wunderwuzzi23 / ropci
So, you think you have MFA? AAD/ROPC/MFA bypass testing tool
☆99Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for ropci
- Hybrid AD utilities for ROADtools☆63Updated this week
- ☆64Updated this week
- Modular cross-platform Microsoft Graph API (Entra, o365, and Intune) enumeration and exploitation toolkit☆134Updated 3 months ago
- A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.☆35Updated 8 months ago
- ☆173Updated 9 months ago
- Script to install prerequisites for deploying GOAD on Ubuntu Linux 22.04☆106Updated 5 months ago
- Azure AD cheatsheet for the CARTP course☆98Updated 2 years ago
- Modular Enumeration and Password Spraying Framework☆109Updated 7 months ago
- A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO☆129Updated 2 months ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆82Updated last year
- ☆98Updated 2 years ago
- Living off the land searches for explorer and sharepoint☆53Updated 3 weeks ago
- A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure…☆35Updated last year
- Automatically run and populate a new instance of BH CE☆54Updated last month
- A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.☆117Updated 6 months ago
- A Azure Exploitation Toolkit for Red Team & Pentesters☆163Updated last year
- Efflanrs - GUI for Snaffler Output☆20Updated 2 months ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆158Updated last year
- Proof of concept: using a Cloudflare worker for AITM attacks☆90Updated 8 months ago
- ☆151Updated 2 weeks ago
- ☆112Updated last year
- A tool for pointesters to find candies in SharePoint☆240Updated 2 years ago
- Custom Queries - Brought Up to BH4.1 syntax☆230Updated 3 weeks ago
- ☆123Updated 5 months ago
- ☆99Updated 3 years ago
- AAD related enumeration in Nim☆128Updated last year
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆147Updated 3 weeks ago
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆133Updated 4 months ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆149Updated last year
- Red Team "Drop and Run" NAC (802.1x) Bypass☆69Updated last year