Active Directory Open Source Projects
Browse 143 Active Directory open source projects, ranked by GitHub stars. Find the most popular Active Directory tools and libraries.
byt3bl33d3r/CrackMapExec
A swiss army knife for pentesting networks
Metrics details
| Stars | 9,156 |
S1ckB0y1337/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
Metrics details
| Stars | 6,690 |
Pennyw0rth/NetExec
The Network Execution Tool
Metrics details
| Stars | 5,702 |
JPCERTCC/LogonTracer
Investigate malicious Windows logon by visualizing and analyzing Windows event log
Metrics details
| Stars | 3,193 |
vletoux/pingcastle
PingCastle - Get Active Directory Security at 80% in 20% of the time
Metrics details
| Stars | 2,896 |
lazywinadmin/PowerShell
PowerShell functions and scripts (Azure, Active Directory, SCCM, SCSM, Exchange, O365, ...)
Metrics details
| Stars | 2,873 |
Integration-IT/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
Metrics details
| Stars | 2,750 |
documize/community
Modern Confluence alternative designed for internal & external docs, built with Go + EmberJS
Metrics details
| Stars | 2,414 |
WazeHell/vulnerable-AD
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
Metrics details
| Stars | 2,319 |
davidprowe/BadBlood
BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world. After BadBlood is ran on a domain, security analysts and engineers can practice using tools to gain an understanding and prescribe to securing Active Directory. Each time this tool runs, it produces different results. The domain, users, groups, computers and permissions are different. Every. Single. Time.
Metrics details
| Stars | 2,256 |
AutomatedLab/AutomatedLab
AutomatedLab is a provisioning solution and framework that lets you deploy complex labs on HyperV and Azure with simple PowerShell scripts. It supports all Windows operating systems from 2008 R2 to 2022, some Linux distributions and various products like AD, Exchange, PKI, IIS, etc.
Metrics details
| Stars | 2,212 |
lefayjey/linWinPwn
linWinPwn is a bash script that streamlines the use of a number of Active Directory tools
Metrics details
| Stars | 2,188 |
lkarlslund/Adalanche
Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?
Metrics details
| Stars | 2,188 |
MichaelGrafnetter/DSInternals
Directory Services Internals (DSInternals) PowerShell Module and Framework
Metrics details
| Stars | 1,961 |
ihebski/A-Red-Teamer-diaries
RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
Metrics details
| Stars | 1,928 |
jakubgarfield/Bonobo-Git-Server
Bonobo Git Server for Windows is a web application you can install on your IIS and easily manage and connect to your git repositories. Go to homepage for release and more info.
Metrics details
| Stars | 1,832 |
mikeroyal/Windows-11-Guide
Windows 10/11 Guide. Including Windows Security tools, Encryption, Nextcloud, Graphics, Gaming, Virtualization, Windows Subsystem for Linux (WSL 2), Software Apps, and Resources.
Metrics details
| Stars | 1,769 |
byt3bl33d3r/DeathStar
Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Directory environments using some of the most common offensive TTPs.
Metrics details
| Stars | 1,618 |
TrimarcJake/Locksmith
A small tool built to detect and fix common misconfigurations in Active Directory Certificate Services.
Metrics details
| Stars | 1,558 |
Qianlitp/WatchAD
AD Security Intrusion Detection System
Metrics details
| Stars | 1,322 |
PlumHound/PlumHound
Bloodhound Reporting for Blue and Purple Teams
Metrics details
| Stars | 1,299 |
RistBS/Awesome-RedTeam-Cheatsheet
Red Team Cheatsheet in constant expansion.
Metrics details
| Stars | 1,286 |
rng70/TryHackMe-Roadmap
a list of 350+ Free TryHackMe rooms to start learning cybersecurity with THM
Metrics details
| Stars | 1,221 |
nccgroup/redsnarf
RedSnarf is a pen-testing / red-teaming tool for Windows environments
Metrics details
| Stars | 1,217 |
The-Viper-One/PsMapExec
Dominate Active Directory with PowerShell.
Metrics details
| Stars | 1,190 |
dirkjanm/adidnsdump
Active Directory Integrated DNS dumping by any authenticated user
Metrics details
| Stars | 1,170 |
NH-RED-TEAM/RustHound
Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀
Metrics details
| Stars | 1,163 |
the-useless-one/pywerview
A (partial) Python rewriting of PowerSploit's PowerView
Metrics details
| Stars | 1,132 |
lkarlslund/ldapnomnom
Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)
Metrics details
| Stars | 1,123 |
mdecrevoisier/Microsoft-eventlog-mindmap
Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...
