Stars
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernet…
Proof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.
This is the tool to dump the LSASS process on modern Windows 11
Group Policy Objects manipulation and exploitation framework
An even funnier way to disable windows defender. (through WSC api)
A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security professionals and CTF players.
A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.
Microsoft signed ActiveDirectory PowerShell module
DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the default settings).
BadZure automates the deployment of intentionally misconfigured Entra ID tenants and Azure subscriptions, populating them with diverse entities and configurable, traversable attack paths.
ScriptSentry finds misconfigured and dangerous logon scripts.
Tooling related to the WAM Bam - Recovering Web Tokens From Office blog post
GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projects
A public, open source physical security methodology
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
RayRRT / Certipy15
Forked from ly4k/CertipyTool for Active Directory Certificate Services enumeration and abuse
A (partial) Python rewriting of PowerSploit's PowerView
Tools for Kerberos PKINIT and relaying to AD CS
DNSChef - DNS proxy for Penetration Testers and Malware Analysts
Silentbridge is a toolkit for bypassing 802.1x-2010 and 802.1x-2004.
IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then reflective load the C# project.
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket
Leak NTLM via Website tab in teams via MS Office