This is an Active Directory Pentesting Lab created by me which includes attacks like IPV6 DNS takeover, Smb relay, unconstrained delegation, RBCD, ACLs, Certificates (ESC1, ESC4,ESC8), Webclient Workstation takeover etc.
☆24Jan 23, 2024Updated 2 years ago
Alternatives and similar repositories for Active-Directory-Penetration-Testing-Lab
Users that are interested in Active-Directory-Penetration-Testing-Lab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- By manipulating LSASS memory flags like UseLogonCredential and IsCredGuardEnabled, this repo demonstrates how Credential Guard can be byp…☆15May 25, 2025Updated last year
- Julia rules for semgrep☆13Dec 9, 2025Updated 8 months ago
- Collection of Semgrep rules for security analysis☆10Mar 30, 2024Updated 2 years ago
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆30Jul 21, 2024Updated 2 years ago
- Azure apim mini proxy☆18Jun 12, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Sample queries for Advanced hunting in Windows Defender ATP☆11Apr 22, 2020Updated 6 years ago
- Submit Burp Suite extensions and updates to the BApp Store.☆18Updated this week
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 8 months ago
- Collection of red team scripts, resources & configs.☆15Feb 14, 2026Updated 6 months ago
- Low Noise Semgrep Security Rules☆22Feb 6, 2025Updated last year
- create a "simulated internet" cyber range environment☆20Mar 31, 2026Updated 4 months ago
- Azure PowerShell Scripts for Compute, Virtual Machines, Networking, Storage, Disks and Resource Groups.☆17Sep 24, 2024Updated last year
- ALPACA: A tool for building dynamic cyber ranges from procedurally-generated vulnerability lattices☆23Apr 23, 2019Updated 7 years ago
- Security Operation Center Lab☆23Oct 8, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆23Oct 4, 2021Updated 4 years ago
- ☆18Dec 20, 2025Updated 7 months ago
- Dumping all keys from a keytab file☆20Dec 1, 2025Updated 8 months ago
- Script made for bypassing antivirus using Powershell Injection method. Place your shellcode from msfvenom on line 15, the script can be c…☆15Jun 14, 2023Updated 3 years ago
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆66Jan 21, 2025Updated last year
- Creating a ransomware in a minute☆29Jul 19, 2026Updated 3 weeks ago
- CTRL-ESC-HOST is an assessment methodology for testing for security flaws in Kiosks and Presented Applications.☆30Aug 8, 2026Updated last week
- Small script for retrieving incoming transactions based on provided hour period.☆14Jan 24, 2022Updated 4 years ago
- A curated list of tools and resources that I use daily as a Purple-Team operator.☆105May 1, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆15Oct 23, 2021Updated 4 years ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆32May 30, 2024Updated 2 years ago
- List of custom developed KQL queries to help proactive security teams hunt for opportunistic and sophisticated threat activity by develop…☆26Jun 30, 2021Updated 5 years ago
- Complete PortSwigger Web Security Academy Lab Writeups Detailed, categorized solutions for every lab — from APPRENTICE to EXPERT — coveri…☆21Aug 1, 2026Updated 2 weeks ago
- ☆15Aug 27, 2025Updated 11 months ago
- Overflowme is a walkthrough to learn the basics of binary exploitation. Detailed instructions, stack diagrams and fully commented assembl…☆74Apr 30, 2025Updated last year
- "Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performi…☆39May 20, 2024Updated 2 years ago
- Enhance Your Active Directory Password Spraying with User Intelligence.☆337Dec 29, 2025Updated 7 months ago
- Active Directory Pentesting Full Course - Red Team Hacking☆32Dec 13, 2021Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ICS Security Labs☆40Mar 27, 2021Updated 5 years ago
- A tool for exploiting Kerberos tickets against system with Credential Guard enabled.☆15Sep 2, 2025Updated 11 months ago
- This is Web Application Penetration Testing Report made for everybody who wanted a glance of how to make a professional report for pentet…☆19Sep 3, 2021Updated 4 years ago
- ☆26Mar 12, 2026Updated 5 months ago
- Kerberos manipulation library in pure Python☆21Aug 9, 2026Updated last week
- JavaAgent内存马实现、检测、修复demo☆11Dec 7, 2022Updated 3 years ago
- A basic Android background service that connects to a remote server, executes commands, and returns encrypted output. Disguised as a syst…☆27Aug 2, 2025Updated last year