safebuffer / exchange-cves-scanner
Small tool to scan On-Premises Exchange servers, useful for analytical purposes and patch management
☆20Updated 2 years ago
Alternatives and similar repositories for exchange-cves-scanner:
Users that are interested in exchange-cves-scanner are comparing it to the libraries listed below
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆31Updated 2 years ago
- CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD☆68Updated 3 years ago
- Checks for signature requirements over LDAP☆94Updated 2 years ago
- Python script to exploit CVE-2022-22954 and then exploit CVE-2022-22960☆2Updated 2 years ago
- Convert ldapdomaindump to Bloodhound☆78Updated last year
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆39Updated 2 years ago
- User enumeration and password spraying tool for testing Azure AD☆68Updated 2 years ago
- Microsoft Exchange password spray tool with proxy support.☆40Updated 3 years ago
- A tool to exchange decryption keys for command and control (C2) beacons and implants through DNS records.☆39Updated 2 years ago
- Red Teaming & Active Directory Cheat Sheet.☆39Updated last year
- Tool for efficient directory enumeration☆55Updated 2 months ago
- Azure pentesting reference for Altered Security Lab☆24Updated 2 years ago
- ☆46Updated last year
- ☆29Updated 2 years ago
- ☆12Updated 2 years ago
- ☆52Updated last year
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- WhoAmI by asking the LDAP service on a domain controller.☆59Updated 2 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 2 years ago
- This vulnerability may allow an unauthenticated attacker with network access to the BIG-IP system through the management port and/or self…☆24Updated 2 years ago
- Another tool for exploiting CVE-2017-9248, a cryptographic weakness in Telerik UI for ASP.NET AJAX dialog handler.☆45Updated 4 months ago
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆21Updated 5 months ago
- Modified version of Pypykatz to print encrypted credentials☆51Updated 2 years ago
- Multi-threaded C2 framework built in Flask with keylogger - from the Offensive C# Course by Naga Sai Nikhil☆20Updated 2 years ago