Skip to content
View ellerbrock's full-sized avatar

Organizations

@frapsoft @Bash-it @ecma6 @cloud-architecture @iacfio @unsecureio @fast-ide

Block or report ellerbrock

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
42 stars written in PowerShell
Clear filter

PowerSploit - A PowerShell Post-Exploitation Framework

PowerShell 12,692 4,712 Updated Aug 17, 2020

Six Degrees of Domain Admin

PowerShell 10,404 1,784 Updated Aug 1, 2025

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,568 2,537 Updated Apr 25, 2024

Blazor moved to https://github.com/dotnet/aspnetcore

PowerShell 9,319 647 Updated Feb 23, 2021

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

PowerShell 7,966 1,044 Updated Sep 17, 2025

Empire is a PowerShell and Python post-exploitation agent.

PowerShell 7,720 2,911 Updated Jan 19, 2020

Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com

PowerShell 7,398 1,336 Updated Oct 16, 2025

Docker official jenkins repo

PowerShell 7,216 4,679 Updated Nov 5, 2025

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

PowerShell 4,892 661 Updated Sep 6, 2025

Automation for internal Windows Penetrationtest / AD-Security

PowerShell 3,588 547 Updated Aug 28, 2025

MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It ca…

PowerShell 3,145 593 Updated Aug 7, 2025

My musings with PowerShell

PowerShell 2,697 765 Updated Nov 19, 2021

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.

PowerShell 2,406 353 Updated Nov 7, 2025

netshell features all in version 2 powershell

PowerShell 2,306 491 Updated Mar 5, 2024

Encodes a PowerShell script in the pixels of a PNG file and generates a oneliner to execute

PowerShell 2,192 394 Updated Sep 23, 2019

PowerTools is a collection of PowerShell projects with a focus on offensive operations.

PowerShell 2,155 821 Updated Dec 28, 2021

A post-exploitation powershell tool for extracting juicy info from memory.

PowerShell 1,863 334 Updated Jun 28, 2024

Welcome to the Microsoft Defender for Cloud community repository

PowerShell 1,844 834 Updated Nov 4, 2025

Adversary Tactics - PowerShell Training

PowerShell 1,561 339 Updated Jan 22, 2020

PowerShell framework to assess Azure security

PowerShell 1,237 179 Updated Oct 18, 2025

ConPtyShell - Fully Interactive Reverse Shell for Windows

PowerShell 1,164 175 Updated Jan 20, 2023

A collection of Red Team focused tools, scripts, and notes

PowerShell 1,141 196 Updated Nov 19, 2024

Active Directory Assessment and Privilege Escalation Script

PowerShell 1,124 213 Updated Dec 7, 2022

The Shadow Attack Framework

PowerShell 1,119 498 Updated Sep 4, 2022

A PowerShell based utility for the creation of malicious Office macro documents.

PowerShell 1,113 239 Updated Nov 3, 2017

A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, i…

PowerShell 1,050 178 Updated Mar 19, 2024

This repo includes plenty of references for Azure learning, especially for the Azure certs and Azure architecture, and any other learning materials e.g. security and automation topics.

PowerShell 926 312 Updated Feb 13, 2024

SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS

PowerShell 907 162 Updated Dec 17, 2024

PowerShell Script to Dump Windows Credentials from the Credential Manager

PowerShell 727 120 Updated Dec 12, 2017

A PowerShell TCP/IP swiss army knife.

PowerShell 568 95 Updated May 1, 2017
Next