awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektÜber unsRanking-MethodikPresseMCP-Server
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
k8gege avatar

k8gege/Ladon

0
View on GitHub↗
5,297 Stars·885 Forks·C#·MIT·13 Aufrufek8gege.org/Ladon↗

Ladon

Ladon ist ein interner Netzwerk-Penetrationsscanner und ein Tool zur Schwachstellenbewertung, das darauf ausgelegt ist, hochriskante Sicherheitslücken und Assets über Netzwerksegmente hinweg zu identifizieren. Es arbeitet als dateiloser Sicherheitsscanner, der seine Engine und Module direkt im Arbeitsspeicher ausführt, um keinen Festplatten-Footprint auf Zielsystemen zu hinterlassen.

Das Projekt zeichnet sich durch seine Integration als Plugin für Command-Beacons aus, speziell innerhalb des Cobalt-Strike-Frameworks. Dies ermöglicht speicherresidente Netzwerkerkennung und Schwachstellenerkennung. Es unterstützt zudem Stealth-Operationen durch Payload- und Skript-Obfuskation sowie Techniken zur Umgehung der Erkennung durch Endpoint-Detection-and-Response-Systeme (EDR).

Das Tool bietet eine umfassende Suite an Funktionen für Post-Exploitation, einschließlich Credential-Auditing, Extraktion und der Ausführung von Kerberos-Angriffen für Domain-Penetration. Es handhabt Asset-Discovery mittels Multi-Protokoll-Scanning und Service-Fingerprinting, um Betriebssysteme und Webtechnologien zu identifizieren. Zusätzlich unterstützt es die Automatisierung lateraler Bewegungen, Privilegieneskalation und die Bereitstellung von Remote-Code-Execution-Payloads.

Das Framework ist über eine Plugin-Architektur erweiterbar, die das dynamische Laden externer Assemblies oder Skripte ermöglicht, um benutzerdefinierte Scanning-Module und Proofs of Concept hinzuzufügen.

Features

  • Command and Control Plugin Integrations - Provides a specialized plugin for Cobalt Strike beacons to enable memory-resident network discovery and vulnerability detection.
  • Command Beacon Integrations - Runs network discovery and vulnerability detection as a memory-resident plugin within a command beacon framework.
  • Credential and Account Auditing - Tests for weak passwords across network services and extracts stored credentials from compromised hosts.
  • Fileless Execution - Loads execution modules directly into memory to avoid leaving forensic artifacts on the physical disk.
  • Lateral Movement - Provides capabilities to pivot between internal network systems using compromised credentials and remote execution.
  • Active Vulnerability Scanning - Performs intrusive network probing to identify high-severity security flaws in middleware and hardware.
  • Internal Network Penetration Testers - Scans internal network segments to discover live hosts, open services, and critical security vulnerabilities.
  • Service Fingerprinting - Identifies running software and operating systems by analyzing network response banners and headers.
  • Network Asset Discovery - Maps target environments by identifying hardware, middleware, and OS versions across multiple protocols.
  • Network Asset Scanning - Identifies active hosts and open services using multiple protocols to bypass firewall restrictions.
  • C2 Beacon Plugins - Acts as an extension for Cobalt Strike beacons to enable memory-loaded network scanning and vulnerability detection.
  • Multi-Protocol Network Discovery - Identifies active hosts and services using diverse network protocols to bypass firewall restrictions.
  • Operating System Detection - Analyzes network responses to determine the target operating system and version.
  • Memory-Loaded Scanners - Executes scanning engines and modules in memory to avoid leaving disk footprints on target systems.
  • C2 Framework Plugins - Integrates directly as a memory-resident plugin for command beacons within the Cobalt Strike framework.
  • Credential Extraction - Implements techniques for retrieving stored passwords and authentication tokens from the local system.
  • Privilege Escalation Techniques - Elevates process permissions to system level using a variety of exploit techniques.
  • In-Memory Payload Execution - Executes scanning engines and modules directly in volatile memory to avoid leaving disk-based footprints.
  • Network Vulnerability Scanning - Discovers network assets and identifies critical security weaknesses across internal network infrastructure.
  • Post-Exploitation Frameworks - Provides a script-based framework for auditing credentials and escalating privileges on Windows systems.
  • Windows Privilege Escalations - Escalates permissions from standard user to administrator using Windows-specific exploits and bypass techniques.
  • Vulnerability Assessment Tools - Detects middleware flaws and executes exploits to achieve remote code execution.
  • Service Fingerprinting - Detects specific software versions and hardware devices to determine the target technology stack.
  • In-Memory Loading - Executes scanning engines and payloads directly from memory to avoid leaving a disk footprint.
  • Proxy-Aware Routing - Directs network scanning traffic through intermediate proxies to enable pivoting and lateral movement.
  • Script Obfuscation - Applies encoding and binary conversion to scripts to hide logic and bypass security software.
  • Default Credential Auditing - Actively verifies network interfaces against databases of weak or default credentials.
  • Domain Penetration - Executes Kerberos attacks and privilege escalation to compromise directory environments.
  • Exploit Payload Deployments - Triggers specific vulnerability proofs of concept to achieve remote code execution or gain initial shells.
  • Exploit Payload Generators - Creates customized payloads to extend scanning capabilities and automate the process of obtaining remote shells.
  • Automated Kerberos Attacks - Automates Kerberos attacks including ticket requests and the creation of forged tickets.
  • Payload Obfuscators - Transforms executables and scripts into different formats to evade antivirus and EDR detection.
  • Reflective Memory Executions - Loads and executes binaries entirely in memory via reflective techniques to evade disk-based detection.
  • Remote Command Execution Tools - Runs commands on target systems via remote protocols in both interactive and non-interactive modes.
  • Remote System Exploitation - Deploys shells or executes commands on target systems to gain full system control.
  • Reverse Shells - Establishes outbound network connections from targets to listeners to provide remote command-line access.
  • EDR Evasion - Simulates human-like access patterns to circumvent endpoint detection and response security controls.
  • Credential Brute-Forcing - Provides an automated engine for testing usernames and passwords against network protocols to evaluate security.
  • Extensible Plugin Architectures - Loads external logic through assemblies or scripts to add custom proofs of concept and scanning modules.
  • Plugin-Based Architectures - Implements a plugin-based architecture that allows the dynamic loading of external assemblies and scripts at runtime.
  • Network Scanning - Multi-threaded, plugin-based network scanning and exploitation suite.
  • Offensive Security Tools - Large-scale network scanner for internal penetration testing.
  • Post Exploitation Frameworks - Large-scale network scanning and exploitation framework.

