# byt3bl33d3r/CrackMapExec

A swiss army knife for pentesting networks

Repository: https://github.com/byt3bl33d3r/CrackMapExec
Canonical: https://ross.abutalabs.com/products/crackmapexec
Language: Python
License: BSD-2-Clause
License Family: permissive
Topics: python, active-directory, pentesting, windows, powershell, networks
Archived: true
Last push: 2023-12-06T17:09:42+00:00

## Health v2 (maintenance only)
Score: 10/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 4037, "days_push": 1001, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: archived
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 9159, forks 1689 (observed 2026-08-28T04:10:28.665657+00:00)

## What it is
CrackMapExec is a Python-based command-line swiss army knife for pentesting Windows and Active Directory networks, supporting protocols like SMB, WinRM, LDAP, and MSSQL for credential validation and post-exploitation. The project is no longer maintained due to a hostile fork.

## Use cases
- validate credentials across an entire subnet
- enumerate shares and sessions on Windows hosts
- dump SAM and LSA secrets from remote machines
- execute commands over SMB or WinRM during a pentest
- enumerate Active Directory users and groups via LDAP
- find machines where a domain admin is logged in

## When to choose
- you need a fast, all-in-one tool for Windows/AD network pentesting
- you want scriptable credential spraying and post-exploitation in Python
- you are working in a lab or CTF with legacy Windows infrastructure

## When to avoid
- you need maintained software with active support - the project is abandoned
- you want the latest features - use the maintained fork (NetExec) instead
- your targets are non-Windows or non-AD environments

## Facets
- artifact type: cli-tool
- maturity: abandoned
- function: security, penetration-testing
- domain: security, penetration-testing, networking
- platform: python, windows, cli
- tags: active-directory, smb, pentesting, post-exploitation, network-pentesting, command-line, linux, macos

## Member repositories
- byt3bl33d3r/CrackMapExec (main) score 10

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:10:28.665657+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:23:23.034095+00:00, confidence not recorded.
  - readme: https://github.com/byt3bl33d3r/CrackMapExec (fetched 2026-08-28T04:10:28.665657+00:00, sha 261f1ed18bcb)
- Data as of 2026-08-30T08:39:29.467469+00:00.
