bodik / awesome-potatoes
Study notes on Windows NTLM Reflection and token stealing based EOPs.
☆17Updated 3 years ago
Alternatives and similar repositories for awesome-potatoes:
Users that are interested in awesome-potatoes are comparing it to the libraries listed below
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆29Updated 7 months ago
- OSED Practice binary☆24Updated last year
- c# reverse shell poc☆26Updated 6 years ago
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆30Updated 9 months ago
- Right-To-Left Override POC☆34Updated 2 years ago
- Cisco CallManager User Enumeration☆15Updated 2 years ago
- ☆29Updated 2 years ago
- Windows File Enumeration Intel Gathering Tool.☆17Updated last year
- A little implant which SSH's back with a shell☆36Updated 2 years ago
- Remotely dump NT hashes through Windows Crash dumps☆26Updated 2 months ago
- Multi-thread AzureAD Autologon SSO Password Sprayer.☆36Updated 3 years ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆24Updated 3 years ago
- ☆16Updated 9 months ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- Modified version of PEAS client for offensive operations☆38Updated 2 years ago
- ☆17Updated last year
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- Code for profiling sandboxes - Initially an idea to profile sandboxes, the code is written to take enviromental variables and send them b…☆20Updated 8 months ago
- Exploit for Arbitrary File Move vulnerability in ZoneAlarm AV☆26Updated 2 years ago
- Port forwarding via MSRPC (445/tcp) [WIP]☆31Updated 3 years ago
- Bypass Constrained Language Mode in PowerShell☆27Updated 5 years ago
- Script written in python to perform Resource-Based Constrained Delegation (RBCD) attack by leveraging Impacket toolkit.☆20Updated 3 years ago
- Convert ldapdomaindump to Bloodhound☆78Updated last year
- Tool to aid in dumping LSASS process remotely☆35Updated 5 months ago
- Tool for efficient directory enumeration☆55Updated 2 months ago
- A simple Toolkit to BF and decrypt Windows EntraId CacheData☆13Updated 6 months ago
- A multithreaded, queued SSH key and/or password spraying tool.☆17Updated 2 years ago
- ☆52Updated last year