nccgroup / SteppingStonesLinks
A Red Team Activity Hub
☆220Updated last month
Alternatives and similar repositories for SteppingStones
Users that are interested in SteppingStones are comparing it to the libraries listed below
Sorting:
- Azure mindmap for penetration tests☆188Updated last year
- SoaPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) from Linux hosts.☆241Updated 6 months ago
- Slides and Codes used for the workshop Red Team Infrastructure Automation☆194Updated last year
- Lord Of Active Directory - automatic vulnerable active directory on AWS☆147Updated last year
- RedInfraCraft automates the deployment of powerful red team infrastructures! It streamlines the setup of C2s, makes it easy to create adv…☆210Updated 5 months ago
- linikatz is a tool to attack AD on UNIX☆150Updated last year
- Everything and anything related to password spraying☆145Updated last year
- peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.☆208Updated 5 months ago
- Modular cross-platform Microsoft Graph API (Entra, o365, and Intune) enumeration and exploitation toolkit☆150Updated 9 months ago
- ☆106Updated last year
- An Ansible role that install the Adaptix C2 server and/or client on Debian based hosts☆165Updated 3 months ago
- A community-driven collection of BloodHound queries☆138Updated this week
- Low and slow password spraying tool, designed to spray on an interval over a long period of time☆203Updated 4 months ago
- ☆186Updated 9 months ago
- ☆171Updated 5 months ago
- ☆195Updated 3 months ago
- Bounces when a fish bites - Evilginx database monitoring with exfiltration automation☆180Updated last year
- ☆161Updated last year
- LudusHound is a tool for red and blue teams that transforms BloodHound data into a fully functional, Active Directory replica environment…☆299Updated last week
- ☆83Updated last month
- A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO☆188Updated last year
- Azure DevOps Services Attack Toolkit☆298Updated 5 months ago
- SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.☆241Updated 3 months ago
- Azure AD cheatsheet for the CARTP course☆132Updated 3 years ago
- Utility to craft HTML or SVG smuggled files for Red Team engagements☆244Updated last year
- Generate and Manage KeyCredentialLinks☆164Updated last month
- Continuous password spraying tool☆192Updated 6 months ago
- A Azure Exploitation Toolkit for Red Team & Pentesters☆164Updated 2 years ago
- Azure Post Exploitation Framework☆213Updated last week
- winPEAS, but for Active Directory☆160Updated 5 months ago