{"repo":"p0dalirius/Coercer","free":true,"listed":false,"github":"https://github.com/p0dalirius/Coercer","clone":"git clone https://github.com/p0dalirius/Coercer.git","description":"A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.","language":"Python","stars":2307,"topics":["authentication","automatic","call","coerce","privilege-escalation","rpc","ntlm","fuzzing"],"license":"GPL-2.0","category":"auth-billing-email","readme_excerpt":"A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through many methods. Windows Support To build a binary for Windows, download the installer.ps1 script from this repository. Run it simply with no arguments to create a binary in the working directory. Use -h or --help for the help menu with options. Features - Core: + [x] Lists open SMB pipes on the remote machine (in modes scan authenticated and fuzz authenticated) + [x] Tries to connect on a list of known SMB pipes on the remote machine (in modes scan unauthenticated and fuzz unauthenticated) + [x] Calls one by one all the vulnerable RPC functions to coerce the server to authenticate on an arbitrary machine. + [x] Random UNC paths generation to avoid caching failed attempts (all modes) + [x] Configurable delay between attempts with --delay - Options: + [x] Filter by method name with --filter-method-name , by protocol name with --filter-protocol-name or by pipe name with --filter-pipe-name (all modes) + [x] Target a single machine --target or a list of targets from a file with --targets-file + [x] Specify IP address OR interface to listen on for incoming authentications. (modes scan and fuzz) - Exporting results + [x] Export results in SQLite format (modes scan and fuzz) + [x] Export results in JSON format (modes scan and fuzz) + [x] Export results in XSLX format (modes scan and fuzz) Installation You can now install it from pypi (latest version is ) with this command: Shell Com","default_branch":null,"files":null,"tree":[],"storefront":"/r/p0dalirius","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/p0dalirius/Coercer/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}