tothi / rbcd-attack
Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket
☆519Updated 2 years ago
Alternatives and similar repositories for rbcd-attack:
Users that are interested in rbcd-attack are comparing it to the libraries listed below
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆809Updated 3 years ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆353Updated 4 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆737Updated last year
- Dumping LAPS from Python☆260Updated 2 years ago
- ☆506Updated 3 years ago
- Bypass for PowerShell Constrained Language Mode☆381Updated 3 years ago
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆259Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆221Updated 3 years ago
- Python version of the C# tool for "Shadow Credentials" attacks☆668Updated 2 months ago
- Utility to enumerate users, groups and computers from a Windows domain through LDAP queries☆362Updated 3 years ago
- Tools for Kerberos PKINIT and relaying to AD CS☆686Updated last month
- PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as w…☆957Updated 8 months ago
- Kerberoast with ACL abuse capabilities☆403Updated 2 months ago
- Partial python implementation of SharpGPOAbuse☆388Updated 11 months ago
- ☆759Updated 2 years ago
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆412Updated last month
- ☆650Updated 2 weeks ago
- scan for NTLM directories☆354Updated 7 months ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆474Updated 2 years ago
- A Cobalt Strike tool to audit Active Directory user accounts for weak, well known or easy guessable passwords.☆430Updated 2 years ago
- ☆358Updated 3 years ago
- Fork of SafetyKatz that dynamically fetches the latest pre-compiled release of Mimikatz directly from gentilkiwi GitHub repo, runtime pat…☆850Updated 3 years ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆595Updated 7 months ago
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆301Updated 2 years ago
- PowerShell Constrained Language Mode Bypass☆247Updated 4 years ago
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆271Updated 3 years ago
- Standalone binaries for Linux/Windows of Impacket's examples☆726Updated last year
- A User Impersonation tool - via Token or Shellcode injection☆409Updated 2 years ago
- BadAssMacros - C# based automated Malicous Macro Generator.☆405Updated 3 years ago
- ☆352Updated 3 years ago