WiredPulse / Invoke-HiveNightmare
PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version 1809 or newer
☆34Updated 2 years ago
Alternatives and similar repositories for Invoke-HiveNightmare:
Users that are interested in Invoke-HiveNightmare are comparing it to the libraries listed below
- Federated Office365 user enumeration based on correlated response trend analysis☆48Updated 2 years ago
- Find Inbound Email Domains☆21Updated last year
- terraform deployment for red team☆22Updated 2 years ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- Library of sites for categorization☆26Updated 6 years ago
- Add SD for controlled computer object to a target object for RBCD using LDAP☆38Updated 3 years ago
- My BloodHound custom queries☆23Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆65Updated 7 months ago
- Convert an LDIF file to JSON files ingestible by BloodHound☆41Updated 5 months ago
- (kinda) Malicious Outlook Reader☆18Updated 3 years ago
- ☆71Updated last year
- Weaponizing CLRvoyance for Post-Ex .NET Execution☆35Updated 3 years ago
- Python3 tool to perform password spraying against Microsoft Online service using various methods☆85Updated last year
- A Couple of Python Scripts Leveraging MS365's GraphAPI to Send Custom Calendar Events / Emails from Cheap O365 Accounts☆17Updated 10 months ago
- Dump LSASS process in Task Manager without triggering Defender.☆18Updated last year
- Timestomping module: overwrite file create/modify times in .NET (no pinvoke)☆24Updated 3 years ago
- Ansible playbooks for instrumenting a Red Team environment with RedElk☆47Updated 4 years ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- A collection of Neo4j/BloodHound queries to collect interesting information.☆45Updated 2 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- Convert ldapdomaindump to Bloodhound☆78Updated last year
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆54Updated 2 years ago
- Exchangelib wrapper for pentesting☆59Updated this week
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 3 years ago
- ☆31Updated 4 years ago
- ☆56Updated 3 years ago
- Generate Apache mod_rewrite rules for Mythic C2 profiles☆28Updated 3 years ago
- Generate droppers with encrypted payloads automatically.☆53Updated 3 years ago
- ☆47Updated 4 years ago