Stars
AIGoat: A deliberately Vulnerable AI Infrastructure. Learn AI security through solving our challenges.
Save toil in security operations with: Detection & Intelligence Analysis for New Alerts (D.I.A.N.A. )
This repo is for Microsoft Azure customers and Microsoft teams to collaborate in making custom policies.
Microsoft Azure Security Technologies
Azure Quickstart Templates
Sysmon configuration file template with default high-quality event tracing
A curated list of awesome Microsoft Azure Security tools, guides, blogs, and other resources.
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
Find, verify, and analyze leaked credentials
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
M0M3NTUM44 / GOAD
Forked from Orange-Cyberdefense/GOADgame of active directory
IAM Least Privilege Policy Generator
Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.
A tiny tool built to help AD Admins safely utilize the Protected Users group.
PowerShell framework to assess Azure security
Repo for ADACLScan.ps1 - Your number one script for ACL's in Active Directory
C# implementation of harmj0y's PowerView
A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileg…
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Supplemental information and resources for the Security Benchmark documentation available at https://docs.microsoft.com/azure/security/benchmarks/.
PowerShell MachineAccountQuota and DNS exploit tools
PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as well.
SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
A .NET tool for exporting and importing certificates without touching disk.
PowerShell toolkit for AD CS auditing based on the PSPKI toolkit.