This is an Active Directory Pentesting Lab created by me which includes attacks like IPV6 DNS takeover, Smb relay, unconstrained delegation, RBCD, ACLs, Certificates (ESC1, ESC4,ESC8), Webclient Workstation takeover etc.
☆22Jan 23, 2024Updated 2 years ago
Alternatives and similar repositories for Active-Directory-Penetration-Testing-Lab
Users that are interested in Active-Directory-Penetration-Testing-Lab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- By manipulating LSASS memory flags like UseLogonCredential and IsCredGuardEnabled, this repo demonstrates how Credential Guard can be byp…☆14May 25, 2025Updated 10 months ago
- Old version of mimikatz for OSCP labs☆18Aug 1, 2020Updated 5 years ago
- Julia rules for semgrep☆14Dec 9, 2025Updated 3 months ago
- Collection of Semgrep rules for security analysis☆10Mar 30, 2024Updated last year
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆28Jul 21, 2024Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A purple team oriented cyber range deployed in AWS with Terraform☆12Jun 8, 2020Updated 5 years ago
- Sample queries for Advanced hunting in Windows Defender ATP☆11Apr 22, 2020Updated 5 years ago
- Collection of red team scripts, resources & configs.☆15Feb 14, 2026Updated last month
- Automated Phishing Tool☆11May 27, 2020Updated 5 years ago
- Scan git repos for secrets using regex and entropy 🔑☆10Jun 18, 2020Updated 5 years ago
- A framework to kickstart yourself in making malicious USB devices using ATTiny85.☆14Jun 11, 2025Updated 9 months ago
- A basic Android background service that connects to a remote server, executes commands, and returns encrypted output. Disguised as a syst…☆21Aug 2, 2025Updated 7 months ago
- Script made for bypassing antivirus using Powershell Injection method. Place your shellcode from msfvenom on line 15, the script can be c…☆15Jun 14, 2023Updated 2 years ago
- An ultra lightweight web screenshot tool with advanced DOM analysis features.☆41Dec 2, 2025Updated 3 months ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- create a "simulated internet" cyber range environment☆18Jan 28, 2026Updated 2 months ago
- Low Noise Semgrep Security Rules☆23Feb 6, 2025Updated last year
- Security Operation Center Lab☆20Oct 8, 2024Updated last year
- Azure PowerShell Scripts for Compute, Virtual Machines, Networking, Storage, Disks and Resource Groups.☆16Sep 24, 2024Updated last year
- Creating a ransomware in a minute☆30Apr 25, 2023Updated 2 years ago
- Cyber Range Automated Construction Kit☆15Oct 29, 2020Updated 5 years ago
- Overflowme is a walkthrough to learn the basics of binary exploitation. Detailed instructions, stack diagrams and fully commented assembl…☆70Apr 30, 2025Updated 10 months ago
- ALPACA: A tool for building dynamic cyber ranges from procedurally-generated vulnerability lattices☆22Apr 23, 2019Updated 6 years ago
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 4 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆18Dec 20, 2025Updated 3 months ago
- ☆20Sep 6, 2025Updated 6 months ago
- Enhance Your Active Directory Password Spraying with User Intelligence.☆317Dec 29, 2025Updated 3 months ago
- This is Web Application Penetration Testing Report made for everybody who wanted a glance of how to make a professional report for pentet…☆18Sep 3, 2021Updated 4 years ago
- Algorithms written in Python and Explained using Jupyter 📓 from the Cryptography 🔐 Book ~Forouzan.☆18Feb 20, 2022Updated 4 years ago
- ☆14Oct 23, 2021Updated 4 years ago
- Small script for retrieving incoming transactions based on provided hour period.☆14Jan 24, 2022Updated 4 years ago
- Simple electron app for testing the Gamepad API.☆28Feb 21, 2018Updated 8 years ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆32May 30, 2024Updated last year
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- List of custom developed KQL queries to help proactive security teams hunt for opportunistic and sophisticated threat activity by develop…☆26Jun 30, 2021Updated 4 years ago
- Deception implementation through analysis of BloodHound data☆55Mar 20, 2026Updated last week
- KQL Queries☆34Mar 19, 2026Updated last week
- ☆15Aug 27, 2025Updated 7 months ago
- Extendable Cyber Range Framework that easily deploys scenarios that aim to improve the knowledge of the cyber defense workforce. It uses …☆40Apr 5, 2024Updated last year
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆43Dec 3, 2025Updated 3 months ago
- Python program to exploit stack-based buffer overflows.☆22Feb 24, 2021Updated 5 years ago