MartinIngesen / MSOLSpray
A Python implementation of dafthack's MSOLSpray. A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, if the account is locked, or if the account is disabled.
☆87Updated 9 months ago
Alternatives and similar repositories for MSOLSpray:
Users that are interested in MSOLSpray are comparing it to the libraries listed below
- This script gets all accepted domains in Microsoft 365 using autodiscover, gets the tenant name and checks if there is a Microsoft Defend…☆24Updated 9 months ago
- Azure AD RedTeam Full Enumeration Script used to query all aspects of your target Azure tenant.☆70Updated 8 months ago
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- Library of sites for categorization☆26Updated 6 years ago
- ☆12Updated last week
- Python3 tool to perform password spraying against Microsoft Online service using various methods☆85Updated 2 years ago
- Enumerate and check domains for Azure tenants☆56Updated 3 years ago
- ☆54Updated last year
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆92Updated last year
- ☆100Updated 2 years ago
- Covenant is a collaborative .NET C2 framework for red teamers.☆41Updated 3 years ago
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆87Updated last year
- Custom queries list for BloodHound☆23Updated 6 months ago
- A collection of Neo4j/BloodHound queries to collect interesting information.☆45Updated 2 years ago
- Modular Enumeration and Password Spraying Framework☆116Updated 11 months ago
- User enumeration and password spraying tool for testing Azure AD☆69Updated 3 years ago
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆37Updated last year
- Efflanrs - GUI for Snaffler Output☆26Updated 6 months ago
- Fly into Gophish with One Click (Infra Automation)☆47Updated last year
- Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information☆73Updated 2 years ago
- This repo will contain some basic pentest/RT commands.☆37Updated 2 years ago
- An ike-scan wrapper to simplify penetration testing IKE and encourage stronger IKE implementations.☆35Updated 9 months ago
- ☆36Updated 3 years ago
- Red Team "Drop and Run" NAC (802.1x) Bypass☆70Updated last year
- Merges multiple .nessus files into one file.☆44Updated 2 years ago
- ☆41Updated 4 years ago
- A small script that automates Entra ID persistence with Windows Hello For Business key☆55Updated last month
- A PowerShell script for performing a build review of a Windows host☆23Updated 6 years ago
- ☆20Updated last year
- Federated Office365 user enumeration based on correlated response trend analysis☆50Updated 2 years ago