How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
This repo contains updates to the original concept and code by Prashant Mahajan (@prashant3535) while working at Sense of Security.
The main features of adrecon/adrecon are: Domain Situational Awareness, PowerShell Tooling.
Projects with overlapping indexed features include: arvanaghi/sessiongopher. bats3c/adcspwn — A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts… bloodhoundad/bloodhound — BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within… dafthack/domainpasswordspray — DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By… dafthack/mailsniper — MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific… arno0x/powershellscripts.
A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts (Petitpotam) and relaying to the certificate service.
BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for