awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
byt3bl33d3r avatar

byt3bl33d3r/CrackMapExecArchived

0
View on GitHub↗
9,144 stars·1,689 forks·Python·BSD-2-Clause·23 views

CrackMapExec

CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations.

The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services.

The system utilizes asynchronous network I/O and parallel execution to manage high volumes of socket connections. It employs a modular protocol implementation and dynamic plugin loading to extend security assessment tools, with a local database for persisting discovered credentials and host metadata.

Features

  • Penetration Testing Frameworks - Provides a comprehensive framework for automating the discovery and exploitation of security weaknesses in internal networks.
  • Penetration Testing Suites - Provides a comprehensive suite for automating credential spraying and vulnerability discovery across multiple network targets.
  • Active Directory Security - Enumerates users and permissions within Windows domains to identify lateral movement paths.
  • Password Spraying Tools - Automates the testing of common passwords against domain and network service accounts.
  • Security and Vulnerability Scanning - Automates the detection of security flaws and vulnerabilities across network protocols and multiple targets.
  • Vulnerability Scanners - Implements a comprehensive framework for automated security testing across multiple network protocols.
  • Multi-Protocol Network Auditing - Audits diverse network protocols to identify security weaknesses and misconfigurations across IP ranges.
  • Credential Testing Pipelines - Provides a standardized pipeline for testing usernames and passwords across various network services.
  • Multi-Server Target Execution - Performs simultaneous authentication testing and security auditing against multiple target servers.
  • Network Security - Scans network infrastructure to identify unauthorized access opportunities and communication vulnerabilities.
  • Post-Exploitation Frameworks - Offers modules for harvesting credentials and gathering system metadata from compromised hosts.
  • Active Directory Security Tools - Provides specialized utilities for identifying security vulnerabilities within Active Directory infrastructure.
  • Penetration Testing Tools - Implements automated vulnerability scanning and exploit execution to assess security across various network targets.
  • Automated Security Scanners - Performs systematic, automated security checks and vulnerability discovery across large IP ranges.
  • Local Metadata Persistence - Uses a local database to persist discovered credentials and host metadata for cross-session querying.
  • Result Persistence Layers - Implements a persistence layer to track and retrieve metadata and outcomes from asynchronous network operations.
  • Asynchronous Security Auditors - Uses parallel execution and asynchronous I/O to assess security postures across large IP ranges.
  • Modular Protocol Plugins - Isolates individual network protocols into separate plugins to allow independent development of security tests.
  • Non-Blocking Socket I/O - Implements non-blocking socket I/O to manage high volumes of concurrent network connections during large-scale scans.
  • Thread Pools - Utilizes thread pools to manage concurrent network requests across multiple target hosts.
  • Programmatic Plugin Loading - Employs programmatic plugin loading to extend security assessment tools at runtime without modifying the core engine.
  • Active Directory Exploitation - Network-wide post-exploitation tool for AD enumeration and credential testing.
  • Credential and Account Auditing - Pivots through Windows environments using credential pairs for lateral movement.
  • Domain Privilege Escalation - Network reconnaissance and exploitation tool for Windows environments.
  • Execution and Persistence - Toolkit for lateral movement and AD exploitation.
  • Exploitation Frameworks - Post-exploitation tool for Windows networks.
  • Lateral Movement - Automates network-wide exploitation and lateral movement.
  • Network Security Analysis - Automates post-exploitation tasks against network environments.
  • Network Security Tools - Swiss army knife for network penetration testing.
  • Offensive Security Frameworks - A versatile tool for pentesting Windows and Active Directory environments.
  • Password Attacks - Post-exploitation tool for network credential and configuration auditing.
  • Penetration Testing Frameworks - Swiss army knife for Windows and Active Directory environment exploitation.
  • Post Exploitation Frameworks - Tool for network-wide post-exploitation and credential testing.
  • Security And Privacy - Swiss army knife for network pentesting.
  • Security Tooling - Swiss army knife for network pentesting and credential testing.

Star history

Star history chart for byt3bl33d3r/crackmapexecStar history chart for byt3bl33d3r/crackmapexec

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to CrackMapExec

Similar open-source projects, ranked by how many features they share with CrackMapExec.
  • powershellmafia/powersploitPowerShellMafia avatar

    PowerShellMafia/PowerSploit

    12,880View on GitHub↗

    PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team operations. It provides a framework for auditing Windows system configurations and evaluating the effectiveness of security defenses within an enterprise environment. The framework focuses on techniques that leverage native system administration tools and scripting environments to perform operations. It includes capabilities for executing arbitrary commands, escalating user privileges, and maintaining system persistence through event subscriptions. By utilizing in-memory execu

    PowerShell
    View on GitHub↗12,880
  • rapid7/metasploit-frameworkrapid7 avatar

    rapid7/metasploit-framework

    38,415View on GitHub↗

    The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to

    Rubyhacktoberfest
    View on GitHub↗38,415
  • pennyw0rth/netexecPennyw0rth avatar

    Pennyw0rth/NetExec

    5,274View on GitHub↗

    NetExec is a framework for concurrent credential spraying and remote command execution across network protocols. It provides input sanitization and command parsing to reduce injection risks, a plugin-based protocol abstraction that dispatches credentials and commands uniformly regardless of transport, and session and token lifecycle management for long-running multi-command operations. Results from concurrent executions are collected and normalized through a result aggregation pipeline. The framework includes a concurrent job scheduler that manages worker threads for parallel execution across

    Pythonactive-directoryhackinginfosec
    View on GitHub↗5,274
  • samratashok/nishangsamratashok avatar

    samratashok/nishang

    9,951View on GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    View on GitHub↗9,951
See all 30 alternatives to CrackMapExec→

Frequently asked questions

What does byt3bl33d3r/crackmapexec do?

CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations.

What are the main features of byt3bl33d3r/crackmapexec?

The main features of byt3bl33d3r/crackmapexec are: Penetration Testing Frameworks, Penetration Testing Suites, Active Directory Security, Password Spraying Tools, Security and Vulnerability Scanning, Vulnerability Scanners, Multi-Protocol Network Auditing, Credential Testing Pipelines.

What are some open-source alternatives to byt3bl33d3r/crackmapexec?

Open-source alternatives to byt3bl33d3r/crackmapexec include: powershellmafia/powersploit — PowerSploit is a collection of PowerShell modules designed for security assessment, penetration testing, and red team… rapid7/metasploit-framework — The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of… pennyw0rth/netexec — NetExec is a framework for concurrent credential spraying and remote command execution across network protocols. It… samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… gentilkiwi/mimikatz — Mimikatz is a security research suite designed for auditing Windows authentication and managing system security… rhinosecuritylabs/pacu — Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments.…