ZeroDayLab / PowerSploit
PowerSploit - A PowerShell Post-Exploitation Framework
☆220Updated 3 years ago
Alternatives and similar repositories for PowerSploit:
Users that are interested in PowerSploit are comparing it to the libraries listed below
- ☆358Updated 3 years ago
- Dumping LAPS from Python☆258Updated 2 years ago
- Proof-of-concept obfuscation toolkit for C# post-exploitation tools☆416Updated 2 years ago
- A little tool to convert ccache tickets into kirbi (KRB-CRED) and vice versa based on impacket.☆165Updated 2 years ago
- ☆205Updated last year
- Collection of some of my own tools with other great open source tools out there packaged into a powershell module☆143Updated 2 years ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆353Updated 4 years ago
- RACE is a PowerShell module for executing ACL attacks against Windows targets.☆214Updated last year
- Inject remote template link into word document for remote template injection☆165Updated 3 years ago
- ADCS abuser☆266Updated last year
- Invoke-ZeroLogon allows attackers to impersonate any computer, including the domain controller itself, and execute remote procedure calls…☆215Updated 4 years ago
- Collection of cyphers for bloodhound☆147Updated 7 months ago
- Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket☆517Updated 2 years ago
- Simple script to extract useful informations from the combo BloodHound + Neo4j☆203Updated last year
- ☆351Updated 3 years ago
- scan for NTLM directories☆351Updated 7 months ago
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆803Updated 3 years ago
- Password spraying tool and Bloodhound integration☆219Updated 3 weeks ago
- PowerShell Constrained Language Mode Bypass☆242Updated 3 years ago
- Bypassing Kerberoast Detections with Modified KDC Options and Encryption Types☆378Updated last year
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆255Updated 11 months ago
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆383Updated 10 months ago
- Python tool to Check running WebClient services on multiple targets based on @leechristensen☆259Updated 3 years ago
- A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object☆230Updated 4 years ago
- POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln☆188Updated 3 years ago
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆300Updated 2 years ago
- A proof of concept on attack vectors against Active Directory by abusing Active Directory Certificate Services (ADCS)☆179Updated 3 years ago
- Bypass for PowerShell Constrained Language Mode☆381Updated 3 years ago
- Evil SQL Client (ESC) is an interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration feature…☆284Updated last year
- Password spraying and bruteforcing tool for Active Directory Domain Services☆358Updated 3 months ago