horizon3ai / CVE-2021-38647
Proof on Concept Exploit for CVE-2021-38647 (OMIGOD)
☆235Updated 3 years ago
Alternatives and similar repositories for CVE-2021-38647:
Users that are interested in CVE-2021-38647 are comparing it to the libraries listed below
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆271Updated 3 years ago
- ☆291Updated 7 months ago
- Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket☆518Updated 2 years ago
- official repo for the AdHuntTool (part of the old RedTeamCSharpScripts repo)☆230Updated 2 years ago
- Dumping LAPS from Python☆260Updated 2 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆221Updated 3 years ago
- ☆506Updated 3 years ago
- ☆406Updated 2 years ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆353Updated 4 years ago
- ☆213Updated 2 years ago
- A fast enumeration tool for Windows Active Directory Pentesting written in Go☆279Updated 2 years ago
- scan for NTLM directories☆354Updated 7 months ago
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆259Updated last year
- AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with…☆297Updated last year
- MS-FSRVP coercion abuse PoC☆282Updated 3 years ago
- Office 365 and Exchange Enumeration☆183Updated 5 years ago
- Kerberoast with ACL abuse capabilities☆406Updated 2 months ago
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆388Updated last month
- ADCS abuser☆270Updated 2 years ago
- A robust Red Team proxy written in Go.☆159Updated 3 years ago
- Convert shellcode into different formats!☆347Updated 2 years ago
- A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.☆438Updated last year
- A Cobalt Strike tool to audit Active Directory user accounts for weak, well known or easy guessable passwords.☆432Updated 2 years ago
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆199Updated 2 months ago
- ☆225Updated 3 months ago
- Password spraying and bruteforcing tool for Active Directory Domain Services☆358Updated 3 months ago
- ☆404Updated last year
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆303Updated 2 years ago
- Password spraying tool and Bloodhound integration☆221Updated last month
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆384Updated 10 months ago