awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
GhostPack avatar

GhostPack/Certify

0
View on GitHub↗
1,994 stars·274 forks·C#·8 views

Certify

Certify is a C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS).

Features

  • Active Directory Auditing - Identifies and exploits misconfigurations in AD Certificate Services.
  • Active Directory Exploitation - Audit and exploit Active Directory Certificate Services configurations.
  • Domain Privilege Escalation - Tool for auditing and exploiting Active Directory Certificate Services.
  • Offensive Security Tools - Tool for Active Directory certificate abuse.
  • Post Exploitation - Tool for auditing and exploiting Active Directory Certificate Services.
  • Privilege Escalation and Auditing - Enumerates and exploits misconfigurations in Active Directory Certificate Services.
  • Security Tooling - Enumeration and abuse of Active Directory Certificate Services.

Star history

Star history chart for ghostpack/certifyStar history chart for ghostpack/certify

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Certify

Similar open-source projects, ranked by how many features they share with Certify.
  • ghostpack/rubeusGhostPack avatar

    GhostPack/Rubeus

    4,890View on GitHub↗

    Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full suite of operations for manipulating Kerberos tickets, exploiting delegation configurations, and performing credential attacks against Windows domains. The toolkit enables ticket extraction from logon sessions and memory, with real-time monitoring via Event Tracing for Windows. It supports forging golden and silver tickets with arbitrary privileges, as well as the creation of forged delegation contexts. Delegation attacks include abuse of constrained and unconstrained delegat

    C#kerberos
    View on GitHub↗4,890
  • byt3bl33d3r/crackmapexecbyt3bl33d3r avatar

    byt3bl33d3r/CrackMapExec

    9,144View on GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    View on GitHub↗9,144
  • bloodhoundad/bloodhoundBloodHoundAD avatar

    BloodHoundAD/BloodHound

    10,552View on GitHub↗

    BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for

    PowerShell
    View on GitHub↗10,552
  • fox-it/aclpwn.pyF

    fox-it/aclpwn.py

    0View on GitHub↗
    View on GitHub↗0
See all 30 alternatives to Certify→

Frequently asked questions

What does ghostpack/certify do?

Certify is a C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS).

What are the main features of ghostpack/certify?

The main features of ghostpack/certify are: Active Directory Auditing, Active Directory Exploitation, Domain Privilege Escalation, Offensive Security Tools, Post Exploitation, Privilege Escalation and Auditing, Security Tooling.

What are some open-source alternatives to ghostpack/certify?

Open-source alternatives to ghostpack/certify include: ghostpack/rubeus — Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full… ghostpack/pspkiaudit — PowerShell toolkit for auditing Active Directory Certificate Services (AD CS). bloodhoundad/bloodhound — BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within… byt3bl33d3r/crackmapexec — CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security… fox-it/aclpwn.py. ly4k/certipy — Tool for Active Directory Certificate Services enumeration and abuse.