For Tool für SMB- und LDAP-Enumeration, the strongest matches are pennyw0rth/netexec (NetExec formerly CrackMapExec is a multi-protocol penetration testing framework), byt3bl33d3r/crackmapexec (CrackMapExec is a widely-used penetration testing framework that provides) and rapid7/metasploit-framework (Metasploit is a comprehensive penetration testing framework that includes). fortra/impacket is also worth a look. Each is ranked by relevance to your query, popularity and recent activity.
Identifizierung und Validierung von Schwachstellen in SMB- und LDAP-Netzwerkdiensten mithilfe spezialisierter Sicherheitstest-Tools.
NetExec is a framework for concurrent credential spraying and remote command execution across network protocols. It provides input sanitization and command parsing to reduce injection risks, a plugin-based protocol abstraction that dispatches credentials and commands uniformly regardless of transport, and session and token lifecycle management for long-running multi-command operations. Results from concurrent executions are collected and normalized through a result aggregation pipeline. The framework includes a concurrent job scheduler that manages worker threads for parallel execution across
NetExec (formerly CrackMapExec) is a multi-protocol penetration testing framework that supports SMB and LDAP enumeration, credential spraying, and remote command execution, making it a comprehensive and widely used tool for Active Directory security assessment and the exact kind of enumeration and testing this search requires.
CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize
CrackMapExec is a widely-used penetration testing framework that provides robust SMB and LDAP enumeration, credential spraying, Active Directory auditing, and vulnerability scanning via a command-line interface, directly matching your need for a security testing tool covering these protocols.
The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to
Metasploit is a comprehensive penetration testing framework that includes extensive modules for SMB and LDAP enumeration, user and share discovery, credential attacks, and vulnerability scanning, making it a powerful if broad choice for the specific service testing you are planning.
Impacket is a collection of Python classes designed for the construction, manipulation, and analysis of low-level network packets and services. It functions as a framework for building custom network tools, providing a programmatic interface to interact with communication protocols and service architectures. The library provides primitives for managing authentication, session state, and remote procedure calls within network environments. By offering a modular class hierarchy, it allows for the assembly of network packets and the implementation of specialized communication stacks. The project
Impacket provides a suite of ready-to-use command-line tools and a Python library specifically for SMB, LDAP, Kerberos, and MSRPC manipulation, making it the standard toolkit for SMB and LDAP enumeration, credential attacks, and Active Directory security testing on a network.