Pennyw0rth/NetExec
The Network Execution Tool observed · 2026-08-28
Health v2 · maintenance only
74/100
- Activity 99
- Release rhythm 40
- Longevity 77
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: 181
- age_days: 1090
- days_rel: 191
- days_push: 7
- n_releases_24m: 4
Adoption not part of the score
5815 stars · 752 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
NetExec (nxc) is a community-maintained, open-source network execution tool and successor to CrackMapExec, used for pentesting and red-team operations against Windows and Active Directory environments. It supports multiple protocols (SMB, LDAP, WinRM, MSSQL, SSH, FTP, RDP, WMI, NFS) for enumeration, authentication attacks like password spraying, command execution, and credential gathering.
Use cases
- password spray an active directory domain
- enumerate smb shares on a network
- dump ntds credentials from a domain controller
- kerberoast and asreproast domain users
- execute commands remotely via winrm or wmi
- find active directory misconfigurations like delegation attacks
- enumerate ldap users and groups during a pentest
- check hosts for vulnerabilities across a subnet
When to choose
- you need a modern, actively maintained replacement for CrackMapExec
- you are performing red-team or pentest work against Windows/AD environments
- you want one tool covering many protocols (SMB, LDAP, WinRM, MSSQL, SSH, RDP) for enumeration and post-exploitation
- you need community-driven updates, modules, and BloodHound integration
When to avoid
- you need a GUI-driven vulnerability scanner rather than a command-line tool
- your target is non-Windows infrastructure outside the supported protocols
- you require a fully documented stable API for building integrations (wiki is still in development)
- you are looking for a defensive-only auditing tool without offensive capabilities
Facets
cli-tool · maturity active
security penetration-testing cli networking auth security penetration-testing networking developer-tools windows python cli cross-platform red-team active-directory crackmapexec-successor smb ldap winrm password-spraying kerberos post-exploitation pentesting command-line linux macos docker
10 sources
- readme: https://github.com/Pennyw0rth/NetExec · fetched 2026-08-28 · 9cc6e79e6754
- homepage: https://netexec.wiki/ · fetched 2026-08-29 · 7f41bfc6df6a
- site_page: https://www.netexec.wiki/getting-started/installation · fetched 2026-08-29 · 076a413defae
- site_page: https://www.netexec.wiki/getting-started/selecting-and-using-a-protocol · fetched 2026-08-29 · fbb4b37c730e
- site_page: https://www.netexec.wiki/getting-started/target-formats · fetched 2026-08-29 · f9017bfdbf29
- site_page: https://www.netexec.wiki/getting-started/using-credentials · fetched 2026-08-29 · 295ea4959eb0
- site_page: https://www.netexec.wiki/getting-started/using-kerberos · fetched 2026-08-29 · a3a787d64ab0
- site_page: https://www.netexec.wiki/getting-started/using-certificates · fetched 2026-08-29 · 6d82b405ee52
- site_page: https://www.netexec.wiki/getting-started/using-modules · fetched 2026-08-29 · 2c4863948d0c
- site_page: https://www.netexec.wiki/getting-started/dns-options · fetched 2026-08-29 · c1f3c596463e
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| Pennyw0rth/NetExec | main | 74 |
For agents
markdown · JSON · MCP: product_card(name="Pennyw0rth/NetExec")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem