
PowerShell-for-Hackers
This repository is a collection of powershell functions every hacker should know

This repository is a collection of powershell functions every hacker should know

Collection of PowerShell functions a Red Teamer may use in an engagement

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

PowerShell toolkit for Active Directory penetration testing, featuring domain/user/group enumeration, trust relationship analysis, RDP configuration,…

PowerShell toolkit for Active Directory reconnaissance and network situational awareness, enabling domain enumeration, privilege escalation path…

PowerShell port of CVE-2022-22965 vulnerability check by colincowie.

Triages a suspect Windows machine in minutes. Collects processes, services, autoruns, event logs and forensic artifacts, flags attacker activity, and…

Microsoft Signed PowerShell scripts


A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

A powershell script to check vulnerability CVE-2020-5902 of ip list

The Azure Active Directory Incident Response PowerShell module provides a number of tools, developed by the Azure Active Directory Product Group in…

A powershell script that prints a lot of IP and connection info to the screen

PowerShell module for administering and auditing Azure AD and Office 365, enabling token manipulation, user enumeration, and security assessments of…


A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

Open source pre-operation C2 server based on python and powershell

Utility to download and extract document metadata from an organization. This technique can be used to identify: domains, usernames, software/version…