awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
k8gege avatar

k8gege/Ladon

0
View on GitHub↗
5,297 stars·885 forks·C#·MIT·34 viewsk8gege.org/Ladon↗

Ladon

Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk security flaws and assets across network segments. It operates as a fileless security scanner, executing its engine and modules directly in memory to avoid leaving a disk footprint on target systems.

The project is distinguished by its integration as a plugin for command beacons, specifically within the Cobalt Strike framework. This allows for memory-resident network discovery and vulnerability detection. It further supports stealth operations through payload and script obfuscation, as well as techniques to bypass detection by endpoint detection and response systems.

The tool provides a comprehensive suite of capabilities for post-exploitation, including credential auditing, extraction, and the execution of Kerberos attacks for domain penetration. It handles asset discovery via multi-protocol scanning and service fingerprinting to identify operating systems and web technologies. Additionally, it supports lateral movement automation, privilege escalation, and the deployment of remote code execution payloads.

The framework is extensible through a plugin architecture that allows the dynamic loading of external assemblies or scripts to add custom scanning modules and proofs of concept.

Features

  • Command and Control Plugin Integrations - Provides a specialized plugin for Cobalt Strike beacons to enable memory-resident network discovery and vulnerability detection.
  • Command Beacon Integrations - Runs network discovery and vulnerability detection as a memory-resident plugin within a command beacon framework.
  • Credential and Account Auditing - Tests for weak passwords across network services and extracts stored credentials from compromised hosts.
  • Fileless Execution - Loads execution modules directly into memory to avoid leaving forensic artifacts on the physical disk.
  • Lateral Movement - Provides capabilities to pivot between internal network systems using compromised credentials and remote execution.
  • Active Vulnerability Scanning - Performs intrusive network probing to identify high-severity security flaws in middleware and hardware.
  • Internal Network Penetration Testers - Scans internal network segments to discover live hosts, open services, and critical security vulnerabilities.
  • Service Fingerprinting - Identifies running software and operating systems by analyzing network response banners and headers.
  • Network Asset Discovery - Maps target environments by identifying hardware, middleware, and OS versions across multiple protocols.
  • Network Asset Scanning - Identifies active hosts and open services using multiple protocols to bypass firewall restrictions.
  • C2 Beacon Plugins - Acts as an extension for Cobalt Strike beacons to enable memory-loaded network scanning and vulnerability detection.
  • Multi-Protocol Network Discovery - Identifies active hosts and services using diverse network protocols to bypass firewall restrictions.
  • Operating System Detection - Analyzes network responses to determine the target operating system and version.
  • Memory-Loaded Scanners - Executes scanning engines and modules in memory to avoid leaving disk footprints on target systems.
  • C2 Framework Plugins - Integrates directly as a memory-resident plugin for command beacons within the Cobalt Strike framework.
  • Credential Extraction - Implements techniques for retrieving stored passwords and authentication tokens from the local system.
  • Privilege Escalation Techniques - Elevates process permissions to system level using a variety of exploit techniques.
  • In-Memory Payload Execution - Executes scanning engines and modules directly in volatile memory to avoid leaving disk-based footprints.
  • Network Vulnerability Scanning - Discovers network assets and identifies critical security weaknesses across internal network infrastructure.
  • Post-Exploitation Frameworks - Provides a script-based framework for auditing credentials and escalating privileges on Windows systems.
  • Windows Privilege Escalations - Escalates permissions from standard user to administrator using Windows-specific exploits and bypass techniques.
  • Vulnerability Assessment Tools - Detects middleware flaws and executes exploits to achieve remote code execution.
  • Service Fingerprinting - Detects specific software versions and hardware devices to determine the target technology stack.
  • In-Memory Loading - Executes scanning engines and payloads directly from memory to avoid leaving a disk footprint.
  • Proxy-Aware Routing - Directs network scanning traffic through intermediate proxies to enable pivoting and lateral movement.
  • Script Obfuscation - Applies encoding and binary conversion to scripts to hide logic and bypass security software.
  • Default Credential Auditing - Actively verifies network interfaces against databases of weak or default credentials.
  • Domain Penetration - Executes Kerberos attacks and privilege escalation to compromise directory environments.
  • Exploit Payload Deployments - Triggers specific vulnerability proofs of concept to achieve remote code execution or gain initial shells.
  • Exploit Payload Generators - Creates customized payloads to extend scanning capabilities and automate the process of obtaining remote shells.
  • Automated Kerberos Attacks - Automates Kerberos attacks including ticket requests and the creation of forged tickets.
  • Payload Obfuscators - Transforms executables and scripts into different formats to evade antivirus and EDR detection.
  • Reflective Memory Executions - Loads and executes binaries entirely in memory via reflective techniques to evade disk-based detection.
  • Remote Command Execution Tools - Runs commands on target systems via remote protocols in both interactive and non-interactive modes.
  • Remote System Exploitation - Deploys shells or executes commands on target systems to gain full system control.
  • Reverse Shells - Establishes outbound network connections from targets to listeners to provide remote command-line access.
  • EDR Evasion - Simulates human-like access patterns to circumvent endpoint detection and response security controls.
  • Credential Brute-Forcing - Provides an automated engine for testing usernames and passwords against network protocols to evaluate security.
  • Extensible Plugin Architectures - Loads external logic through assemblies or scripts to add custom proofs of concept and scanning modules.
  • Plugin-Based Architectures - Implements a plugin-based architecture that allows the dynamic loading of external assemblies and scripts at runtime.
  • Network Scanning - Multi-threaded, plugin-based network scanning and exploitation suite.
  • Offensive Security Tools - Large-scale network scanner for internal penetration testing.
  • Post Exploitation Frameworks - Large-scale network scanning and exploitation framework.

