ropnop / go-windapsearch
Utility to enumerate users, groups and computers from a Windows domain through LDAP queries
☆378Updated 4 years ago
Alternatives and similar repositories for go-windapsearch
Users that are interested in go-windapsearch are comparing it to the libraries listed below
Sorting:
- Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket☆537Updated 2 years ago
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆778Updated 2 years ago
- Active Directory ACL exploitation with BloodHound☆724Updated 3 years ago
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆851Updated 3 years ago
- Standalone binaries for Linux/Windows of Impacket's examples☆729Updated last year
- Tools for Kerberos PKINIT and relaying to AD CS☆743Updated 4 months ago
- Active Directory Integrated DNS dumping by any authenticated user☆1,000Updated last month
- Check for LDAP protections regarding the relay of NTLM authentication☆493Updated 5 months ago
- linikatz is a tool to attack AD on UNIX☆557Updated last year
- Dumping LAPS from Python☆267Updated 2 years ago
- Exchange privilege escalations to Active Directory☆762Updated 2 years ago
- PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as w…☆1,001Updated 11 months ago
- Tool to audit and attack LAPS environments☆864Updated 7 years ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆623Updated 10 months ago
- ☆682Updated 3 months ago
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆275Updated last year
- LDAP library for auditing MS AD☆417Updated last month
- ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping …☆960Updated 2 months ago
- In-depth ldap enumeration utility☆471Updated last week
- Kerberoast with ACL abuse capabilities☆453Updated 4 months ago
- "Golden" certificates☆677Updated 8 months ago
- Bypass for PowerShell Constrained Language Mode☆390Updated 3 years ago
- ☆391Updated 9 months ago
- Kerberos unconstrained delegation abuse toolkit☆1,288Updated 3 months ago
- Partial python implementation of SharpGPOAbuse☆421Updated last year
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆766Updated last year
- Use SE_BACKUP_NAME/SeBackupPrivilege to access objects you shouldn't have access to☆358Updated 11 years ago
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆305Updated 2 years ago
- Dump Azure AD Connect credentials for Azure AD and Active Directory☆668Updated 6 months ago
- Recover the default privilege set of a LOCAL/NETWORK SERVICE account☆614Updated 5 years ago