List vulnerable ACL.
Project description
A python script to automatically list vulnerable Windows ACEs/ACLs.
Installation
You can install it from pypi (latest version is ) with this command:
sudo python3 -m pip install abuseACL
OR from source :
git clone https://github.com/AetherBlack/abuseACL
cd abuseACL
sudo python3 -m pip install -r requirements.txt
sudo python3 setup.py install
OR with pipx :
python3 -m pipx install git+https://github.com/AetherBlack/abuseACL/
Examples
- You want to list vulnerable ACEs/ACLs for the current user :
abuseACL $DOMAIN/$USER:"$PASSWORD"@$TARGET
- You want to list vulnerable ACEs/ACLs for another user/computer/group :
abuseACL -principal Aether $DOMAIN/$USER:"$PASSWORD"@$TARGET
- You want to list vulnerable ACEs/ACLs for a list of users/computers/groups :
abuseACL -principalsfile accounts.txt $DOMAIN/$USER:"$PASSWORD"@$TARGET
Here is an example of principalsfile
content:
Administrateur
Group
aether
Machine$
- You want to list vulnerable ACEs/ACLs on Schema or on adminSDHolder :
abuseACL -extends $DOMAIN/$USER:"$PASSWORD"@$TARGET
You can look in the documentation of DACL to find out how to exploit the rights and use dacledit to exploit the ACEs.
How it works
The tool will connect to the DC's LDAP to list users/groups/computers/OU/certificate templates and their nTSecurityDescriptor, which will be parsed to check for vulnerable rights.
Credits
- @_nwodtuhs for the helpful DACL documentation
- @fortra for developping impacket
License
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
File details
Details for the file abuseacl-1.1.4.tar.gz
.
File metadata
- Download URL: abuseacl-1.1.4.tar.gz
- Upload date:
- Size: 26.7 kB
- Tags: Source
- Uploaded using Trusted Publishing? No
- Uploaded via: twine/5.1.0 CPython/3.12.4
File hashes
Algorithm | Hash digest | |
---|---|---|
SHA256 | a41004800b3580730efbd64efd7cc48a8c623bdf2b837fcb34fb8fd376801b53 |
|
MD5 | 8b8e9174427fb815e077b4c5f10ad930 |
|
BLAKE2b-256 | 33d925d5ebc69da35d93f3ea44301e0adc9c6cf9568f749d4366ddc66884c8bf |
File details
Details for the file abuseACL-1.1.4-py3-none-any.whl
.
File metadata
- Download URL: abuseACL-1.1.4-py3-none-any.whl
- Upload date:
- Size: 31.9 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? No
- Uploaded via: twine/5.1.0 CPython/3.12.4
File hashes
Algorithm | Hash digest | |
---|---|---|
SHA256 | 8d1728238df52031fdbb44bb6dd6327b34cff2ae62bc8fe4073821a57679ba2f |
|
MD5 | 92375a5efefdaf093925371ff591d4bc |
|
BLAKE2b-256 | 624da8d99cb9f23e1c813b8971d51a0a1b2732f978ddb98d28a1429c1073a8e2 |