Star history

Star history chart for k8gege/ladonStar history chart for k8gege/ladon

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with Ladon

These projects share indexed features with Ladon. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • k8gege/k8toolsk8gege avatar

    k8gege/K8tools

    6,167View on GitHub↗

    K8tools is a multi-stage attack framework that combines memory-only payload execution, credential testing, port forwarding, privilege escalation, and physical USB-based keystroke injection for comprehensive system compromise. At its core, the Ladon PowerShell module loads a multi-function scanner directly into memory, enabling command execution without writing files to disk, while supporting memory-only payload delivery that downloads and runs obfuscated shellcode or PowerShell commands to evade antivirus detection. The framework distinguishes itself through its breadth of integrated capabili

    PowerShell0daybrute-forcebypass
    View on GitHub↗6,167
  • samsar4/ethical-hacking-labsSamsar4 avatar

    Samsar4/Ethical-Hacking-Labs

    3,397View on GitHub↗

    Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning penetration testing, network analysis, and offensive security techniques. It provides a structured environment for practicing the full attack lifecycle, from initial reconnaissance and scanning to exploitation and post-compromise analysis. The project provides instructional materials and guided exercises that cover specific technical domains, including open source intelligence research and network security courseware. It includes a practical workbook for identifying system vulnerabili

    ethical-hacking-labshackinglinux
    View on GitHub↗3,397
  • hackerschoice/thc-tips-tricks-hacks-cheat-sheethackerschoice avatar

    hackerschoice/thc-tips-tricks-hacks-cheat-sheet

    3,853View on GitHub↗

    This project is a comprehensive command-line reference and toolkit designed for Linux system administration and network security assessment. It provides a collection of technical snippets and operational guides focused on managing remote environments, orchestrating shell sessions, and executing administrative tasks through native terminal utilities. The repository distinguishes itself by offering specialized techniques for stealthy operations and infrastructure manipulation. It covers methods for establishing encrypted tunnels to bypass firewalls, obfuscating process identities and command hi

    Shell
    View on GitHub↗3,853
  • samratashok/nishangsamratashok avatar

    samratashok/nishang

    9,951View on GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    View on GitHub↗9,951
Compare all 30 related projects→

Frequently asked questions

What does k8gege/ladon do?

Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk security flaws and assets across network segments. It operates as a fileless security scanner, executing its engine and modules directly in memory to avoid leaving a disk footprint on target systems.

What are the main features of k8gege/ladon?

The main features of k8gege/ladon are: Command and Control Plugin Integrations, Command Beacon Integrations, Credential and Account Auditing, Fileless Execution, Lateral Movement, Active Vulnerability Scanning, Internal Network Penetration Testers, Service Fingerprinting.

Which projects share features with k8gege/ladon?

Projects with overlapping indexed features include: k8gege/k8tools — K8tools is a multi-stage attack framework that combines memory-only payload execution, credential testing, port… samsar4/ethical-hacking-labs — Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning… hackerschoice/thc-tips-tricks-hacks-cheat-sheet — This project is a comprehensive command-line reference and toolkit designed for Linux system administration and… samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… joaomatosf/jexboss — jexboss is a Java deserialization exploit framework and network vulnerability scanner designed to identify and exploit… ridter/intranet_penetration_tips — This project is a technical guide and reference for internal network penetration testing. It serves as a collection of…