Stars
This is the tool to dump the LSASS process on modern Windows 11
Group Policy Objects manipulation and exploitation framework
An even funnier way to disable windows defender. (through WSC api)
A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security professionals and CTF players.
A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.
Microsoft signed ActiveDirectory PowerShell module
DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the default settings).
BadZure orchestrates the setup of Azure AD tenants, populating them with diverse entities while also introducing common security misconfigurations to create vulnerable tenants with multiple attack …
ScriptSentry finds misconfigured and dangerous logon scripts.
Tooling related to the WAM Bam - Recovering Web Tokens From Office blog post
GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projects
A public, open source physical security methodology
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
RayRRT / Certipy15
Forked from ly4k/CertipyTool for Active Directory Certificate Services enumeration and abuse
A (partial) Python rewriting of PowerSploit's PowerView
Tools for Kerberos PKINIT and relaying to AD CS
DNSChef - DNS proxy for Penetration Testers and Malware Analysts
Silentbridge is a toolkit for bypassing 802.1x-2010 and 802.1x-2004.
IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then reflective load the C# project.
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket
Leak NTLM via Website tab in teams via MS Office
So, you think you have MFA? AAD/ROPC/MFA bypass testing tool