mimikatz is a tool developed to learn C and experiment with Windows security, known for extracting plaintext passwords, hashes, PIN codes, and kerberos tickets from memory. It can also perform pass-the-hash, pass-the-ticket, or build Golden tickets. The tool includes 13 modules and additional functionalities for crypto, Terminal Server, and Events. For more information, visit the GitHub Wiki: https://github.com
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A collection of resources for practicing penetration testing
Emulate offensive attack techniques in the cloud with a self-contained Go binary.
A powerful enumeration tool for discovering assets and subdomains.
Metta is an information security preparedness tool for adversarial simulation.
A tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) for offensive security purposes.
A list of useful payloads and bypasses for Web Application Security.
Collection of vulnerable ARM binaries for beginner vulnerability researchers & exploit developers.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.