csababarta / ntdsxtract
Active Directory forensic framework
☆319Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for ntdsxtract
- This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.☆381Updated 4 months ago
- Not PowerShell☆444Updated 8 years ago
- ObfuscatedEmpire is a fork of Empire with Invoke-Obfuscation integrated directly into it's functionality.☆229Updated 6 years ago
- ☆280Updated 6 years ago
- An LDAP based Active Directory user and group enumeration tool☆303Updated last year
- The Old BloodHound C# Ingestor (Deprecated)☆509Updated 2 years ago
- Detect and abuse risky SPNs☆259Updated 7 years ago
- Malicious WMI Events using PowerShell☆367Updated 8 years ago
- GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.☆628Updated 7 years ago
- ☆255Updated 2 years ago
- The Discretionary ACL Modification Project: Persistence Through Host-based Security Descriptor Modification☆373Updated 5 years ago
- Tater is a PowerShell implementation of the Hot Potato Windows Privilege Escalation exploit from @breenmachine and @foxglovesec☆448Updated 8 years ago
- Inject PowerShell into any process☆221Updated 5 years ago
- A Powershell client for dnscat2, an encrypted DNS command and control tool.☆392Updated last year
- A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale v…☆443Updated 2 years ago
- This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported …☆802Updated 4 months ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆319Updated 7 years ago
- Some PowerShell Stuff☆280Updated 2 years ago
- This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance…☆431Updated 7 years ago
- ☆385Updated 4 years ago
- This version of PowerUp is now unsupported. See https://github.com/Veil-Framework/PowerTools/tree/master/PowerUp for the most current ver…☆239Updated 7 years ago
- Weaponizing Splunk with reverse and bind shells.☆173Updated 7 years ago
- Rid_enum is a null session RID cycle attack for brute forcing domain controllers.☆231Updated 3 months ago
- ☆511Updated 2 years ago
- ☆305Updated 5 years ago
- PowerShell Remote Download Cradle Generator & Obfuscator☆823Updated 6 years ago
- Executes PowerShell from an unmanaged process☆474Updated 8 years ago
- Assorted scripts and one off things☆259Updated 2 months ago
- PSAmsi is a tool for auditing and defeating AMSI signatures.☆386Updated 6 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆367Updated 5 years ago