tothi / rbcd-attack
Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket
☆492Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for rbcd-attack
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆757Updated 3 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆700Updated 11 months ago
- Tools for Kerberos PKINIT and relaying to AD CS☆625Updated 6 months ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆346Updated 4 years ago
- A Cobalt Strike tool to audit Active Directory user accounts for weak, well known or easy guessable passwords.☆424Updated 2 years ago
- Bypass for PowerShell Constrained Language Mode☆373Updated 2 years ago
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆244Updated 8 months ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆465Updated 2 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆216Updated 2 years ago
- ☆348Updated 3 years ago
- Dumping LAPS from Python☆253Updated last year
- ☆347Updated 3 years ago
- ☆498Updated 2 years ago
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆270Updated 2 years ago
- Check for LDAP protections regarding the relay of NTLM authentication☆460Updated 7 months ago
- Python version of the C# tool for "Shadow Credentials" attacks☆599Updated last week
- Kerberoast with ACL abuse capabilities☆327Updated last week
- A tool to help query AD via the LDAP protocol☆453Updated last month
- PowerShell Constrained Language Mode Bypass☆231Updated 3 years ago
- ☆730Updated 2 years ago
- Collection of remote authentication triggers in C#☆464Updated 5 months ago
- A User Impersonation tool - via Token or Shellcode injection☆400Updated 2 years ago
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆398Updated 2 years ago
- ☆441Updated last year
- PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as w…☆919Updated 5 months ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆564Updated 4 months ago
- Cobalt Strike kit for Lateral Movement☆645Updated 4 years ago
- Utility to enumerate users, groups and computers from a Windows domain through LDAP queries☆348Updated 3 years ago
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆292Updated last year
- Fork of SafetyKatz that dynamically fetches the latest pre-compiled release of Mimikatz directly from gentilkiwi GitHub repo, runtime pat…☆830Updated 3 years ago