ly4k / Pachine
Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)
☆272Updated 3 years ago
Alternatives and similar repositories for Pachine:
Users that are interested in Pachine are comparing it to the libraries listed below
- ☆508Updated 3 years ago
- Python implementation for PetitPotam☆197Updated 3 years ago
- Python implementation for PrintNightmare (CVE-2021-1675 / CVE-2021-34527)☆185Updated 3 years ago
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆417Updated 2 months ago
- Local privilege escalation from SeImpersonatePrivilege using EfsRpc.☆310Updated 2 years ago
- ☆290Updated 8 months ago
- MS-FSRVP coercion abuse PoC☆287Updated 3 years ago
- ☆406Updated 2 years ago
- ☆446Updated 2 years ago
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆207Updated 3 months ago
- Python tool to Check running WebClient services on multiple targets based on @leechristensen☆270Updated 3 years ago
- Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket☆528Updated 2 years ago
- Bypassing Kerberoast Detections with Modified KDC Options and Encryption Types☆378Updated 2 years ago
- Amplify network visibility from multiple POV of other hosts☆301Updated 11 months ago
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆265Updated last year
- ☆763Updated 2 years ago
- Cobalt Strike Aggressor Script that Performs System/AV/EDR Recon☆325Updated 2 years ago
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆458Updated 2 years ago
- official repo for the AdHuntTool (part of the old RedTeamCSharpScripts repo)☆230Updated 2 years ago
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆385Updated 11 months ago
- ☆343Updated 2 years ago
- ADCS abuser☆275Updated 2 years ago
- Proof-of-concept tools for my AD Forest trust research☆204Updated 9 months ago
- C# Lsass parser☆287Updated 3 years ago
- Shellcode launcher for AV bypass☆215Updated last year
- Collection of remote authentication triggers in C#☆477Updated 10 months ago
- ☆365Updated 3 years ago
- This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR …☆257Updated 2 years ago
- AD ACL abuse☆288Updated this week
- Persistence by writing/reading shellcode from Event Log☆367Updated 2 years ago