awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektMCP-ServerÜber unsRanking-MethodikPresse
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
byt3bl33d3r avatar

byt3bl33d3r/CrackMapExecArchived

0
View on GitHub↗

CrackMapExec

CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations.

The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services.

The system utilizes asynchronous network I/O and parallel execution to manage high volumes of socket connections. It employs a modular protocol implementation and dynamic plugin loading to extend security assessment tools, with a local database for persisting discovered credentials and host metadata.

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Start searching with AI

Features

  • Penetration Testing Frameworks - Provides a comprehensive framework for automating the discovery and exploitation of security weaknesses in internal networks.
  • Penetration Testing Suites - Provides a comprehensive suite for automating credential spraying and vulnerability discovery across multiple network targets.
  • Active Directory Security - Enumerates users and permissions within Windows domains to identify lateral movement paths.
  • Password Spraying Tools - Automates the testing of common passwords against domain and network service accounts.
  • Security and Vulnerability Scanning - Automates the detection of security flaws and vulnerabilities across network protocols and multiple targets.
  • Vulnerability Scanners - Implements a comprehensive framework for automated security testing across multiple network protocols.
  • Multi-Protocol Network Auditing - Audits diverse network protocols to identify security weaknesses and misconfigurations across IP ranges.
  • Credential Testing Pipelines - Provides a standardized pipeline for testing usernames and passwords across various network services.
  • Multi-Server Target Execution - Performs simultaneous authentication testing and security auditing against multiple target servers.
  • Network Security - Scans network infrastructure to identify unauthorized access opportunities and communication vulnerabilities.
  • Post-Exploitation Frameworks - Offers modules for harvesting credentials and gathering system metadata from compromised hosts.
  • Active Directory Security Tools - Provides specialized utilities for identifying security vulnerabilities within Active Directory infrastructure.
  • Penetration Testing Tools - Implements automated vulnerability scanning and exploit execution to assess security across various network targets.
  • Automated Security Scanners - Performs systematic, automated security checks and vulnerability discovery across large IP ranges.
  • Local Metadata Persistence - Uses a local database to persist discovered credentials and host metadata for cross-session querying.
  • Result Persistence Layers - Implements a persistence layer to track and retrieve metadata and outcomes from asynchronous network operations.
  • Asynchronous Security Auditors - Uses parallel execution and asynchronous I/O to assess security postures across large IP ranges.
  • Modular Protocol Plugins - Isolates individual network protocols into separate plugins to allow independent development of security tests.
  • Non-Blocking Socket I/O - Implements non-blocking socket I/O to manage high volumes of concurrent network connections during large-scale scans.
  • Thread Pools - Utilizes thread pools to manage concurrent network requests across multiple target hosts.
  • Programmatic Plugin Loading - Employs programmatic plugin loading to extend security assessment tools at runtime without modifying the core engine.
  • Active Directory Exploitation - Network-wide post-exploitation tool for AD enumeration and credential testing.
  • Credential and Account Auditing - Pivots through Windows environments using credential pairs for lateral movement.
  • Domain Privilege Escalation - Network reconnaissance and exploitation tool for Windows environments.
  • Execution and Persistence - Toolkit for lateral movement and AD exploitation.
  • Exploitation Frameworks - Post-exploitation tool for Windows networks.
  • Lateral Movement - Automates network-wide exploitation and lateral movement.
  • Network Security Analysis - Automates post-exploitation tasks against network environments.
  • Network Security Tools - Swiss army knife for network penetration testing.
  • Offensive Security Frameworks - A versatile tool for pentesting Windows and Active Directory environments.
  • Password Attacks - Post-exploitation tool for network credential and configuration auditing.
  • Penetration Testing Frameworks - Swiss army knife for Windows and Active Directory environment exploitation.
  • Post Exploitation Frameworks - Tool for network-wide post-exploitation and credential testing.
  • Sicherheit und Datenschutz - Swiss army knife for network pentesting.
  • Security Tooling - Swiss army knife for network pentesting and credential testing.
9,144 Stars·1,689 Forks·Python·BSD-2-Clause·20 Aufrufe

Star-Verlauf

Star-Verlauf für byt3bl33d3r/crackmapexecStar-Verlauf für byt3bl33d3r/crackmapexec

Open-Source-Alternativen zu CrackMapExec

Ähnliche Open-Source-Projekte, sortiert nach der Anzahl der gemeinsamen Funktionen mit CrackMapExec.
  • powershellmafia/powersploitAvatar von PowerShellMafia

    PowerShellMafia/PowerSploit

    12,880Auf GitHub ansehen↗

    PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team operations. It provides a framework for auditing Windows system configurations and evaluating the effectiveness of security defenses within an enterprise environment. The framework focuses on techniques that leverage native system administration tools and scripting environments to perform operations. It includes capabilities for executing arbitrary commands, escalating user privileges, and maintaining system persistence through event subscriptions. By utilizing in-memory execu

    PowerShell
    Auf GitHub ansehen↗12,880
  • rapid7/metasploit-frameworkAvatar von rapid7

    rapid7/metasploit-framework

    38,415Auf GitHub ansehen↗

    The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to

    Rubyhacktoberfest
    Auf GitHub ansehen↗38,415
  • pennyw0rth/netexecAvatar von Pennyw0rth

    Pennyw0rth/NetExec

    5,274Auf GitHub ansehen↗

    NetExec is a framework for concurrent credential spraying and remote command execution across network protocols. It provides input sanitization and command parsing to reduce injection risks, a plugin-based protocol abstraction that dispatches credentials and commands uniformly regardless of transport, and session and token lifecycle management for long-running multi-command operations. Results from concurrent executions are collected and normalized through a result aggregation pipeline. The framework includes a concurrent job scheduler that manages worker threads for parallel execution across

    Pythonactive-directoryhackinginfosec
    Auf GitHub ansehen↗5,274
  • samratashok/nishangAvatar von samratashok

    samratashok/nishang

    9,951Auf GitHub ansehen↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    Auf GitHub ansehen↗9,951
Alle 30 Alternativen zu CrackMapExec anzeigen→

Häufig gestellte Fragen

Was macht byt3bl33d3r/crackmapexec?

CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations.

Was sind die Hauptfunktionen von byt3bl33d3r/crackmapexec?

Die Hauptfunktionen von byt3bl33d3r/crackmapexec sind: Penetration Testing Frameworks, Penetration Testing Suites, Active Directory Security, Password Spraying Tools, Security and Vulnerability Scanning, Vulnerability Scanners, Multi-Protocol Network Auditing, Credential Testing Pipelines.

Welche Open-Source-Alternativen gibt es zu byt3bl33d3r/crackmapexec?

Open-Source-Alternativen zu byt3bl33d3r/crackmapexec sind unter anderem: powershellmafia/powersploit — PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team… rapid7/metasploit-framework — The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of… pennyw0rth/netexec — NetExec is a framework for concurrent credential spraying and remote command execution across network protocols. It… samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… gentilkiwi/mimikatz — Mimikatz is a security research suite designed for auditing Windows authentication and managing system security… rhinosecuritylabs/pacu — Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments.…