Lists (32)
Sort Name ascending (A-Z)
Active Directory
AI Agents
AI and LLM
AI Security
AI Social Engineering
AI Tools
AV/EDR Bypass
Challenges
Cloud Pentest
GCP, AWS, AZURECTI
CVE-POC
DevOps
Open source devops tool alternativeDevSecOps + Cloud Security
Email Solutions
General
gRPC
Incident Response
IOT Hacking
Labs
Learning Resources
MCPs
MSC
Pentest Projects
Post-Exploitation Tools
Programming
Python
RATs and C2
Red Teaming Projects
SAST
Secure Chatting
Telecom
Web Security
Stars
Chris Titus Tech's Windows Utility - Install Programs, Tweaks, Fixes, and Updates
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR…
Azure Security Resources and Notes
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)
This repo is about Active Directory Advanced Threat Hunting
A PowerShell script that automates the security assessment of Microsoft 365 environments.
ScriptSentry finds misconfigured and dangerous logon scripts.
Amsi Bypass payload that works on Windwos 11
LudusHound is a tool for red and blue teams that transforms BloodHound data into a fully functional, Active Directory replica environment via Ludus for controlled testing.
A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory
Use to build an anonymous SMB file server.
A proof of concept on attack vectors against Active Directory by abusing Active Directory Certificate Services (ADCS)
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges required )
Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the white paper Certified Pre-Owned.
The great Microsoft exchange hack: A penetration tester’s guide (exchange penetration testing)
Material for the "Hands-On BloodHound" Workshop