Raikia / UhOh365View external linksLinks
A script that can see if an email address is valid in Office365 (user/email enumeration). This does not perform any login attempts, is unthrottled, and is incredibly useful for social engineering assessments to find which emails exist and which don't.
β602Mar 2, 2021Updated 4 years ago
Alternatives and similar repositories for UhOh365
Users that are interested in UhOh365 are comparing it to the libraries listed below
Sorting:
- Enumerate information from NTLM authentication enabled web endpoints πβ504Sep 23, 2025Updated 4 months ago
- Recon-AD, an AD recon tool based on ADSI and reflective DLLβsβ331Oct 20, 2019Updated 6 years ago
- A toolkit to attack Office365β1,114Nov 6, 2020Updated 5 years ago
- Enumerate valid usernames from Office 365 using ActiveSync, Autodiscover v1, or office.com login page.β292May 2, 2024Updated last year
- Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficientβ1,551Oct 17, 2022Updated 3 years ago
- Web Inventory tool, takes screenshots of webpages using Pyppeteer (headless Chrome/Chromium) and provides some extra bells & whistles to β¦β760Sep 23, 2024Updated last year
- Evading WinDefender ATP credential-theftβ256Dec 2, 2019Updated 6 years ago
- lateral movement techniques that can be used during red team exercisesβ273Jan 13, 2020Updated 6 years ago
- scan for NTLM directoriesβ377Aug 13, 2025Updated 6 months ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run commandβ1,594Jul 10, 2023Updated 2 years ago
- HTA encryption tool for RedTeamsβ1,425Nov 9, 2022Updated 3 years ago
- A tool to abuse Exchange servicesβ2,297Jun 10, 2024Updated last year
- .NET IPv4/IPv6 machine-in-the-middle tool for penetration testersβ811Aug 28, 2022Updated 3 years ago
- PoC of a VBA macro spawning a process with a spoofed parent and command line.β380Apr 28, 2020Updated 5 years ago
- Create a minidump of the LSASS process from memoryβ261Nov 2, 2022Updated 3 years ago
- Port of Invoke-Excel4DCOMβ104Oct 12, 2019Updated 6 years ago
- Process Injectionβ766Oct 24, 2021Updated 4 years ago
- A C# tool to search through a running instance of Outlook for keywordsβ111Jan 14, 2021Updated 5 years ago
- A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the acβ¦β1,073Mar 19, 2024Updated last year
- LyncSniper: A tool for penetration testing Skype for Business and Lync deploymentsβ307Jul 3, 2020Updated 5 years ago
- retrieve information via O365 and AzureAD with a valid credβ730Aug 14, 2022Updated 3 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been seβ¦β170Aug 10, 2020Updated 5 years ago
- Tunnellable HTTP/HTTPS socks4a proxy written in C# and deployable via PowerShellβ498Mar 15, 2023Updated 2 years ago
- Collection of Offensive C# Toolingβ1,468Feb 6, 2023Updated 3 years ago
- GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projectsβ251Sep 26, 2020Updated 5 years ago
- Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotelyβ424Jul 27, 2022Updated 3 years ago
- Extract credentials from lsass remotelyβ2,176Dec 24, 2025Updated last month
- Microsoft External Attack Toolβ178Dec 8, 2022Updated 3 years ago
- Phantom Tap (PhanTap) - an βinvisibleβ network tap aimed at red teamsβ620Oct 6, 2025Updated 4 months ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)β328Mar 26, 2019Updated 6 years ago
- MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, iβ¦β3,203Aug 7, 2025Updated 6 months ago
- Payload Generation Frameworkβ1,956Aug 21, 2024Updated last year
- Active Directory ACL exploitation with BloodHoundβ757Nov 18, 2021Updated 4 years ago
- Dump Azure AD Connect credentials for Azure AD and Active Directoryβ779Aug 26, 2025Updated 5 months ago
- Search tool to find specific files containing specific words, i.e. files containing passwords..β743Nov 18, 2020Updated 5 years ago
- Targeted Payload Executionβ100Apr 9, 2020Updated 5 years ago
- Search for potential frontable domainsβ644Mar 22, 2023Updated 2 years ago
- Silencing Sysmon via driver unloadβ235Oct 13, 2022Updated 3 years ago
- Credentials gathering tool automating remote procdump and parse of lsass process.β781Jun 20, 2020Updated 5 years ago