Stars
A very vulnerable implementation of a GraphQL API.
AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses
Unleash Mimikatz — the tool that exposes the darkest corners of Windows security. This guide helps you master Mimikatz, a ruthless credential extraction tool every penetration tester and attacker …
GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)
LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113
Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?
Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound
A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
Attack and defend active directory using modern post exploitation adversary tradecraft activity
A tool for searching common variations of a human name
Repository with quick triggers to help during Pentest in an Active Directory environment.
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time threat information, gain a competitive advantage, and stay infor…
Vamos transformar o Brasil em uma API?