p0dalirius / pyLAPS
Python setter/getter for property ms-Mcs-AdmPwd used by LAPS.
☆78Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for pyLAPS
- ☆151Updated 2 weeks ago
- ☆36Updated last month
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆166Updated last year
- Determine if the WebClient Service (WebDAV) is running on a remote system☆123Updated 8 months ago
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆36Updated 7 months ago
- Static standalone binaries for Linux and Windows (x64) of Python offensive tools. Compiled using PyInstaller, Docker for Windows, WSL2, a…☆96Updated 2 years ago
- ADCS cert template modification and ACL enumeration☆129Updated last year
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆119Updated 3 years ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆78Updated 7 months ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆82Updated last year
- The ldapconsole script allows you to perform custom LDAP requests to a Windows domain.☆61Updated 3 months ago
- ☆112Updated last year
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆78Updated 2 years ago
- Some scripts to support with importing large datasets into BloodHound☆78Updated 11 months ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆147Updated 3 weeks ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆80Updated 6 months ago
- ACL abuse swiss-knife☆117Updated last year
- Get Fine Grained Password Policy☆65Updated 6 months ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 2 years ago
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆78Updated 2 months ago
- Secretsdump C# version only supporting local (live) operation☆47Updated last year
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆48Updated 5 months ago
- ☆143Updated 8 months ago
- A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure…☆31Updated last year
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆94Updated 5 months ago
- Powershell version of SharpGPOAbuse☆70Updated 3 years ago
- A Python POC for CRED1 over SOCKS5☆134Updated last month
- ☆65Updated last year
- SeRestorePrivilege to SYSTEM☆79Updated 3 years ago