Ross ROSS = Recommend OSS · open-source software intelligence for agents

DanMcInerney/icebreaker

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment observed · 2026-08-28

github.com/DanMcInerney/icebreaker · PowerShell · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 3194
  • days_rel: n/a
  • days_push: 2870
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1185 stars · 159 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A PowerShell-based penetration testing tool that automates five internal network attacks against Active Directory to obtain plaintext credentials when the attacker is on the network but outside the AD environment. It chains techniques like reverse bruteforce, share uploads, broadcast protocol poisoning, SMB relay, and IPv6 DNS poisoning, auto-cracking captured NetNTLMv2 hashes with JohnTheRipper.

Use cases

  • get plaintext active directory credentials from inside a network
  • automate AD password attacks during a pentest
  • capture and crack NetNTLMv2 hashes
  • poison LLMNR and NBT-NS to grab passwords
  • escalate to domain admin automatically after gaining a foothold
  • find weak AD passwords via reverse bruteforce

When to choose

  • you are on an internal network with no AD credentials and need a foothold
  • you want one tool that chains multiple AD credential attacks automatically
  • you need automated hash cracking with an AD-specific wordlist

When to avoid

  • you need a maintained tool - the last release was 2018 and many dependencies may be outdated
  • you are not authorized to test the target network
  • you only need passive network monitoring rather than active credential attacks

Facets

cli-tool · maturity maintenance

penetration-testing security networking security penetration-testing networking cli active-directory credential-harvesting pentest netntlmv2 password-cracking powershell linux

1 source

Member repositories

RepositoryRoleHealth v2
DanMcInerney/icebreakermain32

For agents

markdown · JSON · MCP: product_card(name="DanMcInerney/icebreaker")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem