abusing-dpapi-for-credential-access
RanuK12/securityskillsExtract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or offline using…
Scores out of 100 · grade B+
2026-08-14Works
40% of the score86/100
- References 2 files that are not in the repo: dpapi.py, dpapi.py.
Maintained
25% of the score100/100
- no commits in the last 12 weeks
- repo is less than two weeks old
Adopted
20% of the score0/100
- No install or star signal yet.
Documented
15% of the score100/100
- 1,323 words with worked examples.
- Ships 4 bundled files.
Install
npx skills add RanuK12/securityskills/abusing-dpapi-for-credential-accessWhat the check found
| Finding | What it means |
|---|---|
| Missing files | It points at files that are not in the repository, so those steps will fail. |
Files it references that are not in the repository
What it says it does
Extract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or offline using SharpDPAPI, SharpChrome, Mimikatz, or Impacket's dpapi.py, including domain-wide decryption via the DPAPI backup key. Use during authorized red-team credential-access engagements after gaining a foothold or when triaging DPAPI blobs pulled from a host.
Also in RanuK12/securityskills
| Artifact | Score | What the check found | Type | Reach | Last commit |
|---|---|---|---|---|---|
| analyzing-ios-app-security-with-objectionRanuK12/securityskills | clean | Skill | no signal | 6 days ago | |
| analyzing-campaign-attribution-evidenceRanuK12/securityskills | clean | Skill | no signal | 6 days ago | |
| achieving-cmmc-level-2-complianceRanuK12/securityskills | clean | Skill | no signal | 6 days ago | |
| analyzing-apt-group-with-mitre-navigatorRanuK12/securityskills | Missing files | Skill | no signal | 6 days ago | |
| analyzing-threat-actor-ttps-with-mitre-attackRanuK12/securityskills | Missing files | Skill | no signal | 6 days ago | |
| analyzing-android-malware-with-apktoolRanuK12/securityskills | clean | Skill | no signal | 6 days ago |
Other research skills
Browse all| Artifact | Score | What the check found | Category | Reach | Last commit |
|---|---|---|---|---|---|
| nextflow-developmentanthropics/knowledge-work-plugins | clean | Research | 1,966 installs | today | |
| single-cell-rna-qcanthropics/knowledge-work-plugins | clean | Research | 1,995 installs | today | |
| last30daysmvanhorn/last30days-skill | clean | Research | 33,782 installs | today | |
| scvi-toolsanthropics/knowledge-work-plugins | clean | Research | 1,958 installs | today | |
| plugin-creatoropenai/codex | clean | Research | 112k stars | today | |
| churn-preventioncoreyhaines31/marketingskills | clean | Research | 92,159 installs | today |
Put this measurement in your README
A badge carrying how many listings this index holds from the repository and how many pass every static structural check. It reads from this index every time somebody loads your page, so it changes when the measurement changes and there is nothing to keep up to date. Free, no account, and the value is not something you or we can set by hand.
[](https://skillworks.kynth.studio/?q=RanuK12%2Fsecurityskills)Would rather not hotlink us? Every badge is also served in shields.io’s endpoint schema, so shields renders the image and your readers never talk to our domain:
Published by Toolproof, the masthead over this index and eight others. The method behind the number is at toolproof.kynth.studio/methodology, and the whole thing is readable as JSON with no key at /api.
