Skip to content
View Ghost-xiaonan's full-sized avatar

Block or report Ghost-xiaonan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
48 stars written in PowerShell
Clear filter

PowerSploit - A PowerShell Post-Exploitation Framework

PowerShell 12,687 4,712 Updated Aug 17, 2020

Six Degrees of Domain Admin

PowerShell 10,401 1,784 Updated Aug 1, 2025

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,565 2,537 Updated Apr 25, 2024

Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com

PowerShell 7,396 1,336 Updated Oct 16, 2025

game of active directory

PowerShell 7,074 983 Updated Jul 16, 2025

K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetN…

PowerShell 6,097 2,072 Updated Jan 25, 2025

Red Teaming Tactics and Techniques

PowerShell 4,406 1,104 Updated Aug 22, 2024

Automation for internal Windows Penetrationtest / AD-Security

PowerShell 3,586 546 Updated Aug 28, 2025

Privilege Escalation Enumeration Script for Windows

PowerShell 3,518 488 Updated Oct 6, 2025

MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It ca…

PowerShell 3,143 593 Updated Aug 7, 2025

A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.

PowerShell 2,826 539 Updated Jun 27, 2023

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,436 487 Updated Nov 15, 2023

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.

PowerShell 2,403 352 Updated Oct 16, 2025

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

PowerShell 2,218 431 Updated Apr 12, 2024

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made w…

PowerShell 2,034 211 Updated Dec 11, 2024

DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR…

PowerShell 1,964 400 Updated Jul 11, 2024

PowerShell Pass The Hash Utils

PowerShell 1,670 309 Updated Dec 9, 2018

Azure Security Resources and Notes

PowerShell 1,622 215 Updated Jul 7, 2025

CobaltStrike后渗透测试插件

PowerShell 1,544 223 Updated Oct 28, 2021

PowerShell MachineAccountQuota and DNS exploit tools

PowerShell 1,397 186 Updated Jan 11, 2023

This repository is a collection of powershell functions every hacker should know

PowerShell 1,383 164 Updated Jun 16, 2024

Useful PowerShell scripts

PowerShell 1,267 533 Updated Oct 30, 2018

LSTAR - CobaltStrike 综合后渗透插件

PowerShell 1,246 174 Updated Jan 30, 2022

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

PowerShell 1,169 179 Updated Jan 28, 2025

Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)

PowerShell 1,074 230 Updated Jul 5, 2021

A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, i…

PowerShell 1,049 177 Updated Mar 19, 2024

The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.

PowerShell 927 203 Updated Jun 22, 2020

ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.

PowerShell 882 114 Updated Oct 15, 2024

Intranet penetration tools

PowerShell 875 255 Updated Nov 17, 2021
Next