Skip to content
View mvelazc0's full-sized avatar

Block or report mvelazc0

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable with a simple HTML GUI.

HTML 98 4 Updated Mar 26, 2025

A collection of scripts for assessing Microsoft Azure security

PowerShell 2,122 317 Updated Mar 19, 2025

A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

PowerShell 450 51 Updated Mar 25, 2025

PowerShell tools to help defenders hunt smarter, hunt harder.

PowerShell 331 36 Updated Mar 5, 2025
Python 204 15 Updated Mar 28, 2025

A guide to using Azure Data Explorer and KQL for DFIR

102 22 Updated May 16, 2022

Collection of KQL queries

1,501 353 Updated Dec 22, 2024

ShellSweeping the evil.

YARA 163 15 Updated Nov 25, 2024

Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown

1,285 94 Updated Feb 17, 2025

Azure Security Resources and Notes

PowerShell 1,529 207 Updated Jun 12, 2024

Cover various security approaches to attack techniques and also provides new discoveries about security breaches.

PowerShell 471 74 Updated Jan 19, 2025

CoffeeShot: Avoid Detection with Memory Injection

Java 74 15 Updated Aug 6, 2018

C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps

C# 137 23 Updated Jul 25, 2024

M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response capabilities.

Python 282 17 Updated Mar 1, 2025

Initial Access and Post-Exploitation Tool for AAD and O365 with a browser-based GUI

HTML 668 69 Updated Feb 3, 2025

Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection

C++ 286 65 Updated May 17, 2024

Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird + Spawns a sacrificial Process as target process + (ACG+Bloc…

C 659 90 Updated Mar 12, 2025

SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Directory Web Services (ADWS) protocol.

C# 721 74 Updated Feb 3, 2024

A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk

Jinja 2,254 374 Updated Mar 30, 2025

Materials for the workshop "Red Team Ops: Havoc 101"

C# 369 49 Updated Oct 6, 2024

A collection of Azure AD/Entra tools for offensive and defensive security purposes

Python 2,092 292 Updated Mar 27, 2025

Validates username & password combination(s) across a host or group of hosts using the SMB protocol.

PowerShell 14 4 Updated Apr 6, 2020

Small tool to play with IOCs caused by Imageload events

C++ 42 8 Updated May 14, 2023

Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as well as a blueprint for how others can create and use cloud an…

HCL 53 9 Updated Apr 25, 2023

Research into Undocumented Behavior of Azure AD Refresh Tokens

Python 254 31 Updated Feb 23, 2024

SharpShareFinder is a minimalistic network share discovery POC designed to enumerate shares in Windows Active Directory networks leveraging .NET parallelism.

C# 27 2 Updated Jul 10, 2024

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

PowerShell 599 88 Updated Mar 14, 2025

A Post-exploitation Toolset for Interacting with the Microsoft Graph API

PowerShell 1,068 123 Updated Nov 7, 2024
Next
Showing results