xpn / sccmwtf
☆143Updated last year
Related projects ⓘ
Alternatives and complementary repositories for sccmwtf
- ☆151Updated 2 weeks ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆119Updated 3 years ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆250Updated last year
- ADCS cert template modification and ACL enumeration☆129Updated last year
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆301Updated 8 months ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆123Updated 8 months ago
- OPSEC safe Kerberoasting in C#☆188Updated 2 years ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆158Updated last year
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆184Updated 3 years ago
- ☆241Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆225Updated last year
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆138Updated 8 months ago
- Beacon Object File & C# project to check LDAP signing☆173Updated 3 months ago
- COFF file (BOF) for managing Kerberos tickets.☆281Updated last year
- Timeroasting scripts by Tom Tervoort☆182Updated last year
- Some scripts to support with importing large datasets into BloodHound☆78Updated 11 months ago
- GolenGMSA tool for working with GMSA passwords☆136Updated 7 months ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆147Updated 3 weeks ago
- C# version of Powermad☆156Updated 11 months ago
- ☆181Updated 7 months ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆80Updated 6 months ago
- ☆112Updated last year
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆166Updated last year
- Start new PowerShell without etw and amsi in pure nim☆157Updated 2 years ago
- Python tool to Check running WebClient services on multiple targets based on @leechristensen☆252Updated 3 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆117Updated 2 years ago
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆48Updated 5 months ago
- Koppeling x Metatwin x LazySign☆203Updated 3 years ago
- Custom Queries - Brought Up to BH4.1 syntax☆230Updated 3 weeks ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆82Updated last year