m0n1x90 / ADReaperLinks
A fast enumeration tool for Windows Active Directory Pentesting written in Go
☆279Updated 2 years ago
Alternatives and similar repositories for ADReaper
Users that are interested in ADReaper are comparing it to the libraries listed below
Sorting:
- Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.☆492Updated 2 years ago
- AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with…☆303Updated 2 years ago
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆281Updated 3 years ago
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆474Updated 2 years ago
- Bypassing Kerberoast Detections with Modified KDC Options and Encryption Types☆399Updated 5 months ago
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆401Updated 8 months ago
- More examples using the Impacket library designed for learning purposes.☆265Updated 2 years ago
- LDAP enumeration tool implemented in Python3☆224Updated 3 months ago
- FindUncommonShares is a Python script allowing to quickly find uncommon shares in vast Windows Domains, and filter by READ or WRITE acces…☆421Updated 7 months ago
- ☆236Updated 9 months ago
- ☆101Updated 3 years ago
- A python script to dump files and folders remotely from a Windows SMB share.☆229Updated 7 months ago
- A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.☆443Updated 2 years ago
- ☆348Updated 2 years ago
- Password spraying tool and Bloodhound integration☆244Updated 8 months ago
- Run Powershell without software restrictions.☆284Updated 4 years ago
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆398Updated last month
- Check for LDAP protections regarding the relay of NTLM authentication☆507Updated 9 months ago
- ☆413Updated last year
- Dumping LAPS from Python☆276Updated 2 years ago
- Lord Of Active Directory - automatic vulnerable active directory on AWS☆147Updated last year
- Find Microsoft Exchange instance for a given domain and identify the exact version☆185Updated 2 years ago
- Dump NTDS with golden certificates and UnPAC the hash☆635Updated last year
- Shellcode launcher for AV bypass☆217Updated last year
- ☆466Updated 2 years ago
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆430Updated 8 months ago
- This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR …☆257Updated 3 years ago
- User enumeration and password bruteforce on Azure, ADFS, OWA, O365, Teams and gather emails on Linkedin☆453Updated 2 months ago
- XLL Phishing Tradecraft☆424Updated 3 years ago
- Windows for Red Teamers☆126Updated 3 years ago