dafthack / HostReconLinks
This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance phase. It gathers information about the local system, users, and domain information. It does not use any 'net', 'ipconfig', 'whoami', 'netstat', or other system commands to help avoid detection.
☆460Updated 8 years ago
Alternatives and similar repositories for HostRecon
Users that are interested in HostRecon are comparing it to the libraries listed below
Sorting:
- Malicious WMI Events using PowerShell☆394Updated 9 years ago
- PowerMeta searches for publicly available files hosted on various websites for a particular domain by using specially crafted Google, and…☆564Updated 4 months ago
- A Powershell Privilege Escalation Enumeration Script.☆313Updated 7 years ago
- ☆283Updated 7 years ago
- Egressbuster is a method to check egress filtering and identify if ports are allowed. If they are, you can automatically spawn a shell.☆367Updated last year
- NetSPI PowerShell Scripts☆335Updated 9 months ago
- Egress-Assess is a tool used to test egress data detection capabilities☆685Updated 2 years ago
- Credential and Red Teaming Defense for Windows Environments☆329Updated last year
- Search for categorized domain☆451Updated 6 years ago
- An LDAP based Active Directory user and group enumeration tool☆305Updated 2 years ago
- PowerShell Remote Download Cradle Generator & Obfuscator☆845Updated 7 years ago
- Domain Password Audit Tool for Pentesters☆1,001Updated this week
- A Burp Suite Extension to pull Employee Names from Google and Bing LinkedIn Search Results☆202Updated last year
- Automate creating resilient, disposable, secure and agile infrastructure for Red Teams☆381Updated 5 years ago
- Miscellaneous tools for BloodHound☆400Updated last year
- GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.☆634Updated 8 years ago
- ☆524Updated 3 years ago
- Rid_enum is a null session RID cycle attack for brute forcing domain controllers.☆295Updated last year
- A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale v…☆449Updated 3 years ago
- Active Directory forensic framework☆325Updated 3 years ago
- Analyze ARP requests to identify intercommunicating hosts and stale network address configurations (SNACs)☆69Updated 3 years ago
- Chameleon: A tool for evading Proxy categorisation☆506Updated 11 months ago
- The Old BloodHound C# Ingestor (Deprecated)☆511Updated 3 years ago
- Sheepl : Creating realistic user behaviour for supporting tradecraft development within lab environments☆399Updated last year
- Responder Windows Version Beta☆545Updated last year
- A PowerShell module to deploy active directory decoy objects.☆236Updated 6 years ago
- ☆395Updated last week
- ☆402Updated 5 years ago
- ObfuscatedEmpire is a fork of Empire with Invoke-Obfuscation integrated directly into it's functionality.☆231Updated 8 years ago
- Automated deployment of Windows and Active Directory test lab networks. Useful for red and blue teams.☆493Updated 6 years ago