SpecterOps / at-ps
Adversary Tactics - PowerShell Training
☆1,532Updated 4 years ago
Alternatives and similar repositories for at-ps:
Users that are interested in at-ps are comparing it to the libraries listed below
- Bloodhound Reporting for Blue and Purple Teams☆1,138Updated 3 months ago
- A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the ac…☆927Updated 9 months ago
- BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of…☆2,075Updated last year
- Deploy customizable Active Directory labs in Azure - automatically.☆411Updated last month
- PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monit…☆785Updated last month
- Applied Purple Teaming - (ITOCI4hr) - Infrastructure, Threat Optics, and Continuous Improvement - June 6, 2020☆322Updated 3 years ago
- Microsoft signed ActiveDirectory PowerShell module☆860Updated 5 years ago
- TrustedSec Sysinternals Sysmon Community Guide☆1,163Updated 7 months ago
- A collection of Azure AD/Entra tools for offensive and defensive security purposes☆1,975Updated last week
- A toolkit to attack Office365☆1,056Updated 4 years ago
- Hunting queries and detections☆742Updated 4 months ago
- PowerShell framework to assess Azure security☆1,130Updated 4 months ago
- Miscellaneous tools for BloodHound☆382Updated 6 months ago
- Hide your Powershell script in plain sight. Bypass all Powershell security features☆1,126Updated 5 years ago
- A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-pur…☆547Updated last month
- A tool for checking if MFA is enabled on multiple Microsoft Services☆1,404Updated 3 months ago
- Misc Threat Hunting Resources☆372Updated last year
- DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.☆546Updated 3 years ago
- Dump Azure AD Connect credentials for Azure AD and Active Directory☆646Updated 2 months ago
- Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.☆464Updated last month
- A collection of Red Team focused tools, scripts, and notes☆1,114Updated last month
- Atomic Purple Team Framework and Lifecycle☆284Updated 3 years ago
- Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red…☆871Updated 2 months ago
- ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the…☆1,748Updated 4 years ago
- Tools for hunting for threats.☆572Updated 2 months ago
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆762Updated 2 years ago
- Windows Events Attack Samples☆2,286Updated last year
- Course repository for PowerShell for Pentesters Course☆426Updated 2 years ago