Pinned Repositories
Certify
Active Directory certificate abuse.
Chump2Trump
Slides from my AD Privesc talk at WAHCKon 2017
Fox
A companion tool for BloodHound offering Active Directory statistics and number crunching
FurbyConnect
l0ss and swarley's bits and pieces from the talk 'We have no idea how to hack a Furby Connect from BSides Canberra 2017.
Get-GPTrashfire
B-Sides CBR 2018 talk about group policy and Grouper
Grouper
A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)
Grouper2
Find vulnerabilities in AD Group Policy
Seatbelt
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
SharpUp
SharpUp is a C# port of various PowerUp functionality. Fork includes a couple of extra checks.
l0ss's Repositories
l0ss/Grouper
A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)
l0ss/Grouper2
Find vulnerabilities in AD Group Policy
l0ss/Get-GPTrashfire
B-Sides CBR 2018 talk about group policy and Grouper
l0ss/Chump2Trump
Slides from my AD Privesc talk at WAHCKon 2017
l0ss/SharpUp
SharpUp is a C# port of various PowerUp functionality. Fork includes a couple of extra checks.
l0ss/Fox
A companion tool for BloodHound offering Active Directory statistics and number crunching
l0ss/FurbyConnect
l0ss and swarley's bits and pieces from the talk 'We have no idea how to hack a Furby Connect from BSides Canberra 2017.
l0ss/Seatbelt
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
l0ss/Certify
Active Directory certificate abuse.
l0ss/DAFT
DAFT: Database Audit Framework & Toolkit
l0ss/DomainLab
Vagrant & Packer scripts mangled from clong's DetectionLab to build an AD testing environment.
l0ss/ESC
Evil SQL Client (ESC) is an interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration features. While ESC can be a handy SQL Client for daily tasks, it was originally designed for targeting SQL Servers during penetration tests and red team engagements. The intent of the project is to provide an .exe, but also sample files for execution through mediums like msbuild and PowerShell.
l0ss/Group3r
You probably want https://github.com/Group3r/Group3r
l0ss/kali-packer-vagrant
Packer and Vagrant configurations for Kali Linux
l0ss/MakeMikeSad
Slides from my purplecon NZ talk in 2018
l0ss/metasploit-framework
Metasploit Framework
l0ss/misc
dotfiles, whatever.
l0ss/Rubeus
Trying to tame the three-headed dog.
l0ss/SharpHound
C# Data Collector for BloodHound
l0ss/SharpHoundCommon
Common library used by SharpHound.
l0ss/ThreatCheck
Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.
l0ss/zmk-config