WiredPulse / Invoke-HiveNightmareLinks
PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version 1809 or newer
☆35Updated 2 years ago
Alternatives and similar repositories for Invoke-HiveNightmare
Users that are interested in Invoke-HiveNightmare are comparing it to the libraries listed below
Sorting:
- Add SD for controlled computer object to a target object for RBCD using LDAP☆38Updated 3 years ago
- Federated Office365 user enumeration based on correlated response trend analysis☆51Updated 3 years ago
- Exchangelib wrapper for pentesting☆64Updated 4 months ago
- Python3 tool to perform password spraying against Microsoft Online service using various methods☆87Updated 2 years ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆91Updated 3 years ago
- terraform deployment for red team☆24Updated 2 years ago
- Timestomping module: overwrite file create/modify times in .NET (no pinvoke)☆26Updated 3 years ago
- ☆71Updated 3 weeks ago
- Ansible playbooks for instrumenting a Red Team environment with RedElk☆51Updated 4 years ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- A collection of Neo4j/BloodHound queries to collect interesting information.☆46Updated 3 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- Modified version of PEAS client for offensive operations☆41Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆68Updated last year
- Dump LSASS process in Task Manager without triggering Defender.☆18Updated 2 years ago
- BH Cypher Queries picked up from random places☆38Updated 6 years ago
- ☆33Updated 5 years ago
- (kinda) Malicious Outlook Reader☆19Updated 4 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆42Updated 3 months ago
- IOXIDResolver from AirBus Security/PingCastle☆51Updated 4 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆56Updated 3 years ago
- Generate droppers with encrypted payloads automatically.☆54Updated 3 years ago
- ☆59Updated 3 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆95Updated last year
- Hiding your infrastructure from the boys in blue.☆23Updated 3 years ago
- Convert an LDIF file to JSON files ingestible by BloodHound☆43Updated 3 months ago
- Convert ldapdomaindump to Bloodhound☆80Updated last year
- Scripts for public use that we've randomly written, or have updated from other people's work.☆40Updated last year
- Get Fine Grained Password Policy☆70Updated 2 months ago