y0k4i-1337 / BloodHound-Queries
Custom queries list for BloodHound
☆20Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for BloodHound-Queries
- Deduplicate custom BloudHound queries from different datasets and merge them in one customqueries.json file.☆36Updated 7 months ago
- Convert an LDIF file to JSON files ingestible by BloodHound☆40Updated 2 months ago
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- ☆68Updated last year
- dauthi is a tool that takes advantage of API functionality across a variety of MDM solutions to perform user enumeration and single-facto…☆35Updated 6 months ago
- A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure…☆31Updated last year
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆82Updated last year
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆85Updated last year
- Living off the land searches for explorer and sharepoint☆52Updated 3 weeks ago
- ☆51Updated last year
- Discord C2 Profile for Mythic☆24Updated 7 months ago
- ☆43Updated 4 months ago
- Find Inbound Email Domains☆21Updated 11 months ago
- Automatically deploy Nemesis☆19Updated 5 months ago
- Dump Kerberos tickets from the KCM database of SSSD☆49Updated 2 months ago
- ☆51Updated last year
- Script written in python to perform Resource-Based Constrained Delegation (RBCD) attack by leveraging Impacket toolkit.☆20Updated 3 years ago
- Parses Snaffler output file and generate beautified outputs.☆37Updated 3 months ago
- fully async implementation of Dirkjan's ROADTools☆31Updated 8 months ago
- Exploits a flaw in Remote Desktop Plus by monitoring and decrypting temporary .rdp files in %localappdata%/Temp, revealing credentials us…☆14Updated 9 months ago
- ☆36Updated last month
- ☆12Updated 2 years ago
- ☆44Updated 3 weeks ago
- A small script that automates Entra ID persistence with Windows Hello For Business key☆47Updated 4 months ago
- A script that parses PowerView's output for GPO analysis. Integrated into bloodhound to find misconfigurations of URA, SMB signing etc☆12Updated 4 years ago
- A Python POC for CRED1 over SOCKS5☆134Updated last month
- Leveraging AWS Lambda Function URLs for C2 Redirection☆22Updated last year
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆34Updated last month