Skip to content
View Cyb3r-Monk's full-sized avatar

Highlights

  • Pro

Organizations

@AppliedPurpleTeaming

Block or report Cyb3r-Monk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Adversary Simulation

Adversary simulations
10 repositories

AI-LLM

Promp engineering etc.
27 repositories

Attack Simulation and Automation

Attack simulation, detection engineering, purple teaming. etc.
36 repositories

Blue Team Tools

23 repositories

Data Science

20 repositories

Data Visualization

Interactive dashboarding etc.
4 repositories

DFIR

3 repositories

DFIR and Hunting Tools

Useful tools for threat hunting and DFIR
35 repositories
90 stars written in PowerShell
Clear filter

game of active directory

PowerShell 7,077 983 Updated Jul 16, 2025

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

PowerShell 4,891 660 Updated Sep 6, 2025

Automation for internal Windows Penetrationtest / AD-Security

PowerShell 3,587 547 Updated Aug 28, 2025

Privilege Escalation Enumeration Script for Windows

PowerShell 3,519 488 Updated Oct 6, 2025

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.

PowerShell 2,403 353 Updated Oct 16, 2025

A collection of scripts for assessing Microsoft Azure security

PowerShell 2,262 335 Updated Oct 29, 2025

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

PowerShell 2,218 431 Updated Apr 12, 2024

AutomatedLab is a provisioning solution and framework that lets you deploy complex labs on HyperV and Azure with simple PowerShell scripts. It supports all Windows operating systems from 2008 R2 to…

PowerShell 2,143 379 Updated Oct 30, 2025

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made w…

PowerShell 2,034 211 Updated Dec 11, 2024

DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR…

PowerShell 1,965 400 Updated Jul 11, 2024
PowerShell 1,635 311 Updated Apr 14, 2025

Azure Security Resources and Notes

PowerShell 1,622 215 Updated Jul 7, 2025

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

PowerShell 1,365 129 Updated Oct 29, 2025

SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY, FileZilla, and Microsoft Remote Desktop. It can be r…

PowerShell 1,293 175 Updated Nov 22, 2022

A Post-exploitation Toolset for Interacting with the Microsoft Graph API

PowerShell 1,221 144 Updated Jul 22, 2025

Monkey365 provides a tool for security consultants to easily conduct not only Microsoft 365, but also Azure subscriptions and Microsoft Entra ID security configuration reviews.

PowerShell 1,204 135 Updated Sep 5, 2025

Dominate Active Directory with PowerShell.

PowerShell 1,100 116 Updated Oct 31, 2025

My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+

PowerShell 1,095 159 Updated Apr 19, 2023

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening guidance.

PowerShell 1,045 105 Updated Nov 3, 2025

Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking, IOCs collection & PE Backdooring. You feed it wi…

PowerShell 1,009 141 Updated Oct 14, 2025

PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.

PowerShell 922 105 Updated Oct 15, 2025

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

PowerShell 895 137 Updated Mar 7, 2025

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

PowerShell 789 85 Updated Oct 29, 2022

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

PowerShell 731 105 Updated Oct 30, 2025

Understand adversary tradecraft and improve detection strategies

PowerShell 713 80 Updated Mar 9, 2023

Azure JWT Token Manipulation Toolset

PowerShell 694 109 Updated Dec 6, 2024

Practical Windows Forensics Training

PowerShell 693 138 Updated Feb 29, 2024

Egress-Assess is a tool used to test egress data detection capabilities

PowerShell 685 149 Updated Aug 9, 2023

This repo is about Active Directory Advanced Threat Hunting

PowerShell 629 86 Updated Feb 17, 2025
Next