Jumbo-WJB / search_rbcdLinks
Search msDS-AllowedToActOnBehalfOfOtherIdentity
☆35Updated 3 years ago
Alternatives and similar repositories for search_rbcd
Users that are interested in search_rbcd are comparing it to the libraries listed below
Sorting:
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user; Adding the sam_the_admin_maq when MachineAccoun…☆22Updated last year
- ☆35Updated 3 years ago
- ☆46Updated 4 years ago
- PortBender修改为exe版本☆28Updated last year
- 通过websocket在IIS8(Windows Server 2012)以上实现socks5代理☆89Updated last year
- (批量化改造)sharpwmi是一个基于rpc的横向移动工具,具有上传文件和执行命令功能。☆108Updated 4 years ago
- 使用Csharp实现自动修改注册表键并强制锁屏,使其可被抓取明文密码。☆30Updated 4 years ago
- ☆15Updated last year
- hyscan HengGe Team☆68Updated 3 years ago
- Lsass memory dump.☆53Updated last year
- PrintSpoofer的反射dll实现,结合Cobalt Strike使用☆88Updated 3 years ago
- 在权限足够的情况下弹出system权限的cmd命令行,包含exe和dll两种文件类型,可用于一些可能存在本地提权漏洞的测试。☆33Updated 3 years ago
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆14Updated 3 years ago
- ad vulnerability scanner☆71Updated last year
- 密码收集☆58Updated 3 years ago
- 后台插件getshell☆50Updated 3 years ago
- 利用NTLM Hash读取Exchange邮件☆61Updated 2 years ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆23Updated 4 years ago
- ☆3Updated 2 years ago
- Bloodhound 数据解析工具☆22Updated last month
- SAMR修改域内主机密码☆10Updated 3 years ago
- 替代PrintBug用于本地提权的新方式,主要利用MS-EFSR协议中的接口函数 借鉴了Potitpotam中对于EFSR协议的利用,实现了本地提权的一系 列方式 Drawing on the use of the EFSR protocol in Potitpotam, …☆149Updated 3 years ago
- NoPacScan is a CVE-2021-42287/CVE-2021-42278 Scanner,it scan for more domain controllers than other script☆89Updated 3 years ago
- 用来存放平时写的一些net内存马,仅用于练手,需要可以自行修改☆87Updated 3 years ago
- ☆91Updated 2 years ago
- c/s网络准入平台☆20Updated 2 years ago
- CVE-2020-1472 C++☆83Updated 2 years ago
- OXID_Find by Csharp(多线程) 通过OXID解析器获取Windows远程主机上网卡地址 From @RcoIl☆54Updated 4 years ago
- 与反病毒软件老大哥们的打闹日常☆13Updated 6 years ago
- If you only have hash, you can still operate exchange☆75Updated 3 years ago