{"id":50785213,"url":"https://github.com/hausec/hausec","last_synced_at":"2026-06-12T07:05:35.011Z","repository":{"id":363863353,"uuid":"1265283081","full_name":"hausec/hausec","owner":"hausec","description":null,"archived":false,"fork":false,"pushed_at":"2026-06-10T16:47:47.000Z","size":4,"stargazers_count":0,"open_issues_count":0,"forks_count":0,"subscribers_count":0,"default_branch":"main","last_synced_at":"2026-06-10T18:18:02.751Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/hausec.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2026-06-10T16:23:28.000Z","updated_at":"2026-06-10T16:48:00.000Z","dependencies_parsed_at":null,"dependency_job_id":null,"html_url":"https://github.com/hausec/hausec","commit_stats":null,"previous_names":["hausec/hausec"],"tags_count":null,"template":false,"template_full_name":null,"purl":"pkg:github/hausec/hausec","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hausec%2Fhausec","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hausec%2Fhausec/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hausec%2Fhausec/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hausec%2Fhausec/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/hausec","download_url":"https://codeload.github.com/hausec/hausec/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hausec%2Fhausec/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":34232858,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-05-26T15:22:16.424Z","status":"online","status_checked_at":"2026-06-12T02:00:06.859Z","response_time":109,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2026-06-12T07:05:34.236Z","updated_at":"2026-06-12T07:05:35.003Z","avatar_url":"https://github.com/hausec.png","language":null,"funding_links":[],"categories":[],"sub_categories":[],"readme":"## Blog Posts\n\n### Topic: AI \u0026 Agentic Security\n\n* [Building Agentic C2 with Computer Use Agents](https://www.beyondtrust.com/blog/entry/claude-control-agentic-c2-computer-use-agent)\n\n### Topic: Azure \u0026 Cloud Security\n\n* [Azure Storage Account Attacks and Detections](https://hausec.com/2025/12/15/azure-storage-account-attack-and-detection/)\n* [Azure Virtual Machine Execution Techniques](https://hausec.com/2022/05/04/azure-virtual-machine-execution-techniques/)\n* [Abusing and Detecting Alternative Data Channel Command Execution on Azure Virtual Machines](https://hausec.com/2021/12/03/abusing-and-detecting-alternative-data-channels-and-managed-identities-on-azure-virtual-machines/)\n* [PowerZure 2.1 Update](https://hausec.com/2021/12/21/powerzure-2-1-update/)\n* [Attacking Azure \u0026 Azure AD, Part II](https://hausec.com/2021/10/26/attacking-azure-azure-ad-part-ii/)\n* [AzureHound Cypher Cheatsheet](https://hausec.com/2020/11/23/azurehound-cypher-cheatsheet/)\n* [Defense and Detection for Attacks Within Azure](https://medium.com/specter-ops-posts/detecting-attacks-within-azure-bdc40f8c0766)\n* [Attacking Azure, Azure AD, and Introducing PowerZure](https://hausec.com/2020/01/31/attacking-azure-azure-ad-and-introducing-powerzure/)\n\n### Topic: Active Directory \u0026 Kerberos\n\n* [Kerberosity Killed the Domain: An Offensive Kerberos Overview](https://hausec.com/2020/03/10/kerberosity-killed-the-domain-an-offensive-kerberos-overview/)\n* [BloodHound Cypher Cheatsheet](https://hausec.com/2019/09/09/bloodhound-cypher-cheatsheet/)\n* [CypherDog Cheatsheet](https://hausec.com/2019/04/15/bloodhound-and-cypherdog-cheatsheet/)\n* [Penetration Testing Active Directory, Part II](https://hausec.com/2019/03/12/penetration-testing-active-directory-part-ii/)\n* [Penetration