DebugPrivilege / Research
Repository that contains random short projects like write-ups, PowerShell scripts, and more.
☆28Updated 3 months ago
Alternatives and similar repositories for Research:
Users that are interested in Research are comparing it to the libraries listed below
- Presentations from Conferences☆27Updated 6 months ago
- Scripts to enumerate and report on Entra Conditional Access☆27Updated 6 months ago
- Expose a lot of MDE telemetry that is not easily accessible in any searchable form☆105Updated 3 months ago
- ☆49Updated last year
- Table of AD and Azure assets and whether they belong to Tier Zero☆26Updated last year
- ☆11Updated 2 years ago
- Azure AiTM Function PoC to phish Entra ID Credentials☆22Updated 5 months ago
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆12Updated 3 weeks ago
- A tool to create randomly insecure file shares that also contain unsecured credential files☆31Updated 10 months ago
- MS Graph Commands and Tools for Blue Teamers☆49Updated last year
- Fun GUI for Group3rs output log☆37Updated last year
- A practical resource on using open-source tools for Incident Response. This repo shares workflows, tool setups, and steps for responding …☆27Updated 4 months ago
- ☆22Updated 2 years ago
- ASR Configurator, Essentials and Atomic Testing☆37Updated 4 months ago
- Living off the False Positive!☆34Updated last month
- a tiny program to consume from ETW providers for research☆46Updated 2 months ago
- Resources Links for the Research Based on Josh Prager and Nico Shyne's☆13Updated 4 months ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- MS Entra ID Protection Guidance☆20Updated 11 months ago
- ☆41Updated last year
- DEFCON 31 slide deck and video link☆58Updated 8 months ago
- A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens☆88Updated last month
- Collection of different Azure/Entra focused solutions (Deployable templates, Function Apps, etc)☆52Updated last month
- Azure AD Identity Protection Cookie Spoofing☆32Updated last year
- A script designed to test passwords against user accounts within an Active Directory environment, offering customizable Account Lockout T…☆14Updated last year
- A tool to identify and remediate common misconfigurations in Active Directory Certificate Services☆15Updated last year