BlackCat is a PowerShell module designed to validate the security of Microsoft Azure. It provides a set of functions to identify potential security holes.
☆204Jun 24, 2026Updated 3 weeks ago
Alternatives and similar repositories for blackcat
Users that are interested in blackcat are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆146Sep 9, 2025Updated 10 months ago
- A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged object…☆454Jun 16, 2026Updated last month
- Cloud subdomains identification tool☆63Apr 15, 2025Updated last year
- ☆651Jun 28, 2026Updated 3 weeks ago
- Azure AppHunter is an open-source tool created for security researchers, red teamers and defenders to help them identify excessive privil…☆104May 31, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.☆39Oct 30, 2024Updated last year
- Scan Entra for risk in role assignments and escalation paths☆92Jun 12, 2026Updated last month
- Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI☆1,349Jun 9, 2026Updated last month
- Monkey365 is an open-source security assessment tool for Microsoft 365, Azure, and Microsoft Entra ID. It helps security professionals id…☆1,311Updated this week
- Simple hunting script for suspicious M365 OAuth Apps☆325Sep 23, 2025Updated 9 months ago
- A small collector to model out abusable Seamless Single Sign On edges☆15Feb 11, 2026Updated 5 months ago
- A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable w…☆164Mar 20, 2026Updated 4 months ago
- Identify Azure AD resources that issue tokens without MFA enforcement using the ROPC grant flow.☆86Feb 2, 2026Updated 5 months ago
- A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.☆964May 6, 2026Updated 2 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,314Apr 9, 2026Updated 3 months ago
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆283Jun 24, 2026Updated 3 weeks ago
- A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.☆1,580Jul 3, 2026Updated 2 weeks ago
- The Azure Execution Tool☆159Feb 6, 2026Updated 5 months ago
- TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and …☆414Jan 23, 2025Updated last year
- A tool to remotely detect unusual sessions opened on windows machines using RPC☆122Jun 10, 2025Updated last year
- Scripts that automate portions of pentests.☆59Jun 25, 2026Updated 3 weeks ago
- 🖥️ Windows 🚀 A Windows tool for emergency privacy: instantly deletes sensitive data and active logins to protect my information during …☆56Jul 5, 2026Updated 2 weeks ago
- AWS services enumerator for penetration testing☆21Nov 11, 2025Updated 8 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- SATO is a PowerShell tool focuses on providing flexible, multi-grant type support for obtaining, managing, and analyzing Azure tokens.☆24Jun 6, 2026Updated last month
- A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory☆432Feb 16, 2026Updated 5 months ago
- Claude MCP server to perform analysis on ROADrecon data☆52Mar 30, 2025Updated last year
- BadZure automates the deployment of intentionally misconfigured Entra ID tenants and Azure subscriptions, populating them with diverse en…☆513Updated this week
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆666Jul 6, 2026Updated 2 weeks ago
- DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegat…☆41Aug 8, 2025Updated 11 months ago
- M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response ca…☆330Oct 12, 2025Updated 9 months ago
- ☆42Nov 13, 2025Updated 8 months ago
- Listener that spawns a new tmux window for each incoming reverse shell + Supports listening on many ports☆59Jul 13, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆15May 30, 2026Updated last month
- ☆229Jul 9, 2026Updated last week
- A collection of Azure AD/Entra tools for offensive and defensive security purposes☆2,672May 21, 2026Updated last month
- Putting a leash on naughty AWS permissions☆135Sep 5, 2025Updated 10 months ago
- Maester is a test automation framework to help you stay in control of your Microsoft security configuration.☆997Updated this week
- Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data☆410Updated this week
- IP address filter by City☆12Jan 17, 2025Updated last year