个人整理的一些域渗透Tricks,可能有一些错误。
☆259May 3, 2021Updated 4 years ago
Alternatives and similar repositories for Hunting-Active-Directory
Users that are interested in Hunting-Active-Directory are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 域控安全one for all☆736Sep 9, 2024Updated last year
- 利用NTLM Hash读取Exchange邮件☆441Jan 7, 2025Updated last year
- 一款可以 在不出网的环境下进行反向代理及cs上线的工具☆491Apr 26, 2023Updated 2 years ago
- 红队行动中利用白利用、免杀、自动判断网络环境生成钓鱼可执行文件。☆366Jun 19, 2024Updated last year
- RedTeaming知识星球2020年安全知识汇总☆473May 5, 2021Updated 4 years ago
- Java RCE 回显测试代码☆1,015Oct 15, 2020Updated 5 years ago
- 收集内存马打入方式☆507May 20, 2022Updated 3 years ago
- WebLogic利用CVE-2020-2883打Shiro rememberMe反序列化漏洞,一键注册蚁剑filter内存shell☆535Aug 25, 2020Updated 5 years ago
- 用于记录内网渗透(域渗透)学习 :-)☆1,239Nov 9, 2020Updated 5 years ago
- 各种数据库的利用姿势☆1,033Jan 3, 2025Updated last year
- 提取DC日志,快速获取域用户对应IP地址☆310Mar 21, 2022Updated 4 years ago
- 解决FastJson、Jackson、Log4j2、原生JNDI注入漏洞的高版本JDKBypass利用,探测本地可用反序列化gadget达到命令执行、回显命令执行、内存马注入☆772Jan 26, 2022Updated 4 years ago
- 远程创建任务计划工具☆190Apr 23, 2022Updated 3 years ago
- 清除Go编译时自带的信息☆854Jul 20, 2022Updated 3 years ago
- 防火墙出网探测工具,内网穿透型socks5代理☆269Nov 12, 2021Updated 4 years ago
- 免杀技术大杂烩---乱拳也打不死老师傅☆1,094Mar 29, 2021Updated 4 years ago
- SharpSQLTools 和@Rcoil一起写的小工具,可上传下载文件,xp_cmdshell与sp_oacreate执行命令回显和clr加载程序集执行相应操作。☆964Aug 5, 2021Updated 4 years ago
- rmi打内存马工具,适用于目标用不了ldap的情况☆253Jul 12, 2023Updated 2 years ago
- 分享几个直接可用的内存马,记录一下学习过程中看过的文章☆979Mar 23, 2022Updated 4 years ago
- Fastjson姿势技巧集合☆1,833Oct 20, 2023Updated 2 years ago
- frp0.38.1 支持域前置、远程加载配置文件、配置文件自删除、流量特征修改☆133Apr 26, 2022Updated 3 years ago
- Shiro-550 不依赖CC链利用工具☆450Jun 19, 2024Updated last year
- Lateral Movement☆943Mar 13, 2026Updated last week
- 域信息收集工具☆412Sep 16, 2022Updated 3 years ago
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆343Apr 10, 2022Updated 3 years ago
- 一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webs…☆1,470Apr 25, 2024Updated last year
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆753Apr 14, 2021Updated 4 years ago
- sharpwmi是一个基于rpc的横向移动工具,具有上传文件和执行命令功能。☆715Aug 3, 2021Updated 4 years ago
- dump lsass进程工具☆561Jul 20, 2023Updated 2 years ago
- Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势☆1,405Jan 18, 2022Updated 4 years ago
- 各种工具指纹收集分享☆529Nov 3, 2021Updated 4 years ago
- 内网域渗透小工具☆732Apr 20, 2021Updated 4 years ago
- 记录自己编写、修改的部分工具☆1,465Oct 19, 2025Updated 5 months ago
- 内网渗透中常用的c#程序整合成cs脚本,直接内存加载。持续更新~☆499Feb 13, 2020Updated 6 years ago
- 适用于weblogic和Tomcat的无文件的内存马(memshell)☆270Mar 4, 2022Updated 4 years ago
- EHole(棱洞)-红队重点攻击系统指纹探测工具☆471Jan 27, 2021Updated 5 years ago
- 红队作战中比较常遇到的一些重点系统漏洞整理。☆2,521Jul 17, 2021Updated 4 years ago
- 适合在命令行中使用的轻巧的SQL Server数据库安全检测工具☆431Oct 23, 2021Updated 4 years ago
- nim一键免杀☆215Mar 8, 2021Updated 5 years ago