p0dalirius / GhostSPN
List accounts with Service Principal Names (SPN) not linked to active dns records in an Active Directory Domain.
☆17Updated 2 months ago
Alternatives and similar repositories for GhostSPN:
Users that are interested in GhostSPN are comparing it to the libraries listed below
- A Python script to find tenant id an region from a list of domain names.☆14Updated 2 months ago
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆30Updated last year
- Cisco CallManager User Enumeration☆15Updated 2 years ago
- ☆18Updated last year
- Utility to analyse, ingest and push out credentials from common data sources during an internal penetration test.☆19Updated 2 years ago
- Automatically extracts NT and LM hashes from Windows memory dumps based on volatility.☆24Updated last year
- Identify binaries with Authenticode digital signatures signed to an internal CA/domain☆39Updated last year
- Smuggle a file to a user's browser☆19Updated 3 years ago
- ☆21Updated last year
- ☆13Updated 3 months ago
- Scripts to interact with Microsoft Graph APIs☆36Updated 5 months ago
- The Totally Legit Authentication Dialog☆12Updated last year
- Script written in python to perform Resource-Based Constrained Delegation (RBCD) attack by leveraging Impacket toolkit.☆20Updated 3 years ago
- Create PDFs with HTML smuggling attachments that save on opening the document.☆29Updated last year
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- Decode the values of common Windows properties such as userAccountControl and sAMAccountType.☆21Updated last year
- C# project to Reflectively load .Net assemblies in memory☆17Updated 9 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Detailed explanation of Windows cryptographic algorithms, with examples and schemes.☆18Updated 4 months ago
- A C# port of https://gist.github.com/adamsvoboda/8f29e09d74b73e1dec3f9049c4358e80☆20Updated 2 weeks ago
- Multithreaded spraying of a password on all accounts of a domain.☆20Updated 2 months ago
- Yet, Another Packer/Loader☆25Updated 2 years ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 9 months ago
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆13Updated 2 years ago
- ☆19Updated last year
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Proof of Concept in Go from Secureworks' research on Azure Active Directory Brute-Force Attacks. Inspired by @treebuilder's POC on PowerS…☆13Updated 3 years ago
- Drakus allows you to monitor the artifacts and domains used in a Red Team exercise to see if they have been uploaded to certain online ma…☆13Updated 4 years ago
- c# reverse shell poc☆26Updated 6 years ago
- A collection of random small Aggressor snippets that don't warrant their own repo☆23Updated 2 years ago