Tw1sm / PySQLRecon
Offensive MSSQL toolkit written in Python, based off SQLRecon
☆175Updated last month
Related projects: ⓘ
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆259Updated 11 months ago
- ☆139Updated 6 months ago
- Continuous password spraying tool☆112Updated 3 months ago
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆89Updated 3 months ago
- Everything and anything related to password spraying☆122Updated 3 months ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆164Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆218Updated last year
- Leak of any user's NetNTLM hash. Fixed in KB5040434☆214Updated last month
- Set of python scripts which perform different ways of command execution via WMI protocol.☆157Updated last year
- Make everyone in your VLAN ASRep roastable☆114Updated 3 months ago
- ☆110Updated last year
- linikatz is a tool to attack AD on UNIX☆134Updated 11 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆139Updated 4 months ago
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆78Updated 3 months ago
- SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.☆114Updated last month
- Retrieve and display information about active user sessions on remote computers. No admin privileges required.☆126Updated last month
- A collection of Cobalt Strike Aggressor scripts.☆80Updated 2 years ago
- Cortex XDR Config Extractor☆119Updated last year
- Lord Of Active Directory - automatic vulnerable active directory on AWS☆129Updated 10 months ago
- ☆173Updated 2 months ago
- Study materials for the Certified Red Team Expert (CRTE) exam, covering essential concepts in red teaming and penetration testing.☆73Updated last year
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆87Updated last year
- ☆260Updated last year
- Collection of random RedTeam scripts.☆191Updated 6 months ago
- Use ESC1 to perform a makeshift DCSync and dump hashes☆195Updated 10 months ago
- PowerShell Reverse Shell☆60Updated last year
- A collection of code snippets built to assist with breaking chains.☆114Updated 4 months ago
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆365Updated 3 months ago
- Attempt at Obfuscated version of SharpCollection☆188Updated this week
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆144Updated 4 months ago