Active Directory Security Tools
Browse Cybersecurity Tools in this category
24 InfoSec Tools
PsMapExec
by The-Viper-One
Dominate Active Directory with PowerShell.
RustHound-CE
by g0h4n
Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀
Invoke-ADEnum
by Leo4j
Active Directory Auditing and Enumeration
chisel
by jpillora
A fast TCP/UDP tunnel over HTTP
ntlm_theft
by Greenwolf
A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)
Windows-Local-Privilege-Escalation-Cookbook
by nickvourd
Windows Local Privilege Escalation Cookbook
Invoke-PassTheCert
by The-Viper-One
Pure PowerShell port of PassTheCert tool to authenticate to an LDAP/S server with a certificate through Schannel
FindOldSIDTraces
by TheManticoreProject
A cross-platform tool to find traces of old SIDs remaining in LDAP objects of the Active Directory
PKINITtools
by dirkjanm
Tools for Kerberos PKINIT and relaying to AD CS
ForgeCert
by GhostPack
"Golden" certificates
DonPAPI
by login-securite
Dumping DPAPI credz remotely
SharpRBCD
by Kryp7os
An executable that simplifies adding the msds-AllowedToActOnBehalfOfOtherIdentity attribute for RBCD
smb_discovery
by onurcangnc
a real-world reconnaissance against SMB discovery automation
ldapdomaindump
by dirkjanm
Active Directory information dumper via LDAP
autoNTDS
by hmaverickadams
autoNTDS is an automation script designed to simplify the process of dumping and cracking NTDS hashes using secretsdump.py and hashcat
ADMR
by Imp0sters
Active Directory Mindmap Recipes: A Compromise à la Carte
PetitPotam
by topotam
PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.
Certipy
by ly4k
Tool for Active Directory Certificate Services enumeration and abuse
kerbrute
by ropnop
A tool to perform Kerberos pre-auth bruteforcing
smbclient-ng
by p0dalirius
smbclient-ng, a fast and user friendly way to interact with SMB shares.
SCShell
by Mr-Un1k0d3r
Fileless lateral movement tool that relies on ChangeServiceConfigA to run command
pwndrop
by kgretzky
Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.
NetExec
by Pennyw0rth
The Network Execution Tool
SharpRDP
by 0xthirteen
Remote Desktop Protocol .NET Console Application for Authenticated Command Execution