
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Open source solutions for SOC2, GDPR, and ISO27001

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

Vault app for DC34 badge

A collection of awesome security hardening guides, tools and other resources

Tooling for assessing an Azure AD tenant state and configuration

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information

Automation to assess the state of your M365 tenant against CISA's baselines

AAD related enumeration in Nim

A curated list of awesome Security Hardening techniques for Windows.

Azure AD Password Checker



MDE/MDI Defender setup for Ludus

😎 Awesome list of all things related to Microsoft Entra

Detects shadow-administrator accounts in WordPress via configurable indicators and heuristics, then removes selected accounts through guarded, logged…

.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation