
ExchangeRelayX
An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

Educational proof-of-concept for PrintNightmare (CVE-2021-1675/34527) with simulated non-functional payload, attack flow analysis, MITRE mapping,…

Educational guide on CVE-2024-21413, the Outlook zero-click Moniker Link vulnerability, covering attack flow, NTLM credential capture, detection with…

Dominate the domain. Relay to royalty.

Docker-based multi-stage attack emulation lab demonstrating CVE-2017-5638 and CVE-2021-41773 exploitation, lateral movement, and Suricata IDS…

Module-based AWS exploitation framework for red team testing and blue team analysis. Emulates attack patterns in the AWS control plane with unique UA…

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

Attack and defend active directory using modern post exploitation adversary tradecraft activity

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

A C# tool with more flexibility to customize scheduled task for both persistence and lateral movement in red team operation

cupntlm

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening…

Automating situational awareness for cloud penetration tests.

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…