ANSSI-FR / AD-permissions
Active Directory permissions (ACL/ACE) auditing tools
☆146Updated 7 years ago
Related projects ⓘ
Alternatives and complementary repositories for AD-permissions
- Active Directory Group Policy analyzer☆96Updated 10 years ago
- Smb Scanner from PingCastle☆120Updated 5 years ago
- PowerShell script to find 'vulnerable' security-related GPOs that should be hardended☆196Updated 6 years ago
- PowerShell No Agent Hunting☆108Updated 6 years ago
- IR-Tools - PowerShell tools for IR☆128Updated 7 years ago
- Sysmon configuration☆66Updated 6 years ago
- A collection of files for adding and leveraging custom properties in BloodHound.☆182Updated 4 years ago
- Open source Active Directory security audit framework.☆133Updated 6 years ago
- A powershell script for creating a Windows honeyport.☆87Updated 9 years ago
- gpocheck☆30Updated 3 months ago
- A PowerShell script that aims to have a fully configured domain built in under 10 minutes, but also apply security configuration and hard…☆198Updated 3 years ago
- ☆97Updated 8 years ago
- Lists of sources and utilities utilized to hunt, detect and prevent evildoers.☆162Updated 5 years ago
- Conveigh is a Windows PowerShell LLMNR/NBNS spoofer detection tool☆92Updated 8 years ago
- Sysmon Tools for PowerShell☆229Updated 6 years ago
- Misc. PowerShell scripts☆115Updated 8 years ago
- Credit to Helge Klein - https://helgeklein.com/blog/2015/02/creating-realistic-test-user-accounts-active-directory/☆69Updated 6 years ago
- Powershell Empire Persistence finder☆117Updated 7 years ago
- This script runs several security checks and makes modifications (with your permission) to your Active Directory domain to improve it's s…☆45Updated 8 years ago
- A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.☆168Updated last year
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆71Updated 3 years ago
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆76Updated 6 years ago
- ☆163Updated 9 years ago
- Active Directory enumeration from non-domain system.☆117Updated 7 years ago
- Dashboarding and Tooling front-end for PowerShell Empire using PowerShell Universal Dashboard☆104Updated 5 years ago