
Ladon Scanner For Python, Large Network Penetration Scanner & Cobalt Strike, vulnerability / exploit / detection / MS17010/SmbGhost/CVE-2020-0796/CVE-2018-2894
Currently, the Python version has fewer features and cannot match Ladon.exe in performance or speed on either Windows or Linux systems.
Its only advantage is cross-platform support; related features will be added later. The obvious drawback is that the packaged Python program is very large, making it less suitable for deployment on target machines.
So-called cross-platform support is not complete. On some older Linux systems, many Python dependency packages or even compilation-level dependencies cannot be installed. A Go version is recommended.
Ladon is a multi-threaded, plugin-based comprehensive scanning tool designed for large-scale network penetration. It includes port scanning, service identification, network asset discovery, password brute-forcing, high-risk vulnerability detection, and one-click GetShell. It supports batch scanning of A/B/C segments as well as cross-segment scanning, and supports URL, host, and domain list scanning. Version 7.5 has 101 built-in functional modules and 18 external modules. It quickly obtains target network live host IPs, computer names, workgroups, shared resources, MAC addresses, operating system versions, websites, subdomains, middleware, open services, routers, databases, etc., through various protocols and methods. Vulnerability detection includes MS17010, SMBGhost, Weblogic, ActiveMQ, Tomcat, Struts2 series, etc. Password brute-forcing covers 13 types: databases (MySQL, Oracle, MSSQL), FTP, SSH, VNC, Windows (LDAP, SMB/IPC, NBT, WMI, SmbHash, WmiHash, Winrm), BasicAuth, Tomcat, Weblogic, Rar, etc. Remote command execution includes (wmiexe/psexec/atexec/sshexec/jspshell). The web fingerprint recognition module can identify 75 types (web applications, middleware, script types, page types, etc.). Highly customizable plugins support .NET assemblies, DLLs (C#/Delphi/VC), PowerShell, and other languages. It supports calling arbitrary external programs or commands via INI configuration. The EXP generator can generate vulnerability POCs with one click to quickly expand scanning capabilities. Ladon supports Cobalt Strike plugin scanning to rapidly expand intranet lateral movement.
| ID | Topic | URL |
|---|
| 0 | Ladon Documentation Homepage | https://k8gege.org/Ladon/ |
| 1 | Ladon Basic Documentation | http://k8gege.org/p/648af4b3.html |
| 2 | Ladon Usage Examples | http://k8gege.org/Ladon/example.html |
| 3 | Basic Usage Detailed Explanation | https://github.com/k8gege/Ladon/wiki/Ladon-Usage |
| 4 | Cobalt Strike | https://github.com/k8gege/Aggressor |
| 5 | Exp Generator Usage | https://github.com/k8gege/Ladon/wiki/LadonExp-Usage |
| 6 | Highly Customizable Plugins | https://github.com/k8gege/Ladon/wiki/Ladon-Diy-Moudle |
| 7 | External Module Reference | https://github.com/k8gege/K8CScan/wiki |
| 8 | PowerLadon | https://github.com/k8gege/powerladon |
| 9 | PythonLadon | https://github.com/k8gege/PyLadon |
| 10 | LinuxLadon | https://github.com/k8gege/KaliLadon |
| 11 | LadonGo | https://github.com/k8gege/LadonGo |
| 12 | Vulnerability Demo Videos | https://github.com/k8gege/K8CScan/tree/master/Video |
| 13 | Ladon6.0 Documentation | http://k8gege.org/p/56393.html |
| 14 | Ladon6.2 Documentation | http://k8gege.org/p/39070.html |
| 13 | Ladon6.4 Documentation | http://k8gege.org/p/55476.html |
| 16 | Ladon6.5 Documentation | http://k8gege.org/Ladon/WinShell.html |