Stars
PowerSploit - A PowerShell Post-Exploitation Framework
Six Degrees of Domain Admin
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
Empire is a PowerShell and Python post-exploitation agent.
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. [email protected]
Automation for internal Windows Penetrationtest / AD-Security
PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server
Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode
netshell features all in version 2 powershell
The goal of this repository is to document the most common techniques to bypass AppLocker.
A post-exploitation powershell tool for extracting juicy info from memory.
PowerShell Pass The Hash Utils
AADInternals PowerShell module for administering Azure AD and Office 365
PowerShell MachineAccountQuota and DNS exploit tools
A PowerShell script anti-virus evasion tool
Repo for ADACLScan.ps1 - Your number one script for ACL's in Active Directory
SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS
Microsoft signed ActiveDirectory PowerShell module
This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported is translated into a WMI-equivalent for use on a network/rem…
A script for advanced discovery of Privileged Accounts - includes Shadow Admins
A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)
GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.
Windows batch script that finds misconfiguration issues which can lead to privilege escalation.
This repo contains Powershell scripts used for general hackery.
A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.
Tater is a PowerShell implementation of the Hot Potato Windows Privilege Escalation exploit from @breenmachine and @foxglovesec
PowerShell script for deobfuscating encoded PowerShell scripts