RedTeamOperations / Detecting-Adversarial-Tradecrafts-Tools-by-leveraging-ETW
CyberWarFare Labs hands-on workshop on the topic "Detecting Adversarial Tradecrafts/Tools by leveraging ETW"
☆47Updated 3 years ago
Alternatives and similar repositories for Detecting-Adversarial-Tradecrafts-Tools-by-leveraging-ETW:
Users that are interested in Detecting-Adversarial-Tradecrafts-Tools-by-leveraging-ETW are comparing it to the libraries listed below
- ☆16Updated 2 years ago
- CIS Benchmark testing of Windows SIEM configuration☆44Updated last year
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- Multi-threaded C2 framework built in Flask with keylogger - from the Offensive C# Course by Naga Sai Nikhil☆21Updated 2 years ago
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- Searching .evtx logs for remote connections☆23Updated last year
- Azure pentesting reference for Altered Security Lab☆24Updated 3 years ago
- Automation of Active Directory penetration testing tasks on top of BloodHound CE☆34Updated last year
- A project created with an aim to emulate and test exfiltration of data over different network protocols.☆31Updated 2 years ago
- Red Teaming & Active Directory Cheat Sheet.☆40Updated last year
- ☆52Updated last year
- Active DIrectory Lab for Pentesting Practice☆24Updated 2 years ago
- WptsExtensions.dll for exploiting DLL hijacking of the task scheduler.☆52Updated 3 years ago
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- ☆17Updated 2 years ago
- Script written in python to perform Resource-Based Constrained Delegation (RBCD) attack by leveraging Impacket toolkit.☆20Updated 3 years ago
- ☆26Updated last year
- Slides for the talk we presented as UniPi at DefCon's Red Team Village☆23Updated 2 years ago
- ☆22Updated 3 years ago
- ☆51Updated 3 months ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆24Updated 3 years ago
- ☆30Updated 2 years ago
- Triaging Windows event logs based on SANS Poster☆39Updated 2 years ago
- Items related to the RedELK workshop given at security conferences☆28Updated last year
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- ☆37Updated 10 months ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- (PoC) Tiny Excel BIFF8 Generator, to Embedded 4.0 Macros in xls files without Excel.☆42Updated 3 years ago
- A vSphere deployment of GOADv2 BETA Testing (v0.1)☆26Updated last year
- A script that parses PowerView's output for GPO analysis. Integrated into bloodhound to find misconfigurations of URA, SMB signing etc☆13Updated 5 years ago