A small script that automates Entra ID persistence with Windows Hello For Business key
☆65Feb 16, 2025Updated last year
Alternatives and similar repositories for deviceCode2WinHello
Users that are interested in deviceCode2WinHello are comparing it to the libraries listed below
Sorting:
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆14Jul 13, 2022Updated 3 years ago
- Parser and reconciliation tooling for large Active Directory environments.☆33Feb 18, 2025Updated last year
- Table of AD and Azure assets and whether they belong to Tier Zero☆26Sep 12, 2023Updated 2 years ago
- Switch to JuicyPotato! https://github.com/decoder-it/juicy-potato☆12Feb 8, 2020Updated 6 years ago
- ☆33Jan 23, 2025Updated last year
- ☆88Jul 28, 2022Updated 3 years ago
- Proof-of-Concept to evade auditd by tampering via ptrace☆19Aug 3, 2023Updated 2 years ago
- Konstellation is a configuration-driven CLI tool to enumerate cloud resources and store the data into Neo4j.☆33Feb 15, 2026Updated last week
- Bounces when a fish bites - Evilginx database monitoring with exfiltration automation☆182Jun 9, 2024Updated last year
- Internal Monologue BOF☆79Dec 28, 2024Updated last year
- TokenCert☆102Nov 15, 2024Updated last year
- A PoC for Early Cascade process injection technique.☆211Jan 30, 2025Updated last year
- Red Team Assessment Platform - reporting, visualizations, and analytics for cybersecurity red teams☆34Jan 27, 2026Updated last month
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆57Jun 2, 2024Updated last year
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆30Jan 30, 2025Updated last year
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆387Feb 23, 2024Updated 2 years ago
- tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"☆178Nov 26, 2021Updated 4 years ago
- C# port of the Get-AppLockerPolicy PS cmdlet☆100Dec 8, 2022Updated 3 years ago
- ☆121Nov 21, 2024Updated last year
- BOF to decrypt Signal Desktop chat logs☆71Feb 20, 2025Updated last year
- Hybrid AD utilities for ROADtools☆108May 25, 2025Updated 9 months ago
- A Bug Bounty Platform that allows hunters to issue commands over a geo-distributed cluster. The ideal user is someone who is attempting t…☆49Oct 15, 2024Updated last year
- ☆190Nov 21, 2024Updated last year
- BOF for C2 framework☆44Nov 9, 2024Updated last year
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆160Mar 1, 2024Updated last year
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆346Nov 19, 2024Updated last year
- psexecsvc - a python implementation of PSExec's native service implementation☆237Feb 11, 2025Updated last year
- Automated (kinda) deployment of MalRDP infrastructure with Terraform & Ansible☆12Sep 15, 2023Updated 2 years ago
- Watches the Downloads folder for any new files and inserts it into Nemesis for analysis.☆15Feb 29, 2024Updated 2 years ago
- ☆17Jan 9, 2025Updated last year
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆362Jan 29, 2026Updated 3 weeks ago
- Abusing Azure services over C2☆368Jan 20, 2026Updated last month
- Dynamically resolve API function addresses at runtime in a secure manner.☆72Nov 11, 2025Updated 3 months ago
- Post-Ex BOF tooling for Hannibal☆24Nov 20, 2024Updated last year
- Azure DevOps Services Attack Toolkit☆150Mar 15, 2025Updated 11 months ago
- Dump processes over WMI with MSFT_MTProcess☆84Feb 13, 2026Updated 2 weeks ago
- Your Skyfall Infrastructure Pack☆89Jan 25, 2026Updated last month
- BloodHound Attack Research Kit☆586Mar 18, 2025Updated 11 months ago
- 🌩️ Collection of BloodHound queries for Azure☆84Jan 7, 2025Updated last year