Decrypt SCCM and DPAPI secrets with Powershell.
☆46Jun 24, 2025Updated last year
Alternatives and similar repositories for Invoke-PowerDPAPI
Users that are interested in Invoke-PowerDPAPI are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it☆135Aug 23, 2025Updated 10 months ago
- Offensive toolkit and BloodHound graph creator for DPAPI blobs and master key files☆21Jan 10, 2026Updated 6 months ago
- ☆46Feb 6, 2025Updated last year
- Token impersonation in PowerShell to execute under the context of another user.☆25Oct 14, 2025Updated 9 months ago
- A tool that allows you to extract a client-specific wordlist from the LDAP of an Active Directory.☆58Jul 2, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆168Nov 2, 2025Updated 8 months ago
- Injecting DLL into LSASS at boot☆158Apr 29, 2025Updated last year
- Fun GUI for Group3rs output log☆36Aug 14, 2023Updated 2 years ago
- a small script to collect information from a management point☆37Jan 19, 2026Updated 6 months ago
- PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads☆257Oct 30, 2025Updated 8 months ago
- ☆50Dec 5, 2025Updated 7 months ago
- GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstal…☆36Nov 24, 2024Updated last year
- This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit typ…☆54May 16, 2025Updated last year
- A tool to interact with Kerberos to request, forge and convert various types of tickets in an Active Directory environment.☆71Jul 6, 2026Updated 2 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- gpoParser is a tool designed to extract and analyze configurations applied through Group Policy Objects (GPOs) in an Active Directory env…☆366Apr 28, 2026Updated 2 months ago
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- ☆18Feb 29, 2024Updated 2 years ago
- A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO☆248Aug 25, 2024Updated last year
- Rust implementation, creating a scheduled task programmatically with user logon trigger.☆47Jun 10, 2025Updated last year
- COM Windows Persistence Technique☆89Apr 27, 2026Updated 2 months ago
- Unauthenticated start EFS service on remote Windows host (make PetitPotam great again)☆147Oct 23, 2025Updated 8 months ago
- Weaponizing DCOM for NTLM Authentication Coercions☆274Jul 1, 2025Updated last year
- ☆91Jul 28, 2022Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆444Jun 27, 2025Updated last year
- Lateral Movement☆126Nov 14, 2023Updated 2 years ago
- ☆202Mar 28, 2025Updated last year
- TokenCert☆105Nov 15, 2024Updated last year
- Create Entra Global Admin accounts from On-Prem☆25Jul 28, 2025Updated 11 months ago
- Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.☆219Jan 6, 2026Updated 6 months ago
- Automating the MITM attack on WSUS☆381Updated this week
- Local SYSTEM auth trigger for relaying - X☆159Jul 23, 2025Updated 11 months ago
- Remote DLL Injection with Timer-based Shellcode Execution☆216Jul 18, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆74May 1, 2024Updated 2 years ago
- Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data☆410Updated this week
- Resources Links for the Research Based on Josh Prager and Nico Shyne's☆13Oct 21, 2024Updated last year
- ☆76Jun 17, 2025Updated last year
- The DCERPC only printerbug.py version☆234Oct 30, 2025Updated 8 months ago
- Python3 utility for creating zip files that smuggle additional data for later extraction☆275May 15, 2025Updated last year
- Extract registry and NTDS secrets from local or remote disk images☆45Mar 15, 2025Updated last year