morRubin / NegoExRelay
☆88Updated 2 years ago
Alternatives and similar repositories for NegoExRelay:
Users that are interested in NegoExRelay are comparing it to the libraries listed below
- ☆71Updated last year
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆89Updated 10 months ago
- Get Fine Grained Password Policy☆68Updated 11 months ago
- ☆51Updated 2 months ago
- ☆44Updated last year
- SuperSharpShares is a tool designed to automate enumerating domain shares, allowing for quick verification of accessible shares by your a…☆73Updated 11 months ago
- Tooling related to the WAM Bam - Recovering Web Tokens From Office blog post☆124Updated 2 years ago
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆52Updated 10 months ago
- Slide decks and/or materials from conference presentations☆56Updated 2 years ago
- A Python POC for CRED1 over SOCKS5☆144Updated 5 months ago
- A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure…☆37Updated last month
- Leveraging AWS Lambda Function URLs for C2 Redirection☆31Updated last year
- Simple BOF to read the protection level of a process☆115Updated last year
- ☆57Updated 3 years ago
- ☆106Updated 11 months ago
- ForsHops☆87Updated last week
- Lateral Movement via the .NET Profiler☆79Updated 4 months ago
- Living Off the Foreign Land setup scripts☆67Updated last month
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆24Updated 2 months ago
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆91Updated 2 years ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆121Updated 3 years ago
- Enumerate Domain Users Without Authentication☆30Updated 2 months ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆54Updated 3 years ago
- Impacket pre-compiled binaries☆15Updated last year
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- Convert an LDIF file to JSON files ingestible by BloodHound☆41Updated 6 months ago
- pysnaffler☆91Updated 2 weeks ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆74Updated 2 years ago
- An old Windows workstations LPE for domain environments without LDAP signing/channel binding.☆32Updated 2 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆128Updated last year