cyberark / shimit
A tool that implements the Golden SAML attack
☆333Updated 6 years ago
Alternatives and similar repositories for shimit:
Users that are interested in shimit are comparing it to the libraries listed below
- Bloodhound Attack Path Automation in CobaltStrike☆312Updated 4 years ago
- LyncSniper: A tool for penetration testing Skype for Business and Lync deployments☆305Updated 4 years ago
- GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.☆631Updated 7 years ago
- Egressbuster is a method to check egress filtering and identify if ports are allowed. If they are, you can automatically spawn a shell.☆365Updated 6 months ago
- A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale v…☆446Updated 2 years ago
- ☆282Updated 7 years ago
- Automate creating resilient, disposable, secure and agile infrastructure for Red Teams☆377Updated 4 years ago
- ☆377Updated last month
- Disposable and resilient red team infrastructure with Terraform☆260Updated 6 years ago
- Analyze ARP requests to identify intercommunicating hosts and stale network address configurations (SNACs)☆65Updated 3 years ago
- Sheepl : Creating realistic user behaviour for supporting tradecraft development within lab environments☆396Updated 11 months ago
- ☆272Updated 2 years ago
- Feed the tool a .nessus file and it will automatically get you MSF shell☆235Updated 2 years ago
- Weaponizing Splunk with reverse and bind shells.☆176Updated 7 years ago
- A collection of Ansible Playbooks that configure Kali to use Fish & install a number of tools☆161Updated 5 years ago
- A framework for stealthy domain reconnaissance☆298Updated 3 years ago
- Domain user enumeration tool☆215Updated last year
- Rapid Attack Infrastructure (RAI)☆304Updated 2 months ago
- An LDAP based Active Directory user and group enumeration tool☆307Updated 2 years ago
- Enumerate usernames on a domain where you have no creds by using SMB Relay with low priv.☆393Updated 4 years ago
- This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.☆381Updated 7 months ago
- The Discretionary ACL Modification Project: Persistence Through Host-based Security Descriptor Modification☆377Updated 5 years ago
- Red Team C2 Infrastructure built in AWS using Ansible!☆225Updated 4 years ago
- A fully functional DanderSpritz lab in 2 commands☆424Updated 5 years ago
- Provides In-memory compilation and reflective loading of C# apps for AV evasion.☆368Updated 11 months ago
- Remote Recon and Collection☆448Updated 7 years ago
- ☆332Updated 2 years ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆321Updated 7 years ago
- An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.☆302Updated 2 years ago
- Active Directory forensic framework☆323Updated 2 years ago