behneyh's starred repositories

PyOxidizer

A modern Python application packaging and distribution tool

Language:RustLicense:MPL-2.0Stargazers:5324Issues:62Issues:564

merlin

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Language:GoLicense:GPL-3.0Stargazers:4998Issues:139Issues:103

GOAD

game of active directory

Language:PowerShellLicense:GPL-3.0Stargazers:4728Issues:75Issues:171

PRET

Printer Exploitation Toolkit - The tool that made dumpster diving obsolete.

Language:PythonLicense:GPL-2.0Stargazers:3821Issues:198Issues:68

BadBlood

BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world. After BadBlood is ran on a domain, security analysts and engineers can practice using tools to gain an understanding and prescribe to securing Active Directory. Each time this tool runs, it produces different results. The domain, users, groups, computers and permissions are different. Every. Single. Time.

Language:PowerShellLicense:GPL-3.0Stargazers:1961Issues:49Issues:7

vulnerable-AD

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

Language:PowerShellLicense:MITStargazers:1926Issues:45Issues:15

Azure-Red-Team

Azure Security Resources and Notes

Language:PowerShellStargazers:1433Issues:29Issues:0

mortar

evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

Language:PascalLicense:MITStargazers:1366Issues:28Issues:24

Shhhloader

Syscall Shellcode Loader (Work in Progress)

Language:PythonLicense:GPL-3.0Stargazers:1084Issues:25Issues:34

AD_Miner

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses

Language:JavaScriptLicense:GPL-3.0Stargazers:1033Issues:16Issues:32

ADExplorerSnapshot.py

ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping to NDJSON.

spoofcheck

Simple script that checks a domain for email protections

Language:PythonLicense:MITStargazers:771Issues:61Issues:5

NetLoader

Loads any C# binary in mem, patching AMSI + ETW.

PSPKIAudit

PowerShell toolkit for AD CS auditing based on the PSPKI toolkit.

Language:PowerShellLicense:MS-PLStargazers:759Issues:32Issues:22

o365spray

Username enumeration and password spraying tool aimed at Microsoft O365.

Language:PythonLicense:MITStargazers:712Issues:8Issues:13

Pyramid

a tool to help operate in EDRs' blind spots

Language:PythonLicense:Apache-2.0Stargazers:634Issues:12Issues:9

Nemesis

An offensive data enrichment pipeline

Language:PythonLicense:NOASSERTIONStargazers:572Issues:9Issues:9

Evilginx2-Phishlets

Evilginx3 Phishlets version (0.2.3 & above) Only For Testing/Learning Purposes

ADSearch

A tool to help query AD via the LDAP protocol

UAC-BOF-Bonanza

Collection of UAC Bypass Techniques Weaponized as BOFs

Language:CLicense:GPL-3.0Stargazers:368Issues:8Issues:1

adeleg

Active Directory delegation management tool

gocheck

Because AV evasion should be easy.

Jigsaw

Hide shellcode by shuffling bytes into a random array and reconstruct at runtime

ADeleginator

A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory

WindowsHardeningScript

Some settings stolen from multiple scripts @ZephrFish

Language:BatchfileStargazers:112Issues:8Issues:0

Embedder

Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies

Language:C++License:Apache-2.0Stargazers:109Issues:3Issues:0

Invoke-Pre2kSpray

Enumerate domain machine accounts and perform pre2k password spraying.

XingDumper

Python 3 script to dump/scrape/extract company employees from XING API

Language:PythonStargazers:34Issues:3Issues:0

BHCEupload

A small go tool to upload JSON files to the BloodHound community edition API

Language:GoLicense:MITStargazers:26Issues:2Issues:0