optiv / KnockKnock
Enumerate valid users within Microsoft Teams and OneDrive with clean output.
☆58Updated 4 months ago
Alternatives and similar repositories for KnockKnock:
Users that are interested in KnockKnock are comparing it to the libraries listed below
- ☆145Updated 11 months ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆86Updated last year
- ☆113Updated last year
- Lateral Movement☆122Updated last year
- A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.☆81Updated last year
- A Python POC for CRED1 over SOCKS5☆139Updated 3 months ago
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆101Updated last week
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆168Updated last year
- ☆52Updated last year
- Automated exploitation of MSSQL servers at scale☆104Updated this week
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆52Updated last month
- ☆74Updated 2 weeks ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆71Updated last year
- Goscan is a fast TCP scanner I created while learning Golang.☆52Updated 2 years ago
- ACL abuse swiss-knife☆118Updated last year
- PowerShell Reverse Shell☆61Updated last year
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆79Updated 4 months ago
- ShuckNT is the script of Shuck.sh online service for on-premise use. It is design to dowgrade, convert, dissect and shuck authentication …☆67Updated 3 months ago
- ☆43Updated 6 months ago
- Enumerate domain machine accounts and perform pre2k password spraying.☆64Updated last year
- ☆70Updated last year
- A tool for carrying out brute force attacks against Office 365, with built in IP rotation use AWS gateways.☆74Updated 7 months ago
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆73Updated 2 months ago
- ☆54Updated 2 months ago
- ☆25Updated last year
- Discord C2 Profile for Mythic☆26Updated 9 months ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆103Updated 9 months ago
- Living off the land searches for explorer and sharepoint☆54Updated 3 months ago