optiv / evilginx2Links
Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
☆12Updated 4 years ago
Alternatives and similar repositories for evilginx2
Users that are interested in evilginx2 are comparing it to the libraries listed below
Sorting:
- pysnaffler☆110Updated last month
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆98Updated 2 years ago
- A Python POC for CRED1 over SOCKS5☆164Updated last year
- Automatically create an operation log of your shell! Supports Linux (Bash/Zsh) and Windows (PowerShell/CMD).☆36Updated 3 weeks ago
- tool for enumeration & bulk download of sensitive files found in SharePoint environments☆79Updated 10 months ago
- Convert an LDIF file to JSON files ingestible by BloodHound☆45Updated 10 months ago
- ☆74Updated 7 months ago
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆39Updated 3 weeks ago
- Find Inbound Email Domains☆35Updated 2 years ago
- Living off the land searches for explorer and sharepoint☆92Updated 2 months ago
- Efflanrs - GUI for Snaffler Output☆27Updated last year
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆119Updated 6 months ago
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆41Updated last year
- A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure…☆50Updated 6 months ago
- Leveraging AWS Lambda Function URLs for C2 Redirection☆45Updated 2 years ago
- Red Team "Drop and Run" NAC (802.1x) Bypass☆75Updated 2 years ago
- Goscan is a fast TCP scanner I created while learning Golang.☆52Updated 3 years ago
- A framework for OAuth 2.0 device code authentication grant flow phishing☆46Updated 2 years ago
- ☆44Updated last year
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated 2 years ago
- ☆35Updated 6 months ago
- Enumerate domain machine accounts and perform pre2k password spraying.☆69Updated 2 years ago
- A tool for carrying out brute force attacks against Office 365, with built in IP rotation use AWS gateways.☆80Updated last year
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆79Updated last year
- A small script that automates Entra ID persistence with Windows Hello For Business key☆65Updated 11 months ago
- ☆57Updated 8 months ago
- ☆31Updated 2 weeks ago
- ☆65Updated last year
- ☆42Updated 8 months ago
- 🌩️ Collection of BloodHound queries for Azure☆82Updated last year