YossiSassi / AD-Replication-Metadata
Track previous changes on specific AD accounts (users, computers) and Groups (online DC), even if event logs were wiped/not collected (e.g. during an Incident Response). Uses Replication metadata history parsing. Online and offline DB (backup)
☆15Updated 3 weeks ago
Alternatives and similar repositories for AD-Replication-Metadata:
Users that are interested in AD-Replication-Metadata are comparing it to the libraries listed below
- Takes the original idea of NetCease and adds functionality☆24Updated 3 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Hundred Days of Yara Challenge☆12Updated 2 years ago
- ☆17Updated last year
- A not-at-all-ordered compilation of random security-related powershell scripts :-)☆11Updated 3 years ago
- Reproducible and extensible BloodHound playbooks☆42Updated 5 years ago
- A collection of my presentation materials.☆16Updated 10 months ago
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆30Updated 11 months ago
- Python tool to find vulnerable AD object and generating csv report☆14Updated 2 years ago
- CLI Search for Security Operators of MITRE ATT&CK URLs☆16Updated 2 years ago
- ☆14Updated 10 months ago
- Repository for LNK stuff☆29Updated 2 years ago
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆13Updated 2 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- self-hosted Azure OSINT tool☆27Updated 6 months ago
- Log converter from CS log to Ghostwriter CSV☆29Updated 4 years ago
- ☆20Updated 3 years ago
- Continuous kerberoast monitor☆44Updated last year
- Leverages B64 chunks to split files and save to clipboard☆25Updated 9 months ago
- Just another useless C2 occupying space in some HDD somewhere.☆20Updated last year
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆34Updated 3 years ago
- General Content☆26Updated 8 months ago
- The Totally Legit Authentication Dialog☆12Updated last year
- Threat Mitigation Strategies☆25Updated last year
- Simple and sane cryptographic wrapper library.☆27Updated last year
- ☆20Updated 3 months ago
- Scans a list of raccoon servers from Tria.ge and extracts the config☆15Updated last year