idnahacks / AD_attack_defend_cheatsheet
A list of commands, tools and notes about enumerating and exploiting Active Directory and how to defend against these attacks
☆20Updated 3 years ago
Alternatives and similar repositories for AD_attack_defend_cheatsheet:
Users that are interested in AD_attack_defend_cheatsheet are comparing it to the libraries listed below
- ☆72Updated last year
- Find Inbound Email Domains☆22Updated last year
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆37Updated 11 months ago
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆87Updated last year
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 3 years ago
- ☆44Updated last month
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- Automation of Active Directory penetration testing tasks on top of BloodHound CE☆34Updated last year
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- Get Fine Grained Password Policy☆67Updated 10 months ago
- ☆25Updated last year
- ☆43Updated 7 months ago
- Convert ldapdomaindump to Bloodhound☆78Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆54Updated 3 years ago
- Living off the land searches for explorer and sharepoint☆57Updated 4 months ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- ☆52Updated last year
- A Couple of Python Scripts Leveraging MS365's GraphAPI to Send Custom Calendar Events / Emails from Cheap O365 Accounts☆17Updated 10 months ago
- Collection of tools to use with Azure Applications☆107Updated last year
- Azure pentesting reference for Altered Security Lab☆24Updated 3 years ago
- A small script that automates Entra ID persistence with Windows Hello For Business key☆54Updated 2 weeks ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- Convert an LDIF file to JSON files ingestible by BloodHound☆41Updated 5 months ago
- Custom queries list for BloodHound☆23Updated 6 months ago
- ☆12Updated 3 months ago
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10…☆34Updated 2 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆54Updated 2 years ago
- ☆47Updated 2 years ago