kh4sh3i / exchange-penetration-testingLinks
The great Microsoft exchange hack: A penetration tester’s guide (exchange penetration testing)
☆117Updated 3 months ago
Alternatives and similar repositories for exchange-penetration-testing
Users that are interested in exchange-penetration-testing are comparing it to the libraries listed below
Sorting:
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆112Updated 2 years ago
- A python script to dump files and folders remotely from a Windows SMB share.☆227Updated 9 months ago
- Find Microsoft Exchange instance for a given domain and identify the exact version☆185Updated 2 years ago
- Lord Of Active Directory - automatic vulnerable active directory on AWS☆147Updated 2 years ago
- ☆54Updated last year
- ElasticSearch exploit and Pentesting guide for penetration tester☆30Updated 3 years ago
- Docker network containing many vulnerable targets for practicing Red Teaming concepts (initial access, priv esc, persistence, lateral, C2…☆85Updated 2 years ago
- Everything and anything related to password spraying☆150Updated last year
- Simple python which takes FirstName and LastName to generate possible AD Usernames. Usefull for OSCP, Labs...☆24Updated 9 months ago
- ☆99Updated 3 years ago
- Azure Service Subdomain Enumeration☆67Updated last year
- A python script to extract information from a Microsoft Remote Desktop Web Access (RDWA) application☆110Updated last month
- Password spraying tool and Bloodhound integration☆247Updated 10 months ago
- A Python based ingestor for BloodHound☆85Updated 3 years ago
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆76Updated last year
- KnowsMore is a swiss army knife tool for pentesting Microsoft Active Directory (NTLM Hashes, BloodHound, NTDS and DCSync).☆260Updated last month
- ☆91Updated 2 years ago
- Automated exploitation of MSSQL servers at scale☆128Updated last week
- A cheatsheet for NetExec☆153Updated 5 months ago
- Repository with quick triggers to help during Pentest in an Active Directory environment.☆45Updated 3 months ago
- ☆38Updated 4 years ago
- Spoofcheck☆45Updated 5 months ago
- Low and slow password spraying tool, designed to spray on an interval over a long period of time☆209Updated 3 weeks ago
- Python script to enumerate valid Microsoft 365 domains, retrieve tenant name, and check for an MDI instance.☆204Updated last year
- Some of my personal notes that helped me pass the OSWP☆58Updated 3 years ago
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.☆155Updated 9 months ago
- Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the w…☆138Updated 2 years ago
- LDAP enumeration tool implemented in Python3☆223Updated 5 months ago
- An offensive security tool used to enumerate and spray passwords for O365 accounts on both Managed and Federated AD services.☆49Updated 2 years ago
- WPXStrike is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticals…☆67Updated last year