roobixx / EventLogForRedTeams
Simple PoC from Malicious Payload Injection from Windows Event Log Entry
☆27Updated 2 years ago
Alternatives and similar repositories for EventLogForRedTeams:
Users that are interested in EventLogForRedTeams are comparing it to the libraries listed below
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆88Updated last year
- ☆44Updated 9 months ago
- ☆37Updated last year
- Federated Office365 user enumeration based on correlated response trend analysis☆51Updated 2 years ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- BloodCheck enables Red and Blue Teams to manage multiple Neo4j databases and run Cypher queries against a BloodHound dataset.☆17Updated 3 years ago
- ☆71Updated last year
- C# version of NTLMRawUnHide☆72Updated 2 years ago
- ☆82Updated 2 years ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆90Updated 11 months ago
- Updated version of PowerDNS by @domchell. Adds support for transfers over DNS A records and a few other useful features.☆83Updated 2 years ago
- Automation of Active Directory penetration testing tasks on top of BloodHound CE☆34Updated last year
- ☆58Updated last week
- Abuse Azure API permissions for red teaming☆66Updated 2 years ago
- Retrieve AD accounts description and search for password in it☆83Updated 2 years ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆122Updated 3 years ago
- Get Fine Grained Password Policy☆70Updated last week
- Living Off the Foreign Land setup scripts☆67Updated last month
- Leveraging AWS Lambda Function URLs for C2 Redirection☆31Updated last year
- ☆35Updated 3 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆55Updated 3 years ago
- My BloodHound custom queries☆23Updated 2 years ago
- PowerShell scripts to create sandboxed or vulnerable environments using HyperV and AutomatedLab☆80Updated 2 weeks ago
- This script analyzes the DCSync output file from several tools (such as Mimikatz, Secretsdump and SharpKatz...)☆43Updated last month
- An Ansible collection that installs an ADFS deployment with optional configurations.☆29Updated 4 months ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆92Updated 2 years ago
- blame Huy☆42Updated 4 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆42Updated last month