Malcrove / SeamlessPass
A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO
☆154Updated 4 months ago
Alternatives and similar repositories for SeamlessPass:
Users that are interested in SeamlessPass are comparing it to the libraries listed below
- ☆136Updated 3 months ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆183Updated last month
- A Python POC for CRED1 over SOCKS5☆139Updated 3 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆175Updated 2 months ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)☆174Updated 3 months ago
- Hybrid AD utilities for ROADtools☆67Updated last month
- ☆185Updated 3 months ago
- ☆71Updated last month
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆133Updated 5 months ago
- ☆174Updated last month
- SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.☆182Updated last month
- ☆197Updated 3 months ago
- Parses Snaffler output file and generate beautified outputs.☆59Updated 4 months ago
- Automatically run and populate a new instance of BH CE☆59Updated 3 months ago
- A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.☆132Updated 8 months ago
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆152Updated last month
- Modular cross-platform Microsoft Graph API (Entra, o365, and Intune) enumeration and exploitation toolkit☆139Updated last month
- ☆145Updated 10 months ago
- Azure DevOps Services Attack Toolkit☆137Updated 5 months ago
- ☆187Updated 9 months ago
- Retrieve and display information about active user sessions on remote computers. No admin privileges required.☆170Updated 5 months ago
- Tool for Active Directory Certificate Services enumeration and abuse☆95Updated last month
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆268Updated 2 months ago
- ☆113Updated last year
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆168Updated last year
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆192Updated 7 months ago
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆92Updated 2 months ago
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆78Updated 4 months ago
- A BloodHound collector for Microsoft Configuration Manager☆275Updated 2 weeks ago
- Lateral Movement☆122Updated last year