JumpsecLabs / TokenFlareLinks
Serverless AITM Simulation Framework for Entra ID and M365
☆61Updated this week
Alternatives and similar repositories for TokenFlare
Users that are interested in TokenFlare are comparing it to the libraries listed below
Sorting:
- A community-driven collection of BloodHound queries☆157Updated 2 months ago
- Living off the land searches for explorer and sharepoint☆92Updated 2 weeks ago
- CaptainCredz is a modular and discreet password-spraying tool.☆133Updated 5 months ago
- ☆120Updated 6 months ago
- Modular cross-platform Microsoft Graph API (Entra, o365, and Intune) enumeration and exploitation toolkit☆162Updated last year
- Python alternative to Mimikatz lsadump::dcshadow☆155Updated 5 months ago
- sl0ppy-PrivescTaskCreator.ps1☆37Updated 2 months ago
- An offensive postexploitation tool that will give you complete control over the Outlook desktop application and therefore to the emails c…☆166Updated last year
- Parses Snaffler output file and generate beautified outputs.☆112Updated 10 months ago
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆181Updated 7 months ago
- Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.☆83Updated this week
- A Python POC for CRED1 over SOCKS5☆161Updated last year
- A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily☆239Updated this week
- Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database☆256Updated last month
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆114Updated 5 months ago
- ☆151Updated 7 months ago
- A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office3…☆165Updated 4 months ago
- ☆94Updated 11 months ago
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆151Updated 2 months ago
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆79Updated last year
- Azure Post Exploitation Framework☆242Updated last month
- Dump Kerberos tickets☆43Updated 4 months ago
- This is a novel technique that leverages the well-known Device Code phishing approach. It dynamically initiates the flow when the victim …☆180Updated 3 months ago
- The DCERPC only printerbug.py version☆182Updated last month
- Client-side Encrypted Upload Server Python Script☆65Updated 5 months ago
- Collect infrastructure and permissions data from vCenter and export it as a BloodHound‑compatible graph using Custom Nodes/Edges☆173Updated 4 months ago
- This script analyzes the DCSync output file from several tools (such as Mimikatz, Secretsdump and SharpKatz...)☆66Updated 9 months ago
- BeaconatorC2 is a framework for red teaming and adversarial emulation, providing a full-featured management interface, along with a catal…☆88Updated last month
- Tool to extract username and password of current user from PanGPA in plaintext☆88Updated last year
- ☆34Updated 5 months ago