Star-Verlauf

Star-Verlauf für k8gege/ladonStar-Verlauf für k8gege/ladon

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Start searching with AI

Häufig gestellte Fragen

Was macht k8gege/ladon?

Ladon ist ein interner Netzwerk-Penetrationsscanner und ein Tool zur Schwachstellenbewertung, das darauf ausgelegt ist, hochriskante Sicherheitslücken und Assets über Netzwerksegmente hinweg zu identifizieren. Es arbeitet als dateiloser Sicherheitsscanner, der seine Engine und Module direkt im Arbeitsspeicher ausführt, um keinen Festplatten-Footprint auf Zielsystemen zu hinterlassen.

Was sind die Hauptfunktionen von k8gege/ladon?

Die Hauptfunktionen von k8gege/ladon sind: Command and Control Plugin Integrations, Command Beacon Integrations, Credential and Account Auditing, Fileless Execution, Lateral Movement, Active Vulnerability Scanning, Internal Network Penetration Testers, Service Fingerprinting.

Welche Open-Source-Alternativen gibt es zu k8gege/ladon?

Open-Source-Alternativen zu k8gege/ladon sind unter anderem: k8gege/k8tools — K8tools is a multi-stage attack framework that combines memory-only payload execution, credential testing, port… samsar4/ethical-hacking-labs — Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning… hackerschoice/thc-tips-tricks-hacks-cheat-sheet — This project is a comprehensive command-line reference and toolkit designed for Linux system administration and… samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… joaomatosf/jexboss — jexboss is a Java deserialization exploit framework and network vulnerability scanner designed to identify and exploit… ridter/intranet_penetration_tips — This project is a technical guide and reference for internal network penetration testing. It serves as a collection of…

Open-Source-Alternativen zu Ladon

Ähnliche Open-Source-Projekte, sortiert nach der Anzahl der gemeinsamen Funktionen mit Ladon.
  • k8gege/k8toolsAvatar von k8gege

    k8gege/K8tools

    6,167Auf GitHub ansehen↗

    K8tools is a multi-stage attack framework that combines memory-only payload execution, credential testing, port forwarding, privilege escalation, and physical USB-based keystroke injection for comprehensive system compromise. At its core, the Ladon PowerShell module loads a multi-function scanner directly into memory, enabling command execution without writing files to disk, while supporting memory-only payload delivery that downloads and runs obfuscated shellcode or PowerShell commands to evade antivirus detection. The framework distinguishes itself through its breadth of integrated capabili

    PowerShell0daybrute-forcebypass
    Auf GitHub ansehen↗6,167
  • samsar4/ethical-hacking-labsAvatar von Samsar4

    Samsar4/Ethical-Hacking-Labs

    3,397Auf GitHub ansehen↗

    Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning penetration testing, network analysis, and offensive security techniques. It provides a structured environment for practicing the full attack lifecycle, from initial reconnaissance and scanning to exploitation and post-compromise analysis. The project provides instructional materials and guided exercises that cover specific technical domains, including open source intelligence research and network security courseware. It includes a practical workbook for identifying system vulnerabili

    ethical-hacking-labshackinglinux
    Auf GitHub ansehen↗3,397
  • hackerschoice/thc-tips-tricks-hacks-cheat-sheetAvatar von hackerschoice

    hackerschoice/thc-tips-tricks-hacks-cheat-sheet

    3,853Auf GitHub ansehen↗

    This project is a comprehensive command-line reference and toolkit designed for Linux system administration and network security assessment. It provides a collection of technical snippets and operational guides focused on managing remote environments, orchestrating shell sessions, and executing administrative tasks through native terminal utilities. The repository distinguishes itself by offering specialized techniques for stealthy operations and infrastructure manipulation. It covers methods for establishing encrypted tunnels to bypass firewalls, obfuscating process identities and command hi

    Shell
    Auf GitHub ansehen↗3,853
  • samratashok/nishangAvatar von samratashok

    samratashok/nishang

    9,951Auf GitHub ansehen↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    Auf GitHub ansehen↗9,951
  • Alle 30 Alternativen zu Ladon anzeigen→