knavesec / Max
Maximizing BloodHound. Max is a good boy.
☆502Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for Max
- Python version of the C# tool for "Shadow Credentials" attacks☆611Updated this week
- Bypassing Kerberoast Detections with Modified KDC Options and Encryption Types☆372Updated last year
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆452Updated 2 years ago
- ☆617Updated last year
- Kerberoast with ACL abuse capabilities☆354Updated 3 weeks ago
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆377Updated 7 months ago
- Dump NTDS with golden certificates and UnPAC the hash☆623Updated 8 months ago
- Password spraying tool and Bloodhound integration☆212Updated last year
- A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) wit…☆493Updated 8 months ago
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆295Updated 2 years ago
- Password spraying and bruteforcing tool for Active Directory Domain Services☆350Updated 3 weeks ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆704Updated 11 months ago
- Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, …☆814Updated last week
- ☆735Updated 2 years ago
- Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.☆480Updated last year
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆750Updated last year
- Proof-of-concept obfuscation toolkit for C# post-exploitation tools☆413Updated 2 years ago
- FindUncommonShares is a Python script allowing to quickly find uncommon shares in vast Windows Domains, and filter by READ or WRITE acces…☆389Updated this week
- Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket☆496Updated 2 years ago
- Retrieve LAPS password from LDAP☆384Updated 3 years ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆573Updated 4 months ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆216Updated 2 years ago
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆767Updated 3 years ago
- ☆400Updated 11 months ago
- A User Impersonation tool - via Token or Shellcode injection☆403Updated 2 years ago
- Spray365 makes spraying Microsoft accounts (Office 365 / Azure AD) easy through its customizable two-step password spraying approach. The…☆343Updated 2 years ago
- AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with…☆291Updated last year
- Partial python implementation of SharpGPOAbuse☆363Updated 9 months ago
- ☆350Updated 3 years ago