Adalanche
pingcastle
Adalanche | pingcastle | |
---|---|---|
17 | 16 | |
1,530 | 2,129 | |
- | - | |
9.0 | 5.6 | |
about 2 months ago | 2 months ago | |
Go | C# | |
GNU Affero General Public License v3.0 | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Adalanche
- Active Directory ACL Visualizer and Explorer
-
Adalanche v2023.5.3 released
You can find open source edition at GitHub (https://github.com/lkarlslund/Adalanche) as usual.
-
Active Directory Security Tools
Adalanche - AD ACL Explorer/Visualizer - https://github.com/lkarlslund/Adalanche
-
Adalanche
Adalanche instantly shows what permissions users and groups have in Active Directory. Collects and analyzes information from AD or from local Windows machines. Allows you to find misconfigurations and see who can take over accounts, machines or the entire domain. Kindly recommended by dcdiagfix.
- adalanche v2021.11.3 released: new UI, better analysis, improved performance
- adalanche: Active Directory ACL Visualizer and Explorer - who's really Domain Admin?
-
A bit of a rant....
You could you try my tool adalanche (https://github.com/lkarlslund/adalanche), which visualizes who can do what in your Active Directory environment. Many managers aren't technical at all, but if they see a graph showing how Mike from HR can basically become DA and then assign himself permissions to read the Director of ITs emails, perhaps that could help convince them.
-
Privileges needed in VCenter to take over a virtualized Domain Controller?
I'm working on an experimental addition to my graph based Active Directory analyzer "adalanche" (https://github.com/lkarlslund/adalanche) and as I'm more blue than red I could use some input from you.
pingcastle
-
Open source vulnerability scanner
I use OpenVas (on Kali) and PingCastle (on Windows).
-
PingCastle and Active Directory hardening
Hi! I just ran PingCastle and I got two major issues:
-
Server 2016 - Enterprise Key Admins GPO linking delegation at the domain level & the domain controller OU level
You can also run these types of assessments yourself using tools such as - https://www.purple-knight.com/ - and - https://www.pingcastle.com - both will provide very detailed reports and steps for remediation.
- Specific user account breaks any computers domain connection is logs into... Stumped!
-
AD security post ransomware :(
https://www.pingcastle.com/ (free open source tool)
-
Active Directory Security Tools
PingCastle - the OG AD hygiene scanner - https://www.pingcastle.com/
-
Resetting Password permissions
Create a security group and delegate permissions to that. I suggest you get a copy of Ping Castle and do an AD scan and figure out what else is misconfigured. https://www.pingcastle.com/
-
Azure AD auditing tools
Try PingCastle ! The easiest and gives you lot of info + remmediation
- Domain Admin Security Training
- Best solutions to check rights, access and general security
What are some alternatives?
BloodHound - Six Degrees of Domain Admin
GOAD - game of active directory
access-manager - Access Manager provides web-based access to local admin (LAPS) passwords, BitLocker recovery keys, and just-in-time administrative access to Windows computers in a modern, secure, and user-friendly way.
ldapnomnom - Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)
adsys - Active Directory bridging tool suite
Kerberos.NET - A Kerberos implementation built entirely in managed code.
AutomatedLab - AutomatedLab is a provisioning solution and framework that lets you deploy complex labs on HyperV and Azure with simple PowerShell scripts. It supports all Windows operating systems from 2008 R2 to 2022, some Linux distributions and various products like AD, Exchange, PKI, IIS, etc.
11Bchecker
HardeningKitty - HardeningKitty - Checks and hardens your Windows configuration