Pinned Repositories
ESC
Evil SQL Client (ESC) is an interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration features. While ESC can be a handy SQL Client for daily tasks, it was originally designed for targeting SQL Servers during penetration tests and red team engagements. The intent of the project is to provide an .exe, but also sample files for execution through mediums like msbuild and PowerShell.
goddi
goddi (go dump domain info) dumps Active Directory domain information
MicroBurst
A collection of scripts for assessing Microsoft Azure security
NetblockTool
Find netblocks owned by a company
PESecurity
PowerShell module to check if a Windows binary (EXE/DLL) has been compiled with ASLR, DEP, SafeSEH, StrongNaming, and Authenticode.
PowerHuntShares
PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.
PowerShell
NetSPI PowerShell Scripts
PowerUpSQL
PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server
SQLInjectionWiki
A wiki focusing on aggregating and documenting various SQL injection methods
xssValidator
This is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.
NetSPI's Repositories
NetSPI/TapJacking-Demo
NetSPI/BeEF-Modules
Modules for BeEF