SpecterOps / TierZeroTable
Table of AD and Azure assets and whether they belong to Tier Zero
☆190Updated this week
Related projects ⓘ
Alternatives and complementary repositories for TierZeroTable
- A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory☆151Updated 2 months ago
- Audit program for AzureAD☆145Updated last year
- PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.☆91Updated 2 months ago
- Monitor your PingCastle scans to highlight the rule diff between two scans☆107Updated 3 months ago
- A tiny tool to find and fix common misconfigurations in Active Directory-integrated DNS☆97Updated last month
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆232Updated 11 months ago
- M365/Azure adversary simulation tool designed to simulate adversary techniques and generate attack telemetry.☆111Updated this week
- Sentinel Logic Apps/Playbooks to automate enrichment, incident analysis and more.☆75Updated 3 months ago
- Tool for creating reports on Entra ID Role Assignments☆86Updated 7 months ago
- The "Monash Enterprise Access Model" (MEAM) is a model for tiering Active Directory that builds heavily on the Microsoft Enterprise Acces…☆87Updated last month
- A PowerShell script that automates the security assessment of Microsoft Active Directory environments.☆62Updated 2 years ago
- Identify the attack paths in BloodHound breaking your AD tiering☆307Updated 2 years ago
- ☆105Updated last year
- ☆173Updated 9 months ago
- A fork of the great TokenTactics with support for CAE and token endpoint v2☆196Updated last month
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆340Updated this week
- Expose a lot of MDE telemetry that is not easily accessible in any searchable form☆99Updated 4 months ago
- ResearchDev - XDR & SIEM Detection☆62Updated this week
- Active Directory delegation management tool☆284Updated last year
- Reportly is an AzureAD user activity report tool.☆89Updated last year
- Abusing Intune for Lateral Movement over C2☆280Updated 2 weeks ago
- MDE Tester is designed to help testing various features in Microsoft Defender for Endpoint.☆188Updated 8 months ago
- ☆48Updated last year
- ScriptSentry finds misconfigured and dangerous logon scripts.☆336Updated last week
- Audit tool for Active Directory. Automates a lot of checks from a pentester perspective.☆156Updated last month
- PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory …☆93Updated last year
- Get insights into the actual strength and quality of passwords in Active Directory.☆151Updated 4 months ago
- ☆58Updated 9 months ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆110Updated this week
- Hunting Queries for Defender ATP☆73Updated this week