simondotsh / DirSync
DirSync is a simple proof of concept PowerShell module to demonstrate the impact of delegating DS-Replication-Get-Changes and DS-Replication-Get-Changes-In-Filtered-Set.
☆27Updated last year
Alternatives and similar repositories for DirSync:
Users that are interested in DirSync are comparing it to the libraries listed below
- A care package of useful bofs for red team engagments☆54Updated 2 months ago
- Click Once + App Domain☆62Updated last year
- C# Port of LdapRelayScan☆79Updated 2 years ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆83Updated last year
- C# version of NTLMRawUnHide☆72Updated 2 years ago
- Beacon Object Files (not Buffer Overflows)☆53Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 3 years ago
- Secretsdump C# version only supporting local (live) operation☆48Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆73Updated 2 years ago
- ☆88Updated 2 years ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆68Updated 9 months ago
- Generate AES128/256 Kerberos keys for an AD account using a plaintext password and Python3☆50Updated 2 years ago
- WhoAmI by asking the LDAP service on a domain controller.☆61Updated 3 years ago
- Run Cobalt Strike BOFs in Brute Ratel C4!☆61Updated last month
- Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆14Updated 2 years ago
- A BOF to interact with COM objects associated with the Windows software firewall.☆102Updated 3 years ago
- A third-party Gopher Assassin for the Havoc Framework.☆44Updated last year
- C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD…☆39Updated last year
- ☆33Updated 2 weeks ago
- ☆36Updated 2 years ago
- ☆93Updated 2 years ago
- Simple .NET loader for loading and executing Powershell payloads☆16Updated 3 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆81Updated 3 years ago
- ☆61Updated 2 years ago
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆63Updated 4 months ago
- Beacon Object File to locate and suspend the threads hosting the Event Log service☆24Updated 2 years ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆35Updated last year
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆51Updated 2 years ago
- ☆77Updated last year
- GPOAnalyzer is a tool designed to assist in parsing domain Group Policy Object (GPO) files located in the SYSVOL directory.☆25Updated 8 months ago