Maldev-Academy / GitHubDeviceCodePhishingLinks
A tool to easily perform GitHub Device Code Phishing on red team engagements
☆79Updated 2 months ago
Alternatives and similar repositories for GitHubDeviceCodePhishing
Users that are interested in GitHubDeviceCodePhishing are comparing it to the libraries listed below
Sorting:
- Permanently disable EDRs as local admin☆125Updated last month
- Proof of concept for Kerberos Armoring abuse.☆77Updated last month
- ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets …☆149Updated last month
- ☆159Updated 9 months ago
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆206Updated 2 months ago
- Pure PowerShell port of PassTheCert tool to authenticate to an LDAP/S server with a certificate through Schannel☆59Updated 9 months ago
- Inject RDPThief into memory with PowerShell.☆65Updated last year
- Situational Awareness script to identify how and where to run implants☆67Updated last year
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆163Updated 3 months ago
- ☆94Updated last year
- This tool exploits Golden DMSA attack against delegated Managed Service Accounts.☆89Updated 6 months ago
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆162Updated 3 months ago
- Microsoft Network Service Fingerprinting Tool☆67Updated last month
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆86Updated 11 months ago
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆61Updated last year
- Convert your shellcode into an ASCII string☆127Updated 7 months ago
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆79Updated last year
- Tool to extract username and password of current user from PanGPA in plaintext☆89Updated last year
- ☆57Updated 11 months ago
- SpicyAD is a C# Active Directory penetration testing tool designed for authorized security assessments. It combines multiple AD attack te…☆97Updated last month
- Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.☆205Updated last month
- PowerShell script to generate ShellCode in various formats☆46Updated last year
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆146Updated 6 months ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆88Updated 11 months ago
- ☆63Updated last month
- Dominate the domain. Relay to royalty.☆165Updated last week
- Client-side Encrypted Upload Server Python Script☆66Updated 7 months ago
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆42Updated last year
- Chisel new generation, written in rust. SSH under WSS with some customization.☆124Updated 2 weeks ago
- POC for CVE-2024-3183 (FreeIPA Rosting)☆27Updated last year