p0dalirius / MSRPRN-CoerceLinks
A python script to force authentication using MS-RPRN RemoteFindFirstPrinterChangeNotificationEx function (opnum 65).
☆30Updated last year
Alternatives and similar repositories for MSRPRN-Coerce
Users that are interested in MSRPRN-Coerce are comparing it to the libraries listed below
Sorting:
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆155Updated 3 months ago
- ☆94Updated last year
- CLI tool to interact with the BloodHound CE API☆66Updated last month
- The DCERPC only printerbug.py version☆201Updated 3 months ago
- Impacket pre-compiled binaries☆18Updated 2 years ago
- ☆159Updated 9 months ago
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆146Updated 6 months ago
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆136Updated last year
- ☆79Updated last year
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆45Updated last year
- Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆20Updated 3 years ago
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆34Updated 4 months ago
- A Python POC for CRED1 over SOCKS5☆164Updated last year
- ☆164Updated 3 months ago
- ☆104Updated 3 weeks ago
- An impacket-lite cli tool that combines many useful impacket functions using a single session.☆57Updated 3 weeks ago
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆119Updated 7 months ago
- ☆235Updated last year
- a port of privkit bof for havoc☆23Updated 2 years ago
- Local SYSTEM auth trigger for relaying☆168Updated 6 months ago
- The ldapconsole script allows you to perform custom LDAP requests to a Windows domain.☆66Updated 3 weeks ago
- Proof of concept for Kerberos Armoring abuse.☆78Updated 2 months ago
- A python tool to parse and describe the contents of a raw ntSecurityDescriptor structure.☆28Updated 5 months ago
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆82Updated last year
- ☆94Updated 2 months ago
- ☆216Updated last year
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆163Updated 3 months ago
- pysnaffler☆110Updated last month
- A C# utility for interacting with SCOM☆95Updated 2 months ago
- ☆198Updated 10 months ago