seriotonctf / cme-nxc-cheat-sheetView external linksLinks
A cheatsheet for NetExec
☆187Jun 9, 2025Updated 8 months ago
Alternatives and similar repositories for cme-nxc-cheat-sheet
Users that are interested in cme-nxc-cheat-sheet are comparing it to the libraries listed below
Sorting:
- Generate AES128 and AES256 Kerberos keys from a given username, password, and realm☆18Sep 18, 2024Updated last year
- Lab used for workshop and CTF☆491Feb 3, 2026Updated last week
- SANS Workshop: Active Directory Privilege Escalation with Empire!☆35Nov 12, 2025Updated 3 months ago
- Dominate Active Directory with PowerShell.☆1,162Nov 28, 2025Updated 2 months ago
- ☆48Oct 15, 2025Updated 4 months ago
- Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advance…☆568May 22, 2025Updated 8 months ago
- LSASS memory dumper using only NTAPIs, creating a minimal minidump. It can be compiled as shellcode (PIC), supports XOR encryption, and r…☆381Apr 26, 2025Updated 9 months ago
- Powershell tool to automate Active Directory enumeration.☆1,279Sep 9, 2025Updated 5 months ago
- Active Directory pentesting mind map☆505May 26, 2023Updated 2 years ago
- BloodyAD is an Active Directory Privilege Escalation Framework☆2,083Jan 31, 2026Updated 2 weeks ago
- Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!☆534May 9, 2025Updated 9 months ago
- Just another Powerview alternative but on steroids☆863Jan 5, 2026Updated last month
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆126Dec 2, 2023Updated 2 years ago
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆669Oct 23, 2025Updated 3 months ago
- HTML Smuggling with Web Assembly☆66Feb 20, 2024Updated last year
- 🛡️ Assign AD permissions via PowerShell templates — Simplify and standardize AD delegation with reusable PowerShell templates.☆24Jul 27, 2025Updated 6 months ago
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆358Dec 13, 2025Updated 2 months ago
- ☆216Mar 26, 2024Updated last year
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆381Dec 13, 2024Updated last year
- Active Directory Auditing and Enumeration☆515Dec 3, 2025Updated 2 months ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆725Sep 3, 2025Updated 5 months ago
- ☆53Sep 23, 2025Updated 4 months ago
- smbclient-ng, a fast and user friendly way to interact with SMB shares.☆1,012Feb 1, 2026Updated 2 weeks ago
- List of some AD tools I frequently use☆56Nov 2, 2025Updated 3 months ago
- ☆246Jul 31, 2024Updated last year
- The Network Execution Tool☆5,250Feb 8, 2026Updated last week
- Study materials for the Certified Red Team Expert (CRTE) exam, covering essential concepts in red teaming and penetration testing.☆165Jul 16, 2023Updated 2 years ago
- Kerberoast with ACL abuse capabilities☆603Dec 16, 2024Updated last year
- Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the w…☆140Sep 4, 2023Updated 2 years ago
- A BloodHound collector for Microsoft Configuration Manager☆364Jul 7, 2025Updated 7 months ago
- Tool to bypass LSA Protection (aka Protected Process Light)☆64Jan 2, 2025Updated last year
- A cross-platform tool to parse and describe the contents of a raw ntSecurityDescriptor structure☆47Oct 4, 2025Updated 4 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆214Oct 19, 2024Updated last year
- ☆378Oct 17, 2025Updated 3 months ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Aug 5, 2024Updated last year
- Make everyone in your VLAN ASRep roastable☆247Oct 7, 2025Updated 4 months ago
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆20Feb 8, 2024Updated 2 years ago
- OSCP Cheatsheet☆16Jun 14, 2023Updated 2 years ago
- linWinPwn is a bash script that streamlines the use of a number of Active Directory tools☆2,149Feb 9, 2026Updated last week