Stars
Tools and Techniques for Red Team / Penetration Testing
TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and penetration tests with the tokens generated working out of t…
Interactive results explorer and annotation tool for Nosey Parker
A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object
Find, verify, and analyze leaked credentials
CSTC is a Burp Suite extension that allows request/response modification using a GUI analogous to CyberChef
IntelOwl: manage your Threat Intelligence at scale
Microsoft signed ActiveDirectory PowerShell module
An Archive of Ransomware Notes Past and Present Collected by Zscaler ThreatLabz
PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.
Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀
Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.
Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?
Collection of various python scripts for mitmproxy
A command-line tool to query the DeHashed API. Easily search for various parameters like usernames, emails, hashed passwords, IP addresses, and more.
A curated list of resources related to Industrial Control System (ICS) security.
Send phishing messages and attachments to Microsoft Teams users
Outil de récupération automatique des données de l'Active Directory / Automated tool for dumping Active Directory data
Assess the security of your Active Directory with few or all privileges.
Hide your Powershell script in plain sight. Bypass all Powershell security features
Incredibly fast crawler designed for OSINT.
VPN client in a thin Docker container for multiple VPN providers, written in Go, and using OpenVPN or Wireguard, DNS over TLS, with a few proxy servers built-in.
Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel
Tool for interactive command line environments on Linux
A curated list of awesome tools, research, papers and other projects related to password cracking and password security.