
evil-winrm
The ultimate WinRM shell for hacking/pentesting

The ultimate WinRM shell for hacking/pentesting

Powershell tool to automate Active Directory enumeration.

Active Directory password filter featuring breached password checking and custom complexity rules

A fork of the great TokenTactics with support for CAE and token endpoint v2

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response

A tool for checking if MFA is enabled on multiple Microsoft Services

Some scripts to abuse kerberos using Powershell

AD CS exploitation related stuff goes here

Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833)

Discover input surfaces and security issues in compiled .NET assemblies — without running them.

CyberArk Security Audit

PowerShell SharePoint extraction + auditing tool for red/blue/purple teams. Enumerates all SharePoint sites/drives a user can access via Microsoft…

Abusing Azure services over C2

Dominate Active Directory with PowerShell.

PowerShell module for administering and auditing Azure AD and Office 365, enabling token manipulation, user enumeration, and security assessments of…

PowerShell toolkit to audit, harden, and hunt for insecure NTLM/SMB usage, addressing CVE-2025-50154 credential leak risks with event log analysis…