superhac / OSEP
☆20Updated 3 years ago
Alternatives and similar repositories for OSEP:
Users that are interested in OSEP are comparing it to the libraries listed below
- Bypass Constrained Language Mode in PowerShell☆27Updated 5 years ago
- ☆70Updated last year
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- Add SD for controlled computer object to a target object for RBCD using LDAP☆38Updated 3 years ago
- Ruby script that calls an almost interactive shell via WinRM (TCP/5985) on an Windows machine, relaying on a valid Kerberos ticket. (Very…☆17Updated 5 years ago
- Python3 Ebowla... 3Bowla☆17Updated 5 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆66Updated 7 months ago
- C# .Net Framework program that uses RunspaceFactory for Powershell command execution.☆13Updated 2 years ago
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆36Updated 10 months ago
- Random☆32Updated 2 years ago
- A collection of Windows x32 exploits created while preparing for the OSED certification exam☆20Updated 3 years ago
- A script that parses PowerView's output for GPO analysis. Integrated into bloodhound to find misconfigurations of URA, SMB signing etc☆13Updated 4 years ago
- Abuse Zabbix API to obtain Remote Command Execution on hosts☆18Updated 3 years ago
- Script written in python to perform Resource-Based Constrained Delegation (RBCD) attack by leveraging Impacket toolkit.☆20Updated 3 years ago
- Federated Office365 user enumeration based on correlated response trend analysis☆48Updated 2 years ago
- Convert an LDIF file to JSON files ingestible by BloodHound☆41Updated 4 months ago
- ☆12Updated 2 years ago
- D/Invoke standalone shellcode runners☆37Updated last year
- terraform deployment for red team☆21Updated 2 years ago
- Bypass AMSI via PowerShell by splitting a file into multiple chunks☆50Updated 3 years ago
- WhoAmI by asking the LDAP service on a domain controller.☆60Updated 2 years ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- Python3 rewrite of AsOutsider features of AADInternals☆39Updated last month
- Secretsdump C# version only supporting local (live) operation☆48Updated last year
- Exchangelib wrapper for pentesting☆58Updated 7 months ago
- Convert ldapdomaindump to Bloodhound☆78Updated last year
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- Automating payload generation for OSEP labs and exam.☆34Updated 2 years ago