gjhami / LinkSiren
Coerce Windows authentication by generating, distributing, and cleaning up poisoned files at scale.
☆14Updated 3 months ago
Alternatives and similar repositories for LinkSiren
Users that are interested in LinkSiren are comparing it to the libraries listed below
Sorting:
- Standalone Cobalt Strike operation logging Aggressor script for Ghostwriter 2.0+☆26Updated 9 months ago
- A BOF tool that can be used to collect passwords using CredUIPromptForWindowsCredentialsName.☆14Updated 2 years ago
- Scripts to interact with Microsoft Graph APIs☆36Updated 6 months ago
- .NET Assembly that creates network shares,sets ACE entries for directories, sets share perms, and deletes shares. Learning project for C#☆11Updated 6 months ago
- ☆34Updated 4 months ago
- ☆22Updated 7 months ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 11 months ago
- Dumping LSASS Evaded Endpoint Security Solutions☆12Updated 2 months ago
- Enumerate the Domain for Readable and Writable Shares☆18Updated 2 months ago
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆26Updated 3 months ago
- SAM Dumping in C#☆48Updated 3 months ago
- Extract registry and NTDS secrets from local or remote disk images☆40Updated last month
- Leveraging AWS Lambda Function URLs for C2 Redirection☆32Updated last year
- Convert an LDIF file to JSON files ingestible by BloodHound☆42Updated last month
- PowerSploit - A PowerShell Post-Exploitation Framework☆42Updated last month
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- My BloodHound custom queries☆23Updated 2 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆32Updated 2 years ago
- ☆34Updated 2 months ago
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆29Updated 5 years ago
- Modified version of PEAS client for offensive operations☆41Updated 2 years ago
- Items related to the RedELK workshop given at security conferences☆29Updated last year
- SACL Scanner is a tool designed to scan and analyze SACLs.☆38Updated 3 months ago
- Federated Office365 user enumeration based on correlated response trend analysis☆51Updated 3 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆55Updated 3 years ago
- Aggressor script that gets the latest commands from CobaltStrikes web site and creates an aggressor script based on tool options.☆21Updated 3 years ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆74Updated 2 years ago
- Tool to aid in dumping LSASS process remotely☆38Updated 9 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Check the Domain for Local Admin Access☆14Updated 2 months ago