How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
Certify is a C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS).
BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for
Repo for ADACLScan.ps1 - Your number one script for ACL's in Active Directory
PowerShell toolkit for auditing Active Directory Certificate Services (AD CS).
The main features of ghostpack/pspkiaudit are: Active Directory Auditing, Domain Situational Awareness, Post Exploitation, Security Tooling.
Open-source alternatives to ghostpack/pspkiaudit include: ghostpack/certify — Certify is a C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS). bloodhoundad/bloodhound — BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within… fox-it/aclpwn.py. canix1/adaclscanner — Repo for ADACLScan.ps1 - Your number one script for ACL's in Active Directory. dirkjanm/ldapdomaindump. ghostpack/rubeus — Rubeus is a comprehensive Kerberos attack toolkit for Active Directory environments, written in C#. It provides a full…