ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping to NDJSON.
Repositórios
Repositórios de api0cradle
Just some random stuff for AppLocker
Situational Awareness commands implemented using Beacon Object Files
Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling
Code & Slides For DerbyCon 2019
An Office365 User Attack Tool
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, if the account is locked, or if the account is disabled.
A Python implementation of dafthack's MSOLSpray. A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, if the account is locked, or if the account is disabled.
Example code on how to use a custom dll during dll hijack on Narrator.exe as a persistence
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
A Powershell module that helps you identify AppLocker weaknesses
A collection of useful Powershell Scripts that I have created
Just some random Red Team Scripts that can be useful
Inject DLL Prototype using Microsoft.Windows.ACTCTX COM Object
TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!