Lists (32)
Sort Name ascending (A-Z)
Active Directory
AI Agents
AI and LLM
AI Security
AI Social Engineering
AI Tools
AV/EDR Bypass
Challenges
Cloud Pentest
GCP, AWS, AZURECTI
CVE-POC
DevOps
Open source devops tool alternativeDevSecOps + Cloud Security
Email Solutions
General
gRPC
Incident Response
IOT Hacking
Labs
Learning Resources
MCPs
MSC
Pentest Projects
Post-Exploitation Tools
Programming
Python
RATs and C2
Red Teaming Projects
SAST
Secure Chatting
Telecom
Web Security
Stars
Chris Titus Tech's Windows Utility - Install Programs, Tweaks, Fixes, and Updates
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR…
Azure Security Resources and Notes
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)
This repo is about Active Directory Advanced Threat Hunting
A PowerShell script that automates the security assessment of Microsoft 365 environments.
ScriptSentry finds misconfigured and dangerous logon scripts.
Amsi Bypass payload that works on Windwos 11
LudusHound is a tool for red and blue teams that transforms BloodHound data into a fully functional, Active Directory replica environment via Ludus for controlled testing.
A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory
Use to build an anonymous SMB file server.
A proof of concept on attack vectors against Active Directory by abusing Active Directory Certificate Services (ADCS)
PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges required )
Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the white paper Certified Pre-Owned.
The great Microsoft exchange hack: A penetration tester’s guide (exchange penetration testing)
Material for the "Hands-On BloodHound" Workshop
Ansible + Vagrant + Hyper-V + Vulnerable AD 😎