Michael Ritter's repositories
Get-FileShareAccessRights
Multiple functions to evaluate critical file permissions on a specified network share
KALI_vagrant
quickly set up a new vagrant instance with KALI
Deathcon_Workshop
Material from my workshop at Deathcon Conference
AADConnectCredentialDump
Newer version of @_xpn_ & @tijldeneut credential dumping script, which also extracts the Azure Sync Account
ADRecon-inmem
ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.
aiosmb
Fully asynchronous SMB library written in pure python
Check-SMBSigning
Check-SMBSigning
directory-listing-tree
Little tool to make a tree out of a page that is vulnerable to directory listing
FilelessPELoader
Loading Remote AES Encrypted PE in memory , Decrypted it and run it
Get-FilteredLogonEvent
Retrieves logon events from the Windows Security log, excluding LogonType 3 and the "SYSTEM" account.
Invoke-DCSync
PowerShell script to DCSync NT-Hashes from an Active Directory Domain Controller (DC)
Invoke-WorkstationAssessment
Security Assessments for Workstations
maldev-for-dummies
A workshop about Malware Development
Matrix42-EmpCrypt
Matrix42 executable and DLL to decrypt password hashes
metasploit-framework
Metasploit Framework
mortar
evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)
OffensiveVBA
This repo covers some code execution and AV Evasion methods for Macros in Office documents
powershell-profile
Pretty PowerShell that looks good and functions almost as good as Linux terminal
Reconizer
Python3 script to resolve hostnames to IP addresses and query Shodan's free InternetDB for ports and CVEs as well as ipinfo.com for IP details
SecurityHeaderAnalysis
Small tool to evaluate results of shcheck on bigger infrastructure scan
SmbScanner
Smb Scanner from PingCastle
svn-db_downloader
Little tool to exploit exposed SVN wc.db files
winchecksec
Checksec, but for Windows: static detection of security mitigations in executables
Windows_LPE_AFD_CVE-2023-21768
LPE exploit for CVE-2023-21768