doredry / TokenFinderLinks
Tool to extract powerful tokens from Office desktop apps memory
☆72Updated last year
Alternatives and similar repositories for TokenFinder
Users that are interested in TokenFinder are comparing it to the libraries listed below
Sorting:
- PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory …☆97Updated 2 months ago
- ☆105Updated 3 years ago
- ☆119Updated 4 years ago
- ☆85Updated 3 years ago
- AAD related enumeration in Nim☆131Updated 2 years ago
- ☆62Updated 2 years ago
- ☆107Updated 3 years ago
- DEFCON 31 slide deck and video link☆66Updated 7 months ago
- PowerShell scripts to create sandboxed or vulnerable environments using HyperV and AutomatedLab☆91Updated 5 months ago
- Default Detections for EDR☆97Updated last year
- ☆113Updated 6 months ago
- So, you think you have MFA? AAD/ROPC/MFA bypass testing tool☆126Updated 3 years ago
- Collection of tools to use with Azure Applications☆112Updated 2 years ago
- Silver SAML forgery tool☆56Updated last year
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆88Updated 2 years ago
- PowerHunt is a modular threat hunting framework written in PowerShell that leverages PowerShell Remoting for data collection on scale.☆71Updated last year
- ☆47Updated last year
- blame Huy☆42Updated 5 years ago
- GoldenSAML Attack Libraries and Framework☆77Updated last year
- ☆184Updated last year
- A Azure Exploitation Toolkit for Red Team & Pentesters☆166Updated 2 years ago
- SMBMap is a handy SMB enumeration tool - here with Kerberos support☆73Updated 4 years ago
- Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org☆124Updated 3 years ago
- ☆36Updated 2 years ago
- ☆33Updated last year
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆97Updated 2 years ago
- InfoSec Notes☆60Updated last year
- Abuse Azure API permissions for red teaming☆70Updated 2 years ago
- A small script that automates Entra ID persistence with Windows Hello For Business key☆65Updated 10 months ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆94Updated 2 years ago