daddycocoaman / azbeltLinks
AAD related enumeration in Nim
☆129Updated last year
Alternatives and similar repositories for azbelt
Users that are interested in azbelt are comparing it to the libraries listed below
Sorting:
- Abuse Azure API permissions for red teaming☆67Updated 2 years ago
- ☆88Updated 2 years ago
- Collection of tools to use with Azure Applications☆109Updated last year
- ☆100Updated 2 years ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆94Updated 2 years ago
- ☆92Updated 2 months ago
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆139Updated 11 months ago
- Slide decks and/or materials from conference presentations☆56Updated 2 years ago
- Hybrid AD utilities for ROADtools☆80Updated last month
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆122Updated 3 years ago
- A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure…☆40Updated 4 months ago
- Microsoft Graph API post-exploitation toolkit☆94Updated 11 months ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆95Updated last year
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆120Updated 3 years ago
- Some scripts to support with importing large datasets into BloodHound☆80Updated last year
- An Ansible collection that installs an ADFS deployment with optional configurations.☆39Updated 6 months ago
- ☆46Updated last year
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated 2 years ago
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆88Updated last year
- A Python POC for CRED1 over SOCKS5☆149Updated 8 months ago
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆93Updated last year
- ☆71Updated last week
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- Living off the land searches for explorer and sharepoint☆87Updated 2 months ago
- A small script that automates Entra ID persistence with Windows Hello For Business key☆57Updated 4 months ago
- ☆61Updated 5 months ago
- Azure DevOps Services Attack Toolkit☆145Updated 3 months ago
- using graph proxy to monitor teams user presence☆54Updated 11 months ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆175Updated 2 years ago
- ☆92Updated last week