A swiss army knife for pentesting networks
-
Updated
Dec 6, 2023 - Python
A swiss army knife for pentesting networks
The Network Execution Tool
Investigate malicious Windows logon by visualizing and analyzing Windows event log
Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Directory environments using some of the most common offensive TTPs.
Bloodhound Reporting for Blue and Purple Teams
AD Security Intrusion Detection System
A (partial) Python rewriting of PowerSploit's PowerView
Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user
Open-source autonomous AI penetration testing. 50 specialist agents across web, API, cloud, Active Directory, Kubernetes, CI/CD and AI/LLM (OWASP LLM Top 10). Runs on a local LLM behind a Privacy Gateway. Integrates with GitHub, GitLab, Jenkins, VS Code, JetBrains, n8n, Grafana & Splunk.
Modern tactical exploitation toolkit.
Free Active Directory pentesting tool for Linux, macOS and Windows. Automates AD and LDAP enumeration, Kerberoasting, ASREPRoast, password spraying, ADCS/ESC1, DCSync, RBCD, gMSA, shadow credentials, NTLM relay and credential dumping across 104 techniques, mapping BloodHound-compatible attack paths to Domain Admin. NIS2 / ISO 27001 reports.
Collection of knowledge about information security
ARES - authorized red-team engagement automation with dashboard, campaign scope, module orchestration, OPSEC controls, encrypted vault, and reporting.
Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.
Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.
FindUncommonShares is a Python script allowing to quickly find uncommon shares in vast Windows Domains, and filter by READ or WRITE accesses.
Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data
Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel
A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.
Execute commands interactively on remote Windows machines using the WinRM protocol (just faster)
To associate your repository with the active-directory topic, visit your repo's landing page and select "manage topics."