{"adoption": {"forks": 430, "observed_at": "2026-08-28T04:07:57.864730+00:00", "stars": 3352}, "canonical_url": "https://ross.abutalabs.com/products/pypykatz", "card": {"archived": false, "artifact_type": "cli-tool", "description": "Mimikatz implementation in pure Python", "domain": ["security", "penetration-testing", "windows"], "enriched": true, "function": ["security", "penetration-testing", "parser", "cli"], "health_score": 82, "homepage": null, "language": "Python", "license": "MIT", "license_family": "permissive", "maturity": "active", "member_repos": ["skelsec/pypykatz"], "name": "skelsec/pypykatz", "platform": ["python", "windows", "cross-platform", "cli"], "pushed_at": "2026-04-09T21:07:11+00:00", "repo": "skelsec/pypykatz", "stars": 3352, "tags": ["mimikatz", "credential-dumping", "lsass", "credential-extraction", "red-team", "registry-hives", "minidump", "linux", "macos"], "topics": [], "urls": [], "use_cases": ["extract credentials from an LSASS minidump", "parse NT and LM hashes from Windows registry hives", "dump passwords from a live Windows LSASS process", "analyze Windows memory dumps for stored credentials", "extract domain cached credentials (DCC/DCC2) from registry", "use mimikatz-like functionality on Linux or macOS", "integrate credential parsing into a Python pentesting tool"], "what_it_is": "pypykatz is a pure Python implementation of parts of Mimikatz, the well-known Windows credential extraction tool. It parses LSASS process memory (live, minidump, or full memory dumps) and registry hives to extract credentials such as NT/LM hashes, domain cached credentials, and LSA secrets.", "when_to_avoid": ["you need the full Mimikatz feature set, such as kerberos ticket manipulation or pass-the-hash execution", "you are not authorized to use credential extraction tools - this is offensive security software", "you need a pure Windows-native tool with the latest protocol support"], "when_to_choose": ["you need Mimikatz-like LSASS/registry credential parsing on a non-Windows platform", "you want a scriptable Python library for credential extraction rather than a Windows binary", "you need to process offline artifacts like minidumps or memory images", "you want to integrate credential parsing into your own tooling"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/pypykatz", "repo": "skelsec/pypykatz", "role": "main", "score": 65}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:07:57.864730+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-29T18:40:57.477992+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "756a9402753de088b45c556fd76759aa09d4fdbb3d45e0f19dff88a5764278ba", "fetched_at": "2026-08-28T04:07:57.864730+00:00", "kind": "readme", "missing": false, "url": "https://github.com/skelsec/pypykatz"}, {"content_hash": "18e0fc88042a54c9b15ba8e107d072a7999684ccebf8e3eb50e3e1701487b936", "fetched_at": "2026-08-29T09:34:05.663384+00:00", "kind": "registry_pypi", "missing": false, "url": "https://pypi.org/pypi/pypykatz/json"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 76, "longevity": 100, "rhythm": 32}, "computed_at": "2026-09-03T02:20:16.233290+00:00", "flags": [], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 3022, "days_push": 146, "days_rel": 243, "gap_med": 308, "n_releases_24m": 2}, "score": 65, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}