A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.
☆173Jul 31, 2025Updated 10 months ago
Alternatives and similar repositories for oauthseeker
Users that are interested in oauthseeker are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- GitLab Attack TOolkit☆34Apr 24, 2026Updated last month
- Random BOFs for LDAP tradecraft☆74Sep 9, 2025Updated 9 months ago
- A Ligolo-ng JavaScript agent working inside Chrome & Chromium-based browsers by leveraging Isolated Web Applications.☆130Mar 30, 2026Updated 2 months ago
- ☆200Nov 13, 2025Updated 7 months ago
- A small How-To on creating your own weaponized WSL file☆128Jul 23, 2025Updated 10 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆122Nov 21, 2024Updated last year
- Beacon Object File (BOF) to obtain Entra tokens via authcode flow.☆134Jan 17, 2026Updated 5 months ago
- A Python POC for CRED1 over SOCKS5☆171Oct 5, 2024Updated last year
- A tunneling toolkit enabling operators to move data from one place to another evasively.☆79May 8, 2026Updated last month
- Group Policy Objects manipulation and exploitation framework☆314Dec 7, 2025Updated 6 months ago
- Abusing Azure services over C2☆373Jan 20, 2026Updated 4 months ago
- FaceDancer is an exploitation tool aimed at creating hijackable, proxy-based DLLs by taking advantage of COM-based system DLL image loadi…☆440Apr 18, 2026Updated 2 months ago
- An alternative to the builtin clipboard feature in Cobalt Strike that adds the capability to enable/disable and dump the clipboard histor…☆112Apr 16, 2026Updated 2 months ago
- ☆237Oct 8, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ForsHops☆154Mar 25, 2025Updated last year
- Azure Post Exploitation Framework☆247Oct 27, 2025Updated 7 months ago
- ☆226Dec 17, 2025Updated 6 months ago
- PoC script to demonstrate collection of SCCM attack paths that can be viewed in BH with OpenGraph☆26Aug 2, 2025Updated 10 months ago
- TokenCert☆104Nov 15, 2024Updated last year
- Python script to leverage MSFT_MTProcess WMI class☆40Sep 17, 2025Updated 9 months ago
- ☆164May 5, 2025Updated last year
- Dump processes over WMI with MSFT_MTProcess☆85Feb 13, 2026Updated 4 months ago
- ☆166Apr 17, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit typ…☆53May 16, 2025Updated last year
- An HTA Application which builds Azure (Entra) Scenarios for Red Team Simulations☆63Aug 18, 2025Updated 10 months ago
- ☆140Nov 17, 2025Updated 7 months ago
- A C++ proof of concept demonstrating the exploitation of Windows Protected Process Light (PPL) by leveraging COM-to-.NET redirection and …☆335Mar 6, 2025Updated last year
- A tool designed for smuggling interactive command and control traffic through legitimate TURN servers hosted by reputable providers such …☆419Jun 9, 2026Updated last week
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆195Nov 27, 2024Updated last year
- ☆140Jan 16, 2025Updated last year
- Demo code JavaScript POC that tricks user into sending Windows hash to responder☆37Dec 12, 2025Updated 6 months ago
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆359Nov 19, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Lateral movement with DCOM DLL hijacking☆179Jul 4, 2025Updated 11 months ago
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆311Mar 28, 2026Updated 2 months ago
- Python utility that generates "imageless" QR codes in various formats☆140Aug 10, 2024Updated last year
- SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) through a SOCKS5 pr…☆202Jun 6, 2026Updated last week
- .NET Post-Exploitation Utility for Abusing Strong Explicit Certificate Mappings in ADCS☆152Feb 10, 2025Updated last year
- TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and …☆406Jan 23, 2025Updated last year
- Repository for the DEF CON 33 talk: Kill Chain Reloaded☆83Aug 3, 2025Updated 10 months ago