o365-attack-toolkit Logo

o365-attack-toolkit

0
Free
Visit Website

The o365-attack-toolkit is a collection of tools and scripts designed to attack and exploit vulnerabilities in Office365. It provides a range of features and functionalities to simulate attacks, test defenses, and identify weaknesses in Office365 environments. The toolkit includes tools for password spraying, password cracking, and token manipulation, as well as scripts for exploiting vulnerabilities in Office365 APIs and services. It also provides features for reconnaissance, enumeration, and data exfiltration. The o365-attack-toolkit is a powerful tool for penetration testers, red teams, and security professionals to test the security of Office365 environments and identify vulnerabilities that need to be addressed.

FEATURES

ALTERNATIVES

Utilizing Alternate Data Streams (ADS) to bypass AppLocker default policies by loading DLL/CPL binaries.

Maintaining account persistence via XSS and Oauth

A penetration testing tool for intercepting SSH connections and logging plaintext passwords.

MiniCPS is a framework for Cyber-Physical Systems real-time simulation with support for physical process and control devices simulation, and network emulation.

Very vulnerable ARM/ARM64[AARCH64] application with various levels of vulnerabilities for exploitation training.

A CVE compliant archive of public exploits and corresponding vulnerable software, and a categorized index of Internet search engine queries designed to uncover sensitive information.

Emulates Docker HTTP API with event logging and AWS deployment script.

A blog post about bypassing AppLocker using PowerShell diagnostic scripts

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved