awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Ridter avatar

Ridter/Intranet_Penetration_Tips

0
View on GitHub↗
4,606 stars·1,074 forks·13 views

Intranet Penetration Tips

This project is a technical guide and reference for internal network penetration testing. It serves as a collection of procedures for exploiting and navigating private corporate networks during security assessments.

The repository provides specialized manuals and cheat sheets focused on active directory attacks, lateral movement, and privilege escalation. It includes a post-exploitation playbook for maintaining system persistence and clearing forensic traces.

The documentation covers a broad range of security capabilities, including initial access, network pivoting and tunneling, and internal reconnaissance. It also details methods for evading security detection and compromising directory services to extract domain hashes.

Features

  • Internal Network Penetration Testers - Provides a comprehensive technical guide for scanning, exploiting, and navigating internal corporate networks.
  • Directory Database Permission Manipulations - Provides a comprehensive guide to compromising directory services, extracting domain hashes, and manipulating group policies.
  • Active Directory Exploitation - Serves as a technical reference for attacking domain controllers and directory services to gain domain control.
  • Initial Access - Explains methods for gaining a foothold in internal networks via weak credentials or vulnerable web apps.
  • Lateral Movement - Describes techniques for moving between internal hosts by scanning ports and exploiting services.
  • Post Exploitation - Provides a playbook for maintaining long-term system access and removing forensic footprints.
  • Registry Persistence - Details the use of registry keys and scheduled tasks to maintain long-term access across reboots.
  • Exploitation Workflows - Outlines the linear progression from initial access to full domain compromise through linked procedures.
  • Anti-Forensic Trace Wiping - Includes techniques for deleting system event logs and login records to evade forensic detection.
  • Antivirus Detection Bypasses - Details the use of code injection and obfuscation to bypass antivirus and EDR software.
  • Post-Exploitation Toolkits - Features a post-exploitation toolkit for maintaining persistence and gathering data after initial compromise.
  • Privilege Escalation Techniques - Documents methods for increasing system access levels by exploiting OS flaws and misconfigurations.
  • Kernel Privilege Escalations - Details the process of exploiting kernel-level vulnerabilities to achieve administrative privileges.
  • Privilege Escalation Guides - Provides specialized cheat sheets for increasing access levels by exploiting kernel flaws or service misconfigurations.
  • Host Reconnaissance - Provides procedures for gathering information about local users, processes, and network topology.
  • Remote Command Execution Tools - Details the use of administration tools and protocols to execute programs on remote target systems.
  • Active Directory Attacks - Supplies instructions for compromising directory services, extracting domain hashes, and manipulating group policies.
  • Modular Attack Vectors - Organizes attack vectors into independent checklists for reconnaissance, privilege escalation, and persistence.
  • Command and Control - Provides guidance on establishing communication channels between compromised hosts and a C2 controller.
  • Knowledge Bases - Provides a structured knowledge base that categorizes security techniques by the stages of a penetration test.
  • Command Reference Guides - Provides curated collections of shell commands and executable payloads for internal network exploitation.
  • Example Scenarios - Pairs theoretical attack vectors with concrete command-line examples and target environment scenarios.
  • Network Pivoting Tools - Provides instructions for forwarding traffic and tunneling connections across network boundaries via proxies.
  • Windows Privilege Escalations - Provides a cheat sheet for escalating privileges on Windows systems via kernel and service exploits.
  • Passive Reconnaissance - Details the collection of organizational intelligence through public records and subdomain enumeration.
  • Technique Indexes - Organizes attack commands and scripts based on their functional role in the exploitation lifecycle.
  • Remote File Transfers - Provides methods for moving tools and data between local and remote machines using native utilities.

Star history

Star history chart for ridter/intranet_penetration_tipsStar history chart for ridter/intranet_penetration_tips

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with Intranet Penetration Tips

These projects share indexed features with Intranet Penetration Tips. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • samratashok/nishangsamratashok avatar

    samratashok/nishang

    9,951View on GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    View on GitHub↗9,951
  • mantvydasb/redteaming-tactics-and-techniquesmantvydasb avatar

    mantvydasb/RedTeaming-Tactics-and-Techniques

    4,620View on GitHub↗

    This project is a red teaming knowledge base and offensive security playbook designed to simulate adversary behavior. It serves as a comprehensive collection of technical guides and tactics for executing red team operations. The repository provides detailed instructions for Active Directory exploitation, including Kerberos abuse and domain privilege escalation. It covers defense evasion through API unhooking and payload obfuscation, as well as Windows internals research involving the manipulation of kernel objects and system memory. The capability surface extends to network penetration testi

    PowerShelloffensive-securityoscppentesting
    View on GitHub↗4,620
  • k8gege/ladonk8gege avatar

    k8gege/Ladon

    5,297View on GitHub↗

    Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk security flaws and assets across network segments. It operates as a fileless security scanner, executing its engine and modules directly in memory to avoid leaving a disk footprint on target systems. The project is distinguished by its integration as a plugin for command beacons, specifically within the Cobalt Strike framework. This allows for memory-resident network discovery and vulnerability detection. It further supports stealth operations through payload and script obfuscatio

    C#brute-forceexpexploit
    View on GitHub↗5,297
  • x0rz/eqgrpx0rz avatar

    x0rz/EQGRP

    4,201View on GitHub↗

    EQGRP is a remote access trojan framework and post-exploitation toolkit. It provides a centralized command and control infrastructure for deploying persistent implants and managing remote agents across diverse operating systems. The project includes tools for digital forensic evasion, such as modifying system logs and filesystem timestamps to remove execution traces. It features a network interception system for capturing and reconstructing data streams by hooking into the system root, as well as exploits designed for kernel privilege escalation to elevate process permissions to administrativ

    Perl
    View on GitHub↗4,201
Compare all 30 related projects→

Frequently asked questions

What does ridter/intranet_penetration_tips do?

This project is a technical guide and reference for internal network penetration testing. It serves as a collection of procedures for exploiting and navigating private corporate networks during security assessments.

What are the main features of ridter/intranet_penetration_tips?

The main features of ridter/intranet_penetration_tips are: Internal Network Penetration Testers, Directory Database Permission Manipulations, Active Directory Exploitation, Initial Access, Lateral Movement, Post Exploitation, Registry Persistence, Exploitation Workflows.

Which projects share features with ridter/intranet_penetration_tips?

Projects with overlapping indexed features include: samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… mantvydasb/redteaming-tactics-and-techniques — This project is a red teaming knowledge base and offensive security playbook designed to simulate adversary behavior.… k8gege/ladon — Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk… x0rz/eqgrp — EQGRP is a remote access trojan framework and post-exploitation toolkit. It provides a centralized command and control… securethisshit/winpwn — WinPwn is a Windows penetration testing framework designed for conducting internal security assessments and privilege… hmaverickadams/beginner-network-pentesting — This is a hands-on lab environment for learning network penetration testing techniques, centered on setting up and…