Metrics details
| Stars | 1,100 |
WazeHell/sam-the-admin
Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user
Metrics details
| Stars | 1,060 |
Badgerati/Pode
Pode is a Cross-Platform PowerShell web framework for creating REST APIs, Web Sites, and TCP/SMTP servers
Metrics details
| Stars | 1,053 |
Macmod/godap
A complete terminal user interface (TUI) for LDAP.
Metrics details
| Stars | 964 |
p0dalirius/LDAPmonitor
Monitor creation, deletion and changes to LDAP objects live during your pentest or system administration!
Metrics details
| Stars | 944 |
OpenIdentityPlatform/OpenAM
OpenAM is an open-source access management solution for identity authentication, authorization, and federation. It provides single sign-on, adaptive authentication, and centralized policy control, enabling secure access to web, mobile, and cloud applications
Metrics details
| Stars | 879 |
0xdea/tactical-exploitation
Modern tactical exploitation toolkit.
Metrics details
| Stars | 866 |
cyberark/ACLight
A script for advanced discovery of Privileged Accounts - includes Shadow Admins
Metrics details
| Stars | 830 |
vmware-tanzu/pinniped
Pinniped is the easy, secure way to log in to your Kubernetes clusters.
Metrics details
| Stars | 729 |
HarmVeenstra/Powershellisfun
Repository with the scripts that I have used in my blogs on https://powershellisfun.com. If you like these, please sponsor this project using the Sponsor button below or buy me a coffee :) https://www.buymeacoffee.com/powershellisfun
Metrics details
| Stars | 717 |
scriptrunner/ActionPacks
Public PowerShell script gallery for ScriptRunner.
Metrics details
| Stars | 715 |
r1cksec/cheatsheets
Collection of knowledge about information security
Metrics details
| Stars | 688 |
chryzsh/DarthSidious
Building an Active Directory domain and hacking it
Metrics details
| Stars | 667 |
techspence/ScriptSentry
ScriptSentry finds misconfigured and dangerous logon scripts.
Metrics details
| Stars | 665 |
tomwechsler/Active_Directory_Advanced_Threat_Hunting
This repo is about Active Directory Advanced Threat Hunting
Metrics details
| Stars | 652 |
EvotecIT/Testimo
Testimo is a PowerShell module for running health checks for Active Directory against a bunch of different tests
Metrics details
| Stars | 649 |
tomcarver16/ADSearch
A tool to help query AD via the LDAP protocol
Metrics details
| Stars | 640 |
GoFetchAD/GoFetch
GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.
Metrics details
| Stars | 636 |
Lifailon/PS-Commands
Large 📚 base of PowerShell notes in Russian language
Metrics details
| Stars | 624 |
The-Viper-One/Pentest-Everything
A collection of CTF write-ups, pentesting topics, guides and notes. Notes compiled from multiple sources and my own lab research. Topics also support OSCP, Active Directory, CRTE, eJPT and eCPPT.
Metrics details
| Stars | 617 |
SwiftOnSecurity/OrgKit
Provision a brand-new company with proper defaults in Windows, Offic365, and Azure
Metrics details
| Stars | 616 |
InfosecMatter/Minimalistic-offensive-security-tools
A repository of tools for pentesting of restricted and isolated environments.
Metrics details
| Stars | 597 |
lithnet/ad-password-protection
Active Directory password filter featuring breached password checking and custom complexity rules
Metrics details
| Stars | 570 |
dotnet/Kerberos.NET
A Kerberos implementation built entirely in managed code.
Metrics details
| Stars | 565 |
tobor88/PowerShell-Red-Team
Collection of PowerShell functions a Red Teamer may use in an engagement
Metrics details
| Stars | 550 |
EvotecIT/ADEssentials
PowerShell Active Directory helper functions to manage healthy Active Directory
Metrics details
| Stars | 549 |
ANSSI-FR/ADTimeline
Timeline of Active Directory changes with replication metadata
Metrics details
| Stars | 530 |
layer8secure/SilentHound
Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.
Metrics details
| Stars | 504 |
blackhillsinfosec/EventLogging
Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.
Metrics details
| Stars | 490 |
idnahacks/GoodHound
Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.
Metrics details
| Stars | 488 |
mpgn/CrackMapExec
A swiss army knife for pentesting networks
Metrics details
| Stars | 472 |
