byt3bl33d3r / UhOh365Links
A script that can see if an email address is valid in Office365 (user/email enumeration). This does not perform any login attempts, is unthrottled, and is incredibly useful for social engineering assessments to find which emails exist and which don't.
☆30Updated 4 years ago
Alternatives and similar repositories for UhOh365
Users that are interested in UhOh365 are comparing it to the libraries listed below
Sorting:
- Exchange your privileges for Domain Admin privs by abusing Exchange☆16Updated 5 years ago
- SMBMap is a handy SMB enumeration tool☆37Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆18Updated 5 years ago
- Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensi…☆12Updated 5 years ago
- A collection of data exfiltration scripts for Red Team assessments.☆98Updated 5 years ago
- Active Directory information dumper via LDAP☆12Updated 5 years ago
- Custom pentesting tools☆25Updated 4 years ago
- Sp00fer blog post -☆26Updated 2 years ago
- Kali configuration optimized for red teaming/pentesting/CTFs☆20Updated last year
- Some useful scripts for CobaltStrike☆10Updated 6 years ago
- My Python Cookiecutter project template☆31Updated 2 years ago
- Empire is a PowerShell and Python 3.x post-exploitation framework.☆17Updated 4 years ago
- ThreatBox is a standard and controlled Linux based attack platform. I've used a version of this for years. It started as a collection of …☆75Updated 7 months ago
- Tool to transfer credential files from Firefox to your local machine to decrypt offline.☆23Updated 3 years ago
- Red Team Tool Kit☆16Updated 6 years ago
- Wireless Pentesting Device☆22Updated 4 years ago
- PowerShell payload generator☆117Updated 3 years ago
- Analyze ARP requests to identify hosts that are communicating with one another.☆19Updated 6 years ago
- The Diagon Attack Framework is a Prismatica application containing the Ravenclaw, Gryffindor, and Slytherin remote access tools (RATs).☆52Updated 2 years ago
- Modern problems require modern solutions☆30Updated 2 years ago
- credshed - a scalable database for credential leaks. Written in Python, it can easily ingest poorly-formatted files or entire directorie…☆61Updated 4 years ago
- Automatically spin up infra for phishing☆64Updated 5 years ago
- This tool aims at automating the identification of potential service running behind ports identified manually either through manual scan …☆52Updated 4 years ago
- Small and highly portable detection tests.☆9Updated 10 months ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆15Updated 8 years ago
- Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the in…☆19Updated 4 years ago
- ☆53Updated 4 years ago
- Post-exploitation NTLM password hash extractor☆20Updated 4 years ago
- A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow☆100Updated 3 years ago
- ☆14Updated last year