Pinned Repositories
AADInternals
AADInternals PowerShell module for administering Azure AD and Office 365
Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
ADCSKiller
An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer
ADeleginator
A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory
AMSI-BYPASS
"AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS
BloodHound.py
A Python based ingestor for BloodHound
bofhound
Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel
Coercer
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
COM-Hunter
COM Hijacking VOODOO
ohmyzsh
🙃 A delightful community-driven (with 2,300+ contributors) framework for managing your zsh configuration. Includes 300+ optional plugins (rails, git, macOS, hub, docker, homebrew, node, php, python, etc), 140+ themes to spice up your morning, and an auto-update tool so that makes it easy to keep up with the latest updates from the community.
nick0lass's Repositories
nick0lass/ohmyzsh
🙃 A delightful community-driven (with 2,300+ contributors) framework for managing your zsh configuration. Includes 300+ optional plugins (rails, git, macOS, hub, docker, homebrew, node, php, python, etc), 140+ themes to spice up your morning, and an auto-update tool so that makes it easy to keep up with the latest updates from the community.
nick0lass/AADInternals
AADInternals PowerShell module for administering Azure AD and Office 365
nick0lass/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
nick0lass/ADCSKiller
An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer
nick0lass/ADeleginator
A companion tool that uses ADeleg to find insecure trustee and resource delegations in Active Directory
nick0lass/AMSI-BYPASS
"AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS
nick0lass/BloodHound.py
A Python based ingestor for BloodHound
nick0lass/bofhound
Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel
nick0lass/Coercer
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
nick0lass/COM-Hunter
COM Hijacking VOODOO
nick0lass/GadgetToJScript
A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
nick0lass/helper-scripts
Repo of some helper scripts to try and make lives easier
nick0lass/kerbrute
A tool to perform Kerberos pre-auth bruteforcing
nick0lass/MoreImpacketExamples
More examples using the Impacket library designed for learning purposes.
nick0lass/Network-Tools
Collection of network tools and scripts
nick0lass/nmap-did-what
Nmap Dashboard Mini Project
nick0lass/pentest
:no_entry: offsec batteries included
nick0lass/PetitPotam
PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.
nick0lass/PKINITtools
Tools for Kerberos PKINIT and relaying to AD CS
nick0lass/PowerZure
PowerShell framework to assess Azure security
nick0lass/RequestAADRefreshToken
nick0lass/Responder-Parser
Most Responder's configuration power in your hand.
nick0lass/Supernova
Real fucking shellcode encryptor & obfuscator tool
nick0lass/TeamFiltration
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
nick0lass/TeamsImplant
nick0lass/tools
Security and Hacking Tools, Exploits, Proof of Concepts, Shellcodes, Scripts.
nick0lass/traitor
:arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock
nick0lass/WitnessMe
Web Inventory tool, takes screenshots of webpages using Pyppeteer (headless Chrome/Chromium) and provides some extra bells & whistles to make life easier.
nick0lass/wmi-shell
WMI Shell project : proof-of-concept of remote access to a Windows machine using only the WMI service.