surbo / OVERFLOW
Microsoft Flow Attack Framework
☆23Updated 5 years ago
Alternatives and similar repositories for OVERFLOW:
Users that are interested in OVERFLOW are comparing it to the libraries listed below
- BloodHound Data Scanner☆45Updated 4 years ago
- Cobalt Strike log state tracking, parsing, and storage☆24Updated 5 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- ☆25Updated 6 years ago
- B-Sides CBR 2018 talk about group policy and Grouper☆39Updated 5 years ago
- Some simple scripts for decrypting passwords retrieved from a Manage Engine OpManager installation☆11Updated 9 years ago
- .net tool that uses WMI queries to enumerate active sessions and accounts configured to run services on remote systems☆33Updated 5 years ago
- Threat Mitigation Strategies☆25Updated last year
- BloodHound Cypher Queries Ported to a Jupyter Notebook☆53Updated 4 years ago
- SilkETW & SilkService☆40Updated 5 years ago
- The project is called GreatSCT (Great Scott). GreatSCT is an open source project to generate application white list bypasses. This tool i…☆30Updated 6 years ago
- Library of traffic redirectors☆26Updated 5 years ago
- Set of ultra technical notes about AD☆18Updated 6 years ago
- Searches open files shares for password files, database backups, etc. Extend as you see fit☆29Updated 5 years ago
- Obtains a list of GPOs based on known Client Side Extensions (CSE) that normally contain passwords☆33Updated 5 years ago
- A PowerShell tool which provides an easy way to check for shared passwords between Windows Active Directory accounts☆32Updated 6 years ago
- various slides and presentations I've worked on☆18Updated last month
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- windows-operating-system-archaeology @Enigma0x3 @subTee☆45Updated 8 years ago
- Forked and updated with some additional features over the original☆17Updated 4 years ago
- Hunting for Microsoft Exchange the LDAP Way.☆35Updated 5 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago
- Protect your servers with a secret header☆29Updated 4 years ago
- Walking the PEB in VBA☆23Updated 5 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Updated 3 years ago
- ☆30Updated 6 years ago
- Tool to acquire netNTLM hashes on a local machine wihtout network traffic☆13Updated 6 years ago
- LogRM is a post exploitation powershell script which it uses windows event logs to gather information about internal network☆74Updated 5 years ago
- A PowerShell script to parse the docx/docm file format and update the template location.☆17Updated 5 years ago