Testing Active Directory, Part I](https://hausec.com/2019/03/05/penetration-testing-active-directory-part-i/)\n* [Active Directory Assessment and Privilege Escalation Script 2.0](https://hausec.com/2018/10/08/active-directory-assessment-and-privilege-escalation-script/)\n* [Domain Penetration Testing: Using BloodHound, Crackmapexec, \u0026 Mimikatz to get Domain Admin](https://hausec.com/2017/10/21/domain-penetration-testing-using-bloodhound-crackmapexec-mimikatz-to-get-domain-admin/)\n* [Domain Penetration Testing: Privilege Escalation via Group Policy Preferences (GPP)](https://hausec.com/2017/10/19/domain-penetration-testing-privilege-escalation-via-sysvol-share-on-domain-controller/)\n* [Domain Penetration Testing: Credential Harvesting via LLMNR Poisoning](https://hausec.com/2017/10/19/domain-penetration-testing-credential-harvesting-via-llmnr-poisoning/)\n* [Using Bloodhound to Map the Domain](https://hausec.com/2017/10/26/using-bloodhound-to-map-the-user-network/)\n\n### Topic: Offensive Tradecraft\n\n* [Cobalt Strike and Tradecraft](https://hausec.com/2021/07/26/cobalt-strike-and-tradecraft/)\n* [Using a C# Shellcode Runner and ConfuserEx to Bypass UAC while Evading AV](https://hausec.com/2020/10/30/using-a-c-shellcode-runner-and-confuserex-to-bypass-uac-while-evading-av/)\n* [Offensive Lateral Movement](https://hausec.com/2019/08/12/offensive-lateral-movement/)\n* [Creating a Red \u0026 Blue Team Homelab](https://hausec.com/2021/03/04/creating-a-red-blue-team-home-lab/)\n\n### Topic: Exploit Development \u0026 Privilege Escalation\n\n* [Windows Privilege Escalation via Unquoted Service Paths](https://hausec.com/2018/10/05/windows-privilege-escalation-via-unquoted-service-paths/)\n* [Simple Buffer Overflows (x32)](https://hausec.com/2018/04/02/simple-buffer-overflows-x32/)\n* [Using ETERNALBLUE \u0026 DOUBLEPULSAR (Shadowbroker's Dump/NSA Tools)](https://hausec.com/2017/09/19/using-eternalblue-doublepulsar-shadowbrokers-dumpnsa-tools/)\n* [How to set up Fuzzbunch (Shadowbroker's Dump/NSA Tools)](https://hausec.com/2017/09/19/how-to-set-up-fuzzbunch-shadowbrokers-dumpnsa-tools/)\n* [How to get root privileges using dirtyc0w [the harder way]](https://hausec.com/2016/10/27/how-to-get-root-privileges-using-dirtyc0w/)\n\n## Major Projects\n| Name | Description|\n|--------------|------------|\n|[Azure Threat Research Matrix](https://aka.ms/atrm)| Azure-based tactics, techniques, and procedures matrix |\n|[PowerZure](https://github.com/hausec/PowerZure)| PowerShell project created to assess and exploit resources within Microsoft’s cloud platform|\n|[AzureHound](https://github.com/BloodHoundAD/Legacy-AzureHound.ps1)| Azure \u0026 Entra Component to BloodHound|\n|[Active Directory \u0026 Privilege Escalation Script](https://github.com/hausec/ADAPE-Script)| Script to automate a bunch of pentesting tasks|\n\n\n## Attributed CVEs\n| CVE |\n|--------------|\n|CVE-2026-9258|\n|CVE-2026-9259|\n|CVE-2026-9260|\n|CVE-2026-9261|\n|CVE-2026-9262|\n## Conference Talks\n| Conference | Talk |\n|--------------|------------|\n| BSides Raleigh, SecureWorld Charlotte, \u0026 [Hybrid Identity Conference 2020](https://www.youtube.com/watch?v=MIt-tIjMr08)|[Attack]tive Directory: Compromising a Network in 20 Minutes Through Active Directory|\n| DEFCON 34 | Wrestling with a Python: Escaping Copilot Studio's AI-Guarded Sandbox|\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fhausec%2Fhausec","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fhausec%2Fhausec","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fhausec%2Fhausec/lists"}