-
Rapid7
- Chicago
Stars
Six Degrees of Domain Admin
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.
Privilege Escalation Enumeration Script for Windows
Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
A collection of scripts for assessing Microsoft Azure security
BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world.…
A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.
The goal of this repository is to document the most common techniques to bypass AppLocker.
A tool for checking if MFA is enabled on multiple Microsoft Services
PowerShell MachineAccountQuota and DNS exploit tools
PowerShell framework to assess Azure security
Some usefull Scripts and Executables for Pentest & Forensics
A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, i…
Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking, IOCs collection & PE Backdooring. You feed it wi…
A post exploitation tool based on a web application, focusing on bypassing endpoint protection and application whitelisting
Socks proxy, and reverse socks server using powershell.
Egress-Assess is a tool used to test egress data detection capabilities
PEN-300 collection to help you on your exam.
Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.
A PowerShell module to deploy active directory decoy objects.
AzureRT - A Powershell module implementing various Azure Red Team tactics
Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)
POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln