Directory Services Internals (DSInternals) PowerShell Module and Framework
-
Updated
Jul 6, 2025 - C#
Directory Services Internals (DSInternals) PowerShell Module and Framework
Hekatomb is a python script that connects to LDAP directory to retrieve all computers and users informations. Then it will download all DPAPI blob of all users from all computers and uses Domain backup keys to decrypt them.
DPAPI looting remotely and locally in Python
A C# tool to output crackable DPAPI hashes from user MasterKeys
Decrypt SCCM and DPAPI secrets with Powershell.
Windows DPAPI JNA Wrapper
Bruteforce DPAPI encrypted MasterKey File from Windows Credentials Manager
A DataProtect wrapper that uses DPAPI in Windows and AspNetCore.DataProtection in other platforms.
Python application to scan user's installed browsers for secrets such as stored passwords and cookies.
Base class for saving, encrypting, and loading application settings in a Json file
Console utility to view saved passwords in Chrome and export to .csv file (Windows)
Extract stored password(s) and important file(s) from various browser (i.e. Chrome, Brave, Edge, Opera)
Cross-platform PowerShell module that makes encrypting and decrypting strings (using standard cryptographic algorithms) and managing certificates easy.
A .Net Core Data Protection provider to persist keys to Sql Server
PrySec - Privacy & Security framework for your .NET applications
Add a description, image, and links to the dpapi topic page so that developers can more easily learn about it.
To associate your repository with the dpapi topic, visit your repo's landing page and select "manage topics."