Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.
☆41Jun 16, 2026Updated 2 weeks ago
Alternatives and similar repositories for bqm
Users that are interested in bqm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- SharpSvc is a simple code set to interact with the SC Manager API and is compatible with Cobalt Strike.☆26Aug 8, 2023Updated 2 years ago
- custom bloodhound queries and knowledge base☆13Apr 16, 2024Updated 2 years ago
- C# alternative to the linux "cat" command... Prints file contents to console. For use with Cobalt Strike's Execute-Assembly☆15Jul 15, 2021Updated 4 years ago
- Purple Team Dropper generator using open source templates.☆17May 23, 2024Updated 2 years ago
- Standalone Cobalt Strike operation logging Aggressor script for Ghostwriter 2.0+☆38Dec 1, 2025Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Assorted BloodHound Cypher queries/tricks I haven't seen in other cheat sheets☆12Jun 21, 2021Updated 5 years ago
- ☆776Feb 3, 2026Updated 4 months ago
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆167Mar 1, 2024Updated 2 years ago
- ☆166Feb 8, 2025Updated last year
- Claude MCP server to perform analysis on ROADrecon data☆50Mar 30, 2025Updated last year
- SCEP request tool for AD CS and Intune☆77Oct 24, 2025Updated 8 months ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆87Mar 19, 2023Updated 3 years ago
- Federated Office365 user enumeration based on correlated response trend analysis☆49May 3, 2022Updated 4 years ago
- Reverse SOCKS5 Proxy Written in Rust☆27Mar 9, 2021Updated 5 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆407Aug 15, 2025Updated 10 months ago
- Simple script to extract useful informations from the combo BloodHound + Neo4j☆273Apr 4, 2025Updated last year
- A BOF port of the research of @thefLinkk and @codewhitesec☆104Oct 12, 2021Updated 4 years ago
- ☆22Dec 1, 2021Updated 4 years ago
- Collection of cyphers for bloodhound☆158Jun 26, 2024Updated 2 years ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆97Apr 13, 2023Updated 3 years ago
- Bypassing Kerberoast Detections with Modified KDC Options and Encryption Types☆421Mar 21, 2025Updated last year
- ☆23Mar 19, 2026Updated 3 months ago
- Virtualization Security Audit Tool - Security assess CIS compliance of a Virtualization environments☆15Nov 21, 2023Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Impacket is a collection of Python classes for working with network protocols.☆304Jun 23, 2026Updated last week
- Dump NTDS with golden certificates and UnPAC the hash☆651Mar 20, 2024Updated 2 years ago
- Custom queries list for BloodHound☆33Jul 8, 2025Updated 11 months ago
- ☆17Oct 11, 2023Updated 2 years ago
- Attempt at Obfuscated version of SharpCollection☆264Nov 15, 2025Updated 7 months ago
- A dotnet executable to get an Entra token in an authenticated runtime☆17Oct 30, 2024Updated last year
- Azure Offensive Library☆17May 9, 2026Updated last month
- Shellcode loader designed for evasion. Coded in Rust.☆131Mar 5, 2023Updated 3 years ago
- rust clr heap encryption (https://github.com/lap1nou/CLR_Heap_encryption), but no heap encryption.☆17Jan 6, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Aggressor script that gets the latest commands from CobaltStrikes web site and creates an aggressor script based on tool options.☆23Oct 6, 2021Updated 4 years ago
- ADCS abuser☆322Feb 6, 2023Updated 3 years ago
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆361Nov 19, 2024Updated last year
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆34Nov 13, 2023Updated 2 years ago
- ☆41Mar 25, 2021Updated 5 years ago
- SACL Scanner is a tool designed to scan and analyze SACLs.☆52Feb 13, 2025Updated last year
- A C# tool with more flexibility to customize scheduled task for both persistence and lateral movement in red team operation☆18Dec 18, 2024Updated last year