Skip to content

ndr-repo/PSRedTeam

Repository files navigation

PSRedTeam

Disclaimer: I am not responsible for your actions. Use these tools ethically and responsibly.

Setup

git clone https://github.com/ndr-repo/PSRedTeam.git
powershell -noexit -ExecutionPolicy Bypass -File <path-to-script>.ps1

User Enumeration - Network (Web Applications)

GitHub

Enumerate-GitHubOrgMembers.ps1

Enumerate-GitHubOrgMembers.ps1 <gh-org-name>

WordPress

Enumerate-WordPressOrgMembersREST.ps1

PoC for CVE-2017-5487

Enumerate-WordPressOrgMembersREST.ps1 <target-domain>

image

Enumerate-WordPressOrgMembersREST-Bypass1.ps1

Alternate API route for WAF Bypass - CVE-2017-5487

Enumerate-WordPressOrgMembersREST-Bypass1.ps1 <target-domain>

image

Windows Post-Exploitation

AMSI Reference

AMSI7Archi-1

WMI Architecture

image

Sys32ACLs.ps1

Enumerates access control for executables in Windows\System32

powershell -noexit -ExecutionPolicy Bypass -File .\Sys32ACLs.ps1

About

PowerShell for Red Team - Reconnaisance, enumeration, and post-exploitation tools

Topics

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published