BC-SECURITY / DeathStarPlugin
Deathstar is an Empire plugin that automates gaining Domain and/or Enterprise Admin rights in Active Directory environments using common offensive tactics, techniques, and procedures (TTPs).
☆18Updated last month
Alternatives and similar repositories for DeathStarPlugin:
Users that are interested in DeathStarPlugin are comparing it to the libraries listed below
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated 11 months ago
- ☆44Updated 9 months ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 10 months ago
- ☆27Updated last year
- Discord C2 Profile for Mythic☆28Updated 2 months ago
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- Scripts to interact with Microsoft Graph APIs☆36Updated 5 months ago
- Create PDFs with HTML smuggling attachments that save on opening the document.☆29Updated last year
- Docker container for running CobaltStrike 4.7 and above☆19Updated last month
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆55Updated 2 years ago
- Linux CS bypass technique☆33Updated 2 months ago
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆39Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆66Updated 10 months ago
- ☆52Updated last year
- exfiltration/infiltration toolkit☆23Updated last year
- A lightweight HTTP/HTTPS reverse proxy for efficient, policy-based traffic filtering and redirection.☆44Updated last year
- Validates priv escalation of AD trusts☆39Updated 3 weeks ago
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆25Updated 3 months ago
- PDump is a project for dumping leaked credentials from DEHASHED☆16Updated last year
- This repository focuses on replicating the behavioral patterns observed in well-documented APT campaigns.☆11Updated 3 weeks ago
- ☆24Updated 3 years ago
- Items related to the RedELK workshop given at security conferences☆29Updated last year
- an Improoved Version of 0xNinjaCyclone´s EarlyCascade Code☆18Updated 2 months ago
- ☆48Updated 2 years ago
- ☆14Updated 3 months ago
- Modified version of Impacket to use dynamic NTLMv2 Challenge/Response☆18Updated 2 years ago
- A vSphere deployment of GOADv2 BETA Testing (v0.1)☆26Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆42Updated last month
- A repository with my code snippets for research/education purposes.☆50Updated last year