commial / LiveDiffADLinks
AD Live changes viewer
☆36Updated 2 years ago
Alternatives and similar repositories for LiveDiffAD
Users that are interested in LiveDiffAD are comparing it to the libraries listed below
Sorting:
- Just a bunch of code snippets to identify and remediate common Active Directory Certificate Services issues.☆33Updated last year
- ☆35Updated 2 years ago
- Module to update the Krbtgt password☆47Updated last year
- Leghorn code for PKI abuse☆32Updated 4 years ago
- Event metadata collected across all manifest-based ETW providers on Window 10 1903☆31Updated 5 years ago
- BloodHound Data Scanner☆45Updated 4 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆53Updated last year
- Go module that allows you to authenticate to Azure with a well known client ID using interactive logon and grab the token☆26Updated 2 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 2 years ago
- Takes the original idea of NetCease and adds functionality☆24Updated 3 years ago
- ☆115Updated 5 years ago
- This script validates the most common Conditional Access policies in Microsoft 365.☆9Updated last year
- Active Directory Group Policy analyzer☆14Updated 5 years ago
- ☆23Updated 3 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated 2 years ago
- Some portable tools, some YARA, some Python, and a little bit of love. Not all of these tools can be used in incident response. Use PEs…☆37Updated last month
- ☆33Updated 3 years ago
- Script that searches through all COM objects for any methods containing a key word of your choosing.☆73Updated 5 years ago
- ☆45Updated last year
- Tools for Active Directory security management☆59Updated 5 months ago
- Expose a lot of MDE telemetry that is not easily accessible in any searchable form☆107Updated 6 months ago
- A collection of Windows software baseline notes with corresponding Windows Defender Application Control (WDAC) policies☆62Updated last year
- Active Directory Firewall☆72Updated last week
- Tool to perform lateral movement between AAD joined devices☆61Updated 3 years ago
- Azure AiTM Function PoC to phish Entra ID Credentials☆22Updated 8 months ago
- LAPS module for CrackMapExec☆29Updated 3 years ago
- Cmdlets for capturing Windows Events☆14Updated 3 years ago
- Tier0 (Tier Zero) Account discovery for ActiveDirectory Security☆17Updated 7 years ago
- a tiny program to consume from ETW providers for research☆49Updated 5 months ago
- ☆13Updated 3 years ago