Lists (18)
Sort Name ascending (A-Z)
Active Directory
Ansible
Azure/Entra ID
BOF
Cloud
External: Reconnaissance
Tools used to identify OSINT from external sources.GitHub
Microsoft
π My stack
NMAP
Reconnaissance
Red Teaming Tools - Evade (E)
EntraRed Teaming Tools - Evade (W)
This is for tools only for evading detection on Windows.Red Teaming Tools - Pillage (W)
SCCM
SMTP
Social Engineering
WiFi
Stars
SCCMHunter is a post-ex tool built to streamline identifying, profiling, and attacking SCCM related assets in an Active Directory domain.
A small collector to model out abusable Seamless Single Sign On edges
SCOMDecrypt is a tool to decrypt stored RunAs credentials from SCOM servers
JamfHound is a python3 project designed to collect and identify attack paths in Jamf Pro tenants based on existing object permissions by outputting data as JSON for ingestion into BloodHound.
This C# tool sprays for admin access over the entire domain
An Ansible collection that installs a SCOM deployment with optional configurations.
An open-source, ultra-low-latency remote desktop for Linux hosts and Windows clients
Cobalt Strike BOF for beacon/shellcode injection using fork & run technique with Draugr synthetic stack frames
This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains are resolvable.
A lightweight UDP DNS forwarder that highlights potentially expired or unregistered domains by watching for unanswered lookups.
Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019
A Python module to bypass Cloudflare's anti-bot page.
IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare
AuditKit - Multi-Cloud Compliance Scanner & Evidence Collection
Lightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephemeral access into restricted environments using Tailscaleβs β¦
Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox
Bitpart is a messaging tool that runs on top of Signal to support activists, journalists, and human rights defenders.
Intercept Windows Named Pipes communication using Burp or similar HTTP proxy tools