tothi / rbcd-attack
Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket
☆517Updated 2 years ago
Alternatives and similar repositories for rbcd-attack:
Users that are interested in rbcd-attack are comparing it to the libraries listed below
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆729Updated last year
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆803Updated 3 years ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆353Updated 4 years ago
- Dumping LAPS from Python☆258Updated 2 years ago
- Bypass for PowerShell Constrained Language Mode☆382Updated 3 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆220Updated 3 years ago
- Tools for Kerberos PKINIT and relaying to AD CS☆678Updated 3 weeks ago
- Python version of the C# tool for "Shadow Credentials" attacks☆659Updated last month
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆255Updated 11 months ago
- A Cobalt Strike tool to audit Active Directory user accounts for weak, well known or easy guessable passwords.☆429Updated 2 years ago
- Utility to enumerate users, groups and computers from a Windows domain through LDAP queries☆359Updated 3 years ago
- PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as w…☆954Updated 8 months ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆472Updated 2 years ago
- ☆506Updated 3 years ago
- ☆358Updated 3 years ago
- Check for LDAP protections regarding the relay of NTLM authentication☆474Updated 2 months ago
- Partial python implementation of SharpGPOAbuse☆384Updated 11 months ago
- ☆756Updated 2 years ago
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆300Updated 2 years ago
- ☆351Updated 3 years ago
- Kerberoast with ACL abuse capabilities☆391Updated last month
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆270Updated 3 years ago
- Custom Query list for the Bloodhound GUI based off my cheatsheet☆762Updated 2 years ago
- PowerShell Constrained Language Mode Bypass☆242Updated 3 years ago
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆411Updated 3 weeks ago
- Evil SQL Client (ESC) is an interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration feature…☆284Updated last year
- scan for NTLM directories☆351Updated 7 months ago
- Collection of remote authentication triggers in C#☆472Updated 8 months ago
- ☆643Updated last month
- Fork of SafetyKatz that dynamically fetches the latest pre-compiled release of Mimikatz directly from gentilkiwi GitHub repo, runtime pat…☆849Updated 3 years ago