nyxgeek / autodiscover_enumView external linksLinks
time-based user enum via Basic Auth in Azure against Autodiscover
☆33Oct 3, 2024Updated last year
Alternatives and similar repositories for autodiscover_enum
Users that are interested in autodiscover_enum are comparing it to the libraries listed below
Sorting:
- Find world writable directories that contain a .exe or .dll file☆13Aug 31, 2021Updated 4 years ago
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆13Jul 16, 2025Updated 6 months ago
- A Python POC for CRED1 over SOCKS5☆164Oct 5, 2024Updated last year
- A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (D…☆65Jan 21, 2026Updated 3 weeks ago
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆345Nov 19, 2024Updated last year
- Tool for pivoting over SMB pipes☆16Jul 20, 2019Updated 6 years ago
- A Windows tool that converts LDIF files to BloodHound CE☆25Dec 20, 2025Updated last month
- PowerShell scripts to create sandboxed or vulnerable environments using HyperV and AutomatedLab☆93Jul 22, 2025Updated 6 months ago
- AI-based Ludus range configuration builder☆29May 6, 2025Updated 9 months ago
- Abuse leaked token handles.☆134Dec 14, 2023Updated 2 years ago
- ☆118Nov 21, 2024Updated last year
- ☆180Feb 3, 2021Updated 5 years ago
- An App Domain Manager Injection DLL PoC on steroids☆210Dec 14, 2023Updated 2 years ago
- Situational Awareness script to identify how and where to run implants☆67Dec 6, 2024Updated last year
- ☆160Jan 27, 2025Updated last year
- TokenCert☆102Nov 15, 2024Updated last year
- Generate Proxy DLLs in Rust☆47Sep 2, 2025Updated 5 months ago
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆273Dec 27, 2024Updated last year
- Robust Cobalt Strike shellcode loader with multiple advanced evasion features☆199Apr 21, 2025Updated 9 months ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆155Nov 2, 2025Updated 3 months ago
- adws enumeration bof☆162Oct 2, 2025Updated 4 months ago
- Generate AES128/256 Kerberos keys for an AD account using a plaintext password and Python3☆81Jun 1, 2022Updated 3 years ago
- A C# project that builds a Web Application which redirects all HTTPS☆26Feb 11, 2025Updated last year
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆14Jul 13, 2022Updated 3 years ago
- A proof of concept AMSI & ETW bypass using trampolines for hooking and modifying execution flow☆18Jun 26, 2025Updated 7 months ago
- ☆20Sep 6, 2025Updated 5 months ago
- Offensive toolkit and BloodHound graph creator for DPAPI blobs and master key files☆14Jan 10, 2026Updated last month
- Simple reverse ICMP shell☆14Apr 30, 2024Updated last year
- A BloodHound collector for Microsoft Configuration Manager☆363Jul 7, 2025Updated 7 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆212Oct 19, 2024Updated last year
- ☆53Oct 10, 2023Updated 2 years ago
- Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion☆99Jul 9, 2025Updated 7 months ago
- ☆106Jul 31, 2024Updated last year
- A simple rpc2socks alternative in pure Go.☆31Jul 8, 2024Updated last year
- Another version of .NET loader provides capabilities of bypassing ETW and AMSI, utilizing VEH for syscalls and loading .NET assemblies☆50Jul 6, 2025Updated 7 months ago
- Tool to discover Resource-Based Constrained Delegation attack paths in Active Directory environments☆126Aug 10, 2021Updated 4 years ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆372Sep 20, 2025Updated 4 months ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆259May 10, 2023Updated 2 years ago
- Bypass Credential Guard by patching WDigest.dll using only NTAPI functions☆265Apr 8, 2025Updated 10 months ago