xpn / sccmwtf
☆141Updated 10 months ago
Related projects: ⓘ
- ☆144Updated 7 months ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆250Updated last year
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆118Updated 2 years ago
- ☆241Updated 11 months ago
- OPSEC safe Kerberoasting in C#☆187Updated 2 years ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆152Updated last year
- ADCS cert template modification and ACL enumeration☆126Updated last year
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆293Updated 6 months ago
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆182Updated 3 years ago
- GolenGMSA tool for working with GMSA passwords☆133Updated 5 months ago
- Some scripts to support with importing large datasets into BloodHound☆75Updated 9 months ago
- tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"☆153Updated 2 years ago
- The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.☆102Updated 4 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆117Updated 6 months ago
- Beacon Object File & C# project to check LDAP signing☆161Updated last month
- Koppeling x Metatwin x LazySign☆200Updated 3 years ago
- COFF file (BOF) for managing Kerberos tickets.☆276Updated last year
- Disconnected GPO Editor - A Group Policy Manager launcher to allow editing of domain GPOs from non-domain joined machines☆55Updated 2 weeks ago
- ☆174Updated 5 months ago
- PoC to coerce authentication from Windows hosts using MS-WSP☆218Updated last year
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆164Updated last year
- Timeroasting scripts by Tom Tervoort☆176Updated last year
- ☆0Updated 5 months ago
- ☆110Updated last year
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆224Updated 2 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆116Updated 2 years ago
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆136Updated 6 months ago
- Collection of tools to use with Azure Applications☆107Updated 11 months ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆148Updated last year