TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and penetration tests with the tokens generated working out of the box with many popular Azure post exploitation tools.
☆417Jan 23, 2025Updated last year
Alternatives and similar repositories for TokenSmith
Users that are interested in TokenSmith are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A fork of the great TokenTactics with support for CAE and token endpoint v2☆442Updated this week
- ☆296Aug 14, 2025Updated 11 months ago
- Abusing Azure services over C2☆380Jan 20, 2026Updated 6 months ago
- A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO☆248Aug 25, 2024Updated last year
- Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy☆169Nov 17, 2025Updated 8 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable w…☆164Mar 20, 2026Updated 4 months ago
- A BloodHound collector for Microsoft Configuration Manager☆404Jul 7, 2025Updated last year
- Azure Post Exploitation Framework☆248Oct 27, 2025Updated 9 months ago
- Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI☆1,369Jun 9, 2026Updated 2 months ago
- ☆128Jun 17, 2025Updated last year
- ☆141Nov 17, 2025Updated 8 months ago
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens☆149Apr 9, 2026Updated 4 months ago
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,333Apr 9, 2026Updated 4 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Serverless AITM Simulation Framework for Entra ID and M365☆242Dec 29, 2025Updated 7 months ago
- ☆230Jul 9, 2026Updated last month
- ☆239Oct 8, 2024Updated last year
- A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily☆310May 11, 2026Updated 2 months ago
- M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response ca…☆330Oct 12, 2025Updated 9 months ago
- A C# utility for interacting with SCOM☆100Dec 2, 2025Updated 8 months ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆460Jun 27, 2025Updated last year
- .NET Post-Exploitation Utility for Abusing Strong Explicit Certificate Mappings in ADCS☆154Feb 10, 2025Updated last year
- Local SYSTEM auth trigger for relaying - X☆160Jul 23, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Windows protocol library, including SMB and RPC implementations, among others.☆822Updated this week
- Azure JWT Token Manipulation Toolset☆737Dec 6, 2024Updated last year
- TokenCert☆105Nov 15, 2024Updated last year
- tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it☆135Aug 23, 2025Updated 11 months ago
- psexecsvc - a python implementation of PSExec's native service implementation☆312Mar 24, 2026Updated 4 months ago
- Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework☆650May 8, 2025Updated last year
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆362Updated this week
- Lateral movement with DCOM DLL hijacking☆182Jul 4, 2025Updated last year
- SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) through a SOCKS5 pr…☆213Jun 6, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆389Dec 13, 2024Updated last year
- The DCERPC only printerbug.py version☆233Oct 30, 2025Updated 9 months ago
- Generate and Manage KeyCredentialLinks☆258Jul 17, 2026Updated 3 weeks ago
- A Python POC for CRED1 over SOCKS5☆172Oct 5, 2024Updated last year
- ☆194Oct 21, 2025Updated 9 months ago
- ☆656Jul 28, 2026Updated last week
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts☆1,398Mar 9, 2026Updated 5 months ago