh printers for default credentials (admin with empty password) by sending authenticated web login requests. It can also export address books from printers with successful default credentials.
Windows utility to reveal and recover passwords hidden behind asterisk fields using WinAPI ideal for security audits, credential recovery, and password field inspection.
Defensive infostealer audit suite for Windows. Quantify exactly which credentials, cookies, sessions and configuration items would be exposed to a hypothetical infostealer running on your own machine — before the infection happens.
A security reconnaissance tool that enumerates what resources and data a Datadog API key has access to. Useful for security assessments, penetration testing, and validating the principle of least privilege on Datadog API credentials.
A script to identify default credentials on phones in the Polycom VVX Series.
Password security assessment and credential attack simulation toolkit
A Python-based security auditing tool that detects insecure credential handling, hardcoded secrets, and credential reuse on local systems, focusing on risk identification and mitigation without exploitation.
post-exploitation tool to decrypt and recover saved DBeaver database passwords enabling credential forensics, lateral movement, and security auditing of encrypted DBeaver connection configurations.
Add a description, image, and links to the credential-audit topic page so that developers can more easily learn about it.
To associate your repository with the credential-audit topic, visit your repo's landing page and select "manage topics."