Zurück zum Ranking

Orange-Cyberdefense/GOAD

PowerShell

game of active directory

active-directoryinfrastructure-as-codepentestansibleterraformvagrant
Sterne-Wachstum
Sterne
8.1k
Forks
1.1k
Wochenwachstum
Issues
113
2k4k6k8k
Jan. 2023März 2024Mai 2025Juli 2026
README

GOAD (Game Of Active Directory)


GOAD (v3)

:bookmark: Documentation : https://orange-cyberdefense.github.io/GOAD/

Description

GOAD is a pentest active directory LAB project. The purpose of this lab is to give pentesters a vulnerable Active directory environment ready to use to practice usual attack techniques.

[!CAUTION] This lab is extremely vulnerable, do not reuse recipe to build your environment and do not deploy this environment on internet without isolation (this is a recommendation, use it as your own risk).
This repository was build for pentest practice.

goad_screenshot

Licenses

This lab use free Windows VM only (180 days). After that delay enter a license on each server or rebuild all the lab (may be it's time for an update ;))

Available labs

  • GOAD Lab family and extensions overview
GOAD
  • GOAD : 5 vms, 2 forests, 3 domains (full goad lab)
GOAD
  • GOAD-Light : 3 vms, 1 forest, 2 domains (smaller goad lab for those with a smaller pc)
GOAD Light
  • MINILAB: 2 vms, 1 forest, 1 domain (basic lab with one DC (windows server 2019) and one Workstation (windows 10))

  • SCCM : 4 vms, 1 forest, 1 domain, with microsoft configuration manager installed

SCCM
  • NHA : A challenge with 5 vms and 2 domains. no schema provided, you will have to find out how break it.
SCCM
  • DRACARYS : A challenge with 3 vms and 1 domains. no schema provided, you will have to find out how break it.
SCCM
Ähnliche Repositories
byt3bl33d3r/CrackMapExec

A swiss army knife for pentesting networks

PythonPyPIBSD 2-Clause "Simplified" Licensepythonactive-directory
9.2k1.7k
S1ckB0y1337/Active-Directory-Exploitation-Cheat-Sheet

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

MIT Licenseactivedirectoryactive-directory
6.7k1.3k
Pennyw0rth/NetExec

The Network Execution Tool

PythonPyPIBSD 2-Clause "Simplified" Licensehackingpentest
netexec.wiki
5.7k731
JPCERTCC/LogonTracer

Investigate malicious Windows logon by visualizing and analyzing Windows event log

PythonPyPIOthersecuritydfir
3.2k488
netwrix/pingcastle

PingCastle - Get Active Directory Security at 80% in 20% of the time

C#Otheractive-directoryping-castle
pingcastle.com
2.9k351
lazywinadmin/PowerShell

PowerShell functions and scripts (Azure, Active Directory, SCCM, SCSM, Exchange, O365, ...)

PowerShellMIT Licensepowershellscripting
lazywinadmin.com
2.9k745
Integration-IT/Active-Directory-Exploitation-Cheat-Sheet

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

PowerShellMIT Licenseactive-directoryactive-directory-cheatsheet
2.8k518
safebuffer/vulnerable-AD

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

PowerShellMIT Licenseactive-directorypowershell
2.3k447
AutomatedLab/AutomatedLab

AutomatedLab is a provisioning solution and framework that lets you deploy complex labs on HyperV and Azure with simple PowerShell scripts. It supports all Windows operating systems from 2008 R2 to 2022, some Linux distributions and various products like AD, Exchange, PKI, IIS, etc.

PowerShellMIT Licensepowershelldeployment
2.2k387
lefayjey/linWinPwn

linWinPwn is a bash script that streamlines the use of a number of Active Directory tools

ShellMIT Licensepenetration-testingpentesting
2.2k303
lkarlslund/Adalanche

Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?

GoGo ModulesGNU Affero General Public License v3.0blueteamactive-directory
netsection.com
2.2k204
MichaelGrafnetter/DSInternals

Directory Services Internals (DSInternals) PowerShell Module and Framework

C#MIT Licensesecurity-auditpenetration-testing
dsinternals.com
2k277