kh4sh3i / exchange-penetration-testingLinks
The great Microsoft exchange hack: A penetration tester’s guide (exchange penetration testing)
☆108Updated last month
Alternatives and similar repositories for exchange-penetration-testing
Users that are interested in exchange-penetration-testing are comparing it to the libraries listed below
Sorting:
- Find Microsoft Exchange instance for a given domain and identify the exact version☆185Updated 2 years ago
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆98Updated 2 years ago
- Docker network containing many vulnerable targets for practicing Red Teaming concepts (initial access, priv esc, persistence, lateral, C2…☆84Updated 2 years ago
- A cheatsheet for NetExec☆131Updated last month
- A python script to dump files and folders remotely from a Windows SMB share.☆227Updated 5 months ago
- Azure Service Subdomain Enumeration☆62Updated 10 months ago
- Everything and anything related to password spraying☆142Updated last year
- Lord Of Active Directory - automatic vulnerable active directory on AWS☆147Updated last year
- ☆92Updated last year
- A python script to extract information from a Microsoft Remote Desktop Web Access (RDWA) application☆106Updated 5 months ago
- ☆99Updated 3 years ago
- Simple python which takes FirstName and LastName to generate possible AD Usernames. Usefull for OSCP, Labs...☆23Updated 5 months ago
- Password spraying tool and Bloodhound integration☆237Updated 6 months ago
- ☆55Updated last year
- Repository with quick triggers to help during Pentest in an Active Directory environment.☆44Updated 8 months ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆46Updated 2 years ago
- Spoofcheck☆39Updated last month
- Repository of CVE found by OCD people☆77Updated 3 weeks ago
- Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the w…☆132Updated last year
- linikatz is a tool to attack AD on UNIX☆148Updated last year
- Crackmapexec custom scripts used in my internal pentests.☆24Updated last year
- smbcrawler is no-nonsense tool that takes credentials and a list of hosts and 'crawls' (or 'spiders') through those shares☆167Updated 3 months ago
- ☆93Updated 4 years ago
- CVE-2023-20198 Exploit PoC☆52Updated last year
- KnowsMore is a swiss army knife tool for pentesting Microsoft Active Directory (NTLM Hashes, BloodHound, NTDS and DCSync).☆253Updated last month
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆75Updated last year
- LDAP enumeration tool implemented in Python3☆225Updated last month
- ElasticSearch exploit and Pentesting guide for penetration tester☆29Updated 2 years ago
- Custom scan profiles for use with Burp Suite Pro☆144Updated last year
- A Python based ingestor for BloodHound☆84Updated 2 years ago