byt3bl33d3r / UhOh365
A script that can see if an email address is valid in Office365 (user/email enumeration). This does not perform any login attempts, is unthrottled, and is incredibly useful for social engineering assessments to find which emails exist and which don't.
☆30Updated 4 years ago
Alternatives and similar repositories for UhOh365:
Users that are interested in UhOh365 are comparing it to the libraries listed below
- SMBMap is a handy SMB enumeration tool☆37Updated 10 months ago
- Active Directory information dumper via LDAP☆12Updated 5 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆16Updated 5 years ago
- Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensi…☆12Updated 4 years ago
- A collection of data exfiltration scripts for Red Team assessments.☆98Updated 5 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆18Updated 5 years ago
- Custom pentesting tools☆25Updated 4 years ago
- scripts to setup environments for red/blue teams.☆16Updated last year
- A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow☆101Updated 3 years ago
- Wireless Pentesting Device☆21Updated 4 years ago
- The Diagon Attack Framework is a Prismatica application containing the Ravenclaw, Gryffindor, and Slytherin remote access tools (RATs).☆52Updated 2 years ago
- Automatically spin up infra for phishing☆64Updated 5 years ago
- ☆52Updated 4 years ago
- AV/EDR evasion via direct system calls.☆32Updated 4 years ago
- Red Team Tool Kit☆16Updated 6 years ago
- A simple "ransomware" using powershell☆14Updated 3 years ago
- My Python Cookiecutter project template☆32Updated 2 years ago
- Empire is a PowerShell and Python 3.x post-exploitation framework.☆17Updated 4 years ago
- Sp00fer blog post -☆26Updated 2 years ago
- Modern problems require modern solutions☆31Updated 2 years ago
- ThreatBox is a standard and controlled Linux based attack platform. I've used a version of this for years. It started as a collection of …☆75Updated 5 months ago
- Collection of Cyber Threat Intelligence sources from the deep and dark web☆11Updated 6 months ago
- Data exfiltration utility for testing detection capabilities☆57Updated 3 years ago
- A tool to analyze Ntds.dit files once the NTLM and LM hashes have been cracked.☆15Updated 3 years ago
- Decode Hashcat '$HEX[]' password output from a password list containing a mixture of non-encoded and encoded passwords☆23Updated 6 years ago
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- Miscellaneous tools for BloodHound☆18Updated 3 years ago
- Small python script wrapper for automating hashcat commands☆38Updated 4 years ago
- Tool to transfer credential files from Firefox to your local machine to decrypt offline.☆23Updated 3 years ago
- Fully-featured spear-phishing toolkit - web front-end☆51Updated 3 months ago