Lists (1)
Sort Name ascending (A-Z)
Stars
Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.
BadZure orchestrates the setup of Azure AD tenants, populating them with diverse entities while also introducing common security misconfigurations to create vulnerable tenants with multiple attack β¦
Various webshells. We accept pull requests for additions to this collection.
Simple hunting script for suspicious M365 OAuth Apps
AADInternals PowerShell module for administering Azure AD and Office 365
Azure Security Resources and Notes
The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to proactively identify risks in generative AI systems.
Epyon is a swiss army knife tool for pentesting DevOps ecosystems.
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
netshell features all in version 2 powershell
π List of free and downloadable top 1M domain list (alexa alternatives) π
π Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!
Microsoft Entra PowerShell
Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
Azure AD (Entra ID) enumeration tool. Find related domains and tenant information in a simple way.
My custom created nuclei for SQLi, bugbounty, pentesting
Self-hosted bug bounty programs that are "scammy" or unethical
Azure Red Team tool for graphing Azure and Azure Active Directory objects
Extract URLs, paths, secrets, and other interesting bits from JavaScript