1njected / CMLoot
Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares
☆173Updated 2 years ago
Alternatives and similar repositories for CMLoot:
Users that are interested in CMLoot are comparing it to the libraries listed below
- ☆158Updated 4 months ago
- ☆148Updated last month
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆200Updated 3 months ago
- ☆116Updated last year
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆252Updated last year
- A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.☆144Updated 10 months ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆320Updated last year
- OPSEC safe Kerberoasting in C#☆190Updated 2 years ago
- ☆246Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆230Updated last year
- Determine if the WebClient Service (WebDAV) is running on a remote system☆127Updated last year
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆89Updated 10 months ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆169Updated 2 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆119Updated 2 years ago
- ☆193Updated 11 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆121Updated 3 years ago
- ☆145Updated last month
- A Python POC for CRED1 over SOCKS5☆142Updated 5 months ago
- GolenGMSA tool for working with GMSA passwords☆139Updated 11 months ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- pysnaffler☆91Updated this week
- ADCS cert template modification and ACL enumeration☆135Updated last year
- Some scripts to support with importing large datasets into BloodHound☆79Updated last year
- Identifies the bytes that Microsoft Defender flags on.☆84Updated 2 years ago
- Python tool to Check running WebClient services on multiple targets based on @leechristensen☆270Updated 3 years ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆92Updated last year
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆137Updated 7 months ago
- The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.☆113Updated 4 years ago
- A tool for pointesters to find candies in SharePoint☆251Updated 2 years ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆152Updated 2 years ago