How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
StandIn is a small AD post-compromise toolkit. StandIn came about because recently at xforcered we needed a .NET native solution to perform resource based constrained delegation. However, StandIn quickly ballooned to include a number of comfort features.
The main features of fuzzysecurity/standin are: Domain Situational Awareness.
Open-source alternatives to fuzzysecurity/standin include: adrecon/adrecon — This repo contains updates to the original concept and code by Prashant Mahajan (@prashant3535) while working at Sense… bats3c/adcspwn — A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts… bloodhoundad/bloodhound — BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within… ghostpack/pspkiaudit — PowerShell toolkit for auditing Active Directory Certificate Services (AD CS). improsec/improhound — Identify the attack paths in BloodHound breaking your AD tiering. l0ss/grouper — DONT USE GROUPER ANY MORE. USE GROUPER2! https://github.com/l0ss/Grouper2.
A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts (Petitpotam) and relaying to the certificate service.
BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for
PowerShell toolkit for auditing Active Directory Certificate Services (AD CS).
This repo contains updates to the original concept and code by Prashant Mahajan (@prashant3535) while working at Sense of Security.