sabrinalupsan / pentesting-azure-ad
A cheatsheet of commands used to pass the CARTP (Certified Azure Red Team Professional) exam.
☆14Updated last year
Alternatives and similar repositories for pentesting-azure-ad:
Users that are interested in pentesting-azure-ad are comparing it to the libraries listed below
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- ☆43Updated 6 months ago
- Azure pentesting reference for Altered Security Lab☆24Updated 2 years ago
- Simple PoC from Malicious Payload Injection from Windows Event Log Entry☆27Updated 2 years ago
- ☆52Updated last year
- A small script that automates Entra ID persistence with Windows Hello For Business key☆49Updated 6 months ago
- GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstal…☆29Updated last month
- Apuntes Pentesting a ActiveDirectory PentesterAcademy☆13Updated 5 years ago
- 🌩️ Collection of BloodHound queries for Azure☆47Updated last week
- Abuse Azure API permissions for red teaming☆61Updated last year
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆72Updated 2 months ago
- Password spraying tool for Microsoft Online accounts (Entra/Azure/O365)☆29Updated 9 months ago
- Red Teaming & Active Directory Cheat Sheet.☆39Updated last year
- A PowerShell script designed to detect misconfigured Azure Storage Accounts that could potentially be exploited for privilege escalation …☆12Updated 8 months ago
- Enumerate the Domain for Readable and Writable Shares☆16Updated 7 months ago
- Windows Post-Exploitation tools wrapper☆11Updated 6 months ago
- ☆40Updated last year
- Deploy a phishing infrastructure on the fly.☆63Updated 3 weeks ago
- Get Fine Grained Password Policy☆66Updated 8 months ago
- A vSphere deployment of GOADv2 BETA Testing (v0.1)☆26Updated last year
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆36Updated 9 months ago
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆17Updated 3 months ago
- Scripts to interact with Microsoft Graph APIs☆32Updated 2 months ago
- An Ansible collection that installs an ADFS deployment with optional configurations.☆27Updated 3 weeks ago
- CIS Benchmark testing of Windows SIEM configuration☆44Updated last year
- ☆25Updated last year
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆35Updated last month