Offensive Toolkit

Offensive toolkit. Lockout-aware password spray calculator with safe interval, sector-specific wordlists, visual planning, and NetExec/Kerbrute command generation.

#Credential Attacks

#Password Spray Calculator

Enter lockout policy (threshold, window, duration) and the widget calculates safe spray interval, priority password list by sector, visual planning, and NetExec/Kerbrute commands.

Password Spray Lockout-Aware Calculator

Enter the target lockout policy. The calculator generates a safe spray interval, sector-specific password list, timing calendar, and ready-to-use commands.

Estimation baseline: OIG Report - P@s$w0rds at the U.S. Department of the Interior
In 2023, auditors cracked 18,174 of 85,062 active accounts (21%) at the U.S. DOI - including 288 privileged accounts and 362 senior officials.
16% cracked within 90 minutes. 5% of all passwords based on the word "password". Most reused: Password-1234 (478 accounts).
This report serves as our statistical baseline. If the DOI - with mandatory security policies - had 21% crackable passwords, most organizations will have comparable or higher rates. Our per-sector estimations below are extrapolated from these numbers.
Read the full OIG report (PDF)

1 — Safe Spray Schedule

2 — Priority Password List

Spray in order shown. Wait full spray cycle between passwords. Fill in "Company / Org Name" above to auto-replace placeholders.

3 — Spray Timeline

First 10 spray windows shown. Each line = one spray attempt with exact timing.

4 — Generated Command

#Also See

#Cyber Aurelien Guidi

  • NetExec (Network execution and lateral movement)
  • Nmap (Network scanning and reconnaissance)
  • Metasploit (Exploitation framework cheatsheet)
  • ffuf (Fast web fuzzer for directory and parameter discovery)
  • SQLmap (Automated SQL injection detection and exploitation)
  • Red Team Toolkit (Offensive tooling and frameworks)