arekfurt / WinAWL
☆18Updated 5 years ago
Alternatives and similar repositories for WinAWL:
Users that are interested in WinAWL are comparing it to the libraries listed below
- BloodHound Data Scanner☆45Updated 4 years ago
- Set of ultra technical notes about AD☆18Updated 6 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated 2 years ago
- B-Sides CBR 2018 talk about group policy and Grouper☆39Updated 5 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆51Updated last year
- gpocheck☆30Updated 8 months ago
- Babel-Shellfish deobfuscates and scans Powershell scripts on real-time right before each line execution.☆43Updated 6 years ago
- OSSEM Modular☆27Updated 4 years ago
- Test if an antivirus is installed via the resolution of the service virtual SID☆56Updated 5 years ago
- Script that searches through all COM objects for any methods containing a key word of your choosing.☆73Updated 5 years ago
- Get all AD objects which are hidden from you☆18Updated 7 years ago
- Searches open files shares for password files, database backups, etc. Extend as you see fit☆29Updated 5 years ago
- A simple utility to check the status of and/or disable SMBv1 on Windows system via Cb Response's Live Response functionality.☆15Updated 5 years ago
- Event metadata collected across all manifest-based ETW providers on Window 10 1903☆31Updated 5 years ago
- Defensive-oriented Active Directory enumeration☆23Updated 9 years ago
- Obtains a list of GPOs based on known Client Side Extensions (CSE) that normally contain passwords☆33Updated 5 years ago
- Active Directory Toolkit☆20Updated 6 years ago
- ☆17Updated 6 years ago
- C# User Simulation☆32Updated 2 years ago
- incident response scripts☆19Updated 6 years ago
- A companion tool for BloodHound offering Active Directory statistics and number crunching☆65Updated 6 years ago
- Microsoft Flow Attack Framework☆23Updated 5 years ago
- Presentation Slides☆27Updated 5 years ago
- LogRM is a post exploitation powershell script which it uses windows event logs to gather information about internal network☆73Updated 5 years ago
- Detect possible sysmon logging bypasses given a specific configuration☆108Updated 6 years ago
- Streaming Unexpected Network Byte Sequences with High Probability of Blue Screening or Otherwise Crashing Attacker Command-and-Control No…☆22Updated 5 years ago
- BloodHound Cypher Queries Ported to a Jupyter Notebook☆53Updated 4 years ago
- ☆60Updated 5 years ago
- ☆52Updated 6 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago