# Ladon

Ladon大型内网渗透扫描器，PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell，支持批量A段/B段/C段以及跨网段扫描，支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等，大量高危漏洞检测模块MS17010、Zimbra、Exchange

Repository: https://github.com/k8gege/Ladon
Canonical: https://ross.abutalabs.com/products/ladon
Homepage: http://k8gege.org/Ladon/
Language: C#
License: MIT
License Family: permissive
Topics: scanner, portscan, pentest, hacking, security, security-tools, security-scanner, poc, getshell, brute-force, password, netscan, tools, hack, exp, ladon, ipscanner, exploit
Last push: 2025-03-24T13:53:59+00:00
Link (homepage): http://k8gege.org/Ladon/

## Health v2 (maintenance only)
Score: 29/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 13, release rhythm 8, longevity 100
- inputs: {"age_days": 2496, "days_push": 527, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 5320, forks 882 (observed 2026-08-28T04:09:15.590222+00:00)

## What it is
Ladon is a large-scale internal network penetration scanner written in C#, offering port scanning, service identification, network asset discovery, password auditing, high-risk vulnerability detection, exploitation, and one-click GetShell. It supports PowerShell modules, Cobalt Strike plugin in-memory loading, fileless scanning, and cross-platform use via LadonGo.

## Use cases
- scan an internal network for live hosts and open services
- detect high-risk vulnerabilities like MS17010 and SMBGhost across a subnet
- brute-force passwords for SSH, databases, and Windows services
- discover network assets across A/B/C class segments
- perform lateral movement from a Cobalt Strike beacon
- identify web fingerprints and middleware on discovered hosts
- run fileless scans via PowerShell in-memory loading

## When to choose
- you need an all-in-one intranet penetration scanner with a tiny footprint
- you want Cobalt Strike plugin integration for fileless lateral movement
- you need batch scanning of large network ranges with low traffic
- you want extensible POC/EXP plugins in .NET, DLL, or PowerShell

## When to avoid
- you need a passive or compliance-focused vulnerability scanner
- you require a GUI-driven enterprise scanning platform
- your targets are external internet-facing assets rather than internal networks
- you need detailed reporting for remediation rather than exploitation

## Facets
- artifact type: cli-tool
- maturity: active
- function: penetration-testing, vulnerability-scanning, networking, security, search-engine
- domain: penetration-testing, security, networking, crawlers
- platform: windows, cli, cross-platform
- tags: port-scanner, network-scanner, cobalt-strike, powershell, lateral-movement, password-audit, exploit, red-team, csharp, in-memory-loading, linux, macos

## Member repositories
- k8gege/Ladon (main) score 29
- k8gege/LadonGo (mirror) score 23
- k8gege/Aggressor (plugin) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:09:15.590222+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:58:55.388533+00:00, confidence not recorded.
  - readme: https://github.com/k8gege/Ladon (fetched 2026-08-28T04:09:15.590222+00:00, sha f3276f425ee5)
  - homepage: http://k8gege.org/Ladon/ (fetched 2026-08-29T08:53:54.759532+00:00, sha 6531d1ece6ab)
- Data as of 2026-08-30T08:39:29.467469+00:00.
