nettitude / MalSCCM
☆246Updated last year
Alternatives and similar repositories for MalSCCM:
Users that are interested in MalSCCM are comparing it to the libraries listed below
- GolenGMSA tool for working with GMSA passwords☆145Updated last year
- ☆151Updated 2 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆122Updated 3 years ago
- ☆159Updated 5 months ago
- OPSEC safe Kerberoasting in C#☆191Updated 2 years ago
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆229Updated 3 years ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆175Updated 2 years ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆256Updated last year
- Koppeling x Metatwin x LazySign☆210Updated 3 years ago
- Beacon Object File & C# project to check LDAP signing☆189Updated 8 months ago
- Modular C# framework to exfiltrate loot over secure and trusted channels.☆126Updated 3 years ago
- A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.☆298Updated 2 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆137Updated last year
- ☆98Updated 3 years ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆153Updated 2 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆172Updated 2 years ago
- ADCS cert template modification and ACL enumeration☆136Updated last year
- AzureC2Relay is an Azure Function that validates and relays Cobalt Strike beacon traffic by verifying the incoming requests based on a Co…☆220Updated 4 years ago
- Run Powershell without software restrictions.☆286Updated 3 years ago
- Simple C# implementation of PowerUpSQL☆95Updated 9 months ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆184Updated 2 years ago
- ☆117Updated last month
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆120Updated 3 years ago
- C# version of Powermad☆165Updated last year
- This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR …☆257Updated 2 years ago
- Agressor script that lists available Cobalt Strike beacon commands and colors them based on their type☆205Updated last year
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆329Updated last year
- Powershell version of SharpGPOAbuse☆75Updated 3 years ago
- Identify the attack paths in BloodHound breaking your AD tiering☆320Updated 2 years ago
- PoC to coerce authentication from Windows hosts using MS-WSP☆236Updated last year