Spicy-Toaster / ActiveDirectory-Tiering
Scripts and a short guide for using them to tier an Active Directory. Made for BSides Copenhagen 2024
☆37Updated 3 months ago
Alternatives and similar repositories for ActiveDirectory-Tiering:
Users that are interested in ActiveDirectory-Tiering are comparing it to the libraries listed below
- Collection of different Azure/Entra focused solutions (Deployable templates, Function Apps, etc)☆45Updated this week
- The Invoke-TrimarcADChecks.ps1 PowerShell script is designed to gather data from a single domain AD forest based on our similar checks pe…☆42Updated last year
- ☆41Updated last year
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆50Updated last month
- Expose a lot of MDE telemetry that is not easily accessible in any searchable form☆103Updated 2 months ago
- Repo that hold write-ups of various research projects I did and/or overall InfoSec things I investigated/researched.☆19Updated last month
- A small guide on Unknown/Orphaned SIDs and some PowerShell tools to help you get rid of them.☆16Updated 2 years ago
- A tiny tool to identify and remediate common misconfigurations in Active Directory Certificate Services☆22Updated 3 weeks ago
- A tiny tool built to find and fix common misconfigurations in Active Directory-integrated DNS☆112Updated 3 weeks ago
- ASR Configurator, Essentials and Atomic Testing☆36Updated 3 months ago
- A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens☆82Updated this week
- ☆32Updated last week
- The "Monash Enterprise Access Model" (MEAM) is a model for tiering Active Directory that builds heavily on the Microsoft Enterprise Acces…☆94Updated 4 months ago
- ☆65Updated last year
- Presentations from Conferences☆26Updated 5 months ago
- VirtualGHOST Detection Tool☆89Updated 9 months ago
- A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory☆163Updated 5 months ago
- Sentinel Logic Apps/Playbooks to automate enrichment, incident analysis and more.☆86Updated last month
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆68Updated last month
- ☆44Updated this week
- A script designed to test passwords against user accounts within an Active Directory environment, offering customizable Account Lockout T…☆14Updated last year
- A quick and easy PowerShell script to collect a packet trace with option to convert .etl to .pcap.☆40Updated 2 years ago
- ☆61Updated last year
- Hunting Queries for Defender ATP☆80Updated 3 months ago
- A tiny tool built to help AD Admins tame the Protected Users group.☆42Updated 3 weeks ago
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆10Updated last year
- ☆27Updated 5 months ago
- Monitor your PingCastle scans to highlight the rule diff between two scans☆110Updated 6 months ago
- Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations☆83Updated 6 months ago