federicodotta / ysoserialLinks
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆43Updated 5 years ago
Alternatives and similar repositories for ysoserial
Users that are interested in ysoserial are comparing it to the libraries listed below
Sorting:
- This code was used for the blogpost on secjuice.☆42Updated 6 years ago
- Python3 tool to perform password spraying against Microsoft Online service using various methods☆87Updated 2 years ago
- ☆44Updated 8 years ago
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆112Updated 2 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆96Updated 3 years ago
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- A tool to password spray Jenkins instances☆57Updated 6 years ago
- Add SD for controlled computer object to a target object for RBCD using LDAP☆38Updated 3 years ago
- ☆17Updated 4 years ago
- Loads a custom dll in system32 via diaghub.☆76Updated 5 years ago
- A tool for creating proxy dll for hijacking☆42Updated 9 months ago
- named pipe server with impersonation☆59Updated 6 years ago
- SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing☆91Updated 5 years ago
- Exchangelib wrapper for pentesting☆64Updated 5 months ago
- Iterative AD discovery toolkit for offensive operations☆87Updated 5 years ago
- A web shell for pivoting and lateral movement☆34Updated 7 years ago
- Registry permission scanner written in C# for finding potential privesc avenues within registry☆87Updated 4 years ago
- Checks for signature requirements over LDAP☆97Updated 2 years ago
- This tool implements a cloud version of the Shadow Copy attack against domain controllers running in AWS using only the EC2:CreateSnapsho…☆121Updated 5 years ago
- "Powershell script assisting with domain enumerating and in finding quick wins" - Basically written while doing the 'Advanced Red Team' l…☆81Updated 4 years ago
- Creates a malicious ODF document help leak NetNTLM Creds☆32Updated 2 years ago
- Script and resources to execute shell commands using access to a PostgreSQL service☆69Updated 7 years ago
- C# and Impacket implementation (here with Kerberos auth support) of PrintNightmare CVE-2021-1675/CVE-2021-34527☆29Updated 4 years ago
- A collection of Neo4j/BloodHound queries to collect interesting information.☆46Updated 3 years ago
- Tool to discover Resource-Based Constrained Delegation attack paths in Active Directory environments☆124Updated 4 years ago
- Deliver powershell paylods via DNS TXT via CloudFlare using PowerShell☆61Updated 6 years ago
- PEAS is a Python 2 library and command line application for running commands on an ActiveSync server e.g. Microsoft Exchange.☆179Updated 2 years ago
- A Red Team tool for exfiltrating sensitive data from Jira tickets.☆85Updated 2 years ago
- ☆51Updated 3 years ago
- Spin up RedTeam infrastructure on AWS via Ansible☆63Updated 4 years ago