0xe7 / WonkaVisionLinks
☆86Updated 3 years ago
Alternatives and similar repositories for WonkaVision
Users that are interested in WonkaVision are comparing it to the libraries listed below
Sorting:
- Default Detections for EDR☆97Updated last year
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆93Updated 2 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆58Updated 3 years ago
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆88Updated 2 years ago
- Python tool to find vulnerable AD object and generating csv report☆26Updated 3 years ago
- Tool to perform lateral movement between AAD joined devices☆66Updated 3 years ago
- A module for CME that spiders across a domain.☆35Updated 3 years ago
- AAD related enumeration in Nim☆132Updated 2 years ago
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Updated 2 years ago
- Microsoft Graph API post-exploitation toolkit☆95Updated last year
- Abuse Azure API permissions for red teaming☆70Updated 3 years ago
- PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory …☆98Updated 2 weeks ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆43Updated 10 months ago
- ☆64Updated last week
- ☆70Updated 2 years ago
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆96Updated 2 years ago
- ☆44Updated last year
- Collection of tools to use with Azure Applications☆112Updated 2 years ago
- ☆105Updated 3 years ago
- Extract payload URLs from Follina (CVE-2022-30190) docx and rtf files☆31Updated 3 years ago
- BloodCheck enables Red and Blue Teams to manage multiple Neo4j databases and run Cypher queries against a BloodHound dataset.☆17Updated 4 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 3 years ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated last year
- Simple PoC from Malicious Payload Injection from Windows Event Log Entry☆28Updated 3 years ago
- create a "simulated internet" cyber range environment☆19Updated 8 months ago
- ☆74Updated 7 months ago
- Tool to extract powerful tokens from Office desktop apps memory☆73Updated last year
- ☆29Updated 2 years ago
- ☆40Updated last year
- Living Off the Foreign Land setup scripts☆74Updated 11 months ago