Skip to main content
Pre-release

This release is a pre-release and may not be stable for production use.

Dementor

IPv6/IPv4 LLMNR/NBT-NS/mDNS Poisoner and rogue service provider - you can think if it as Responder 2.0. Get more information on the Documentation page.

Offers

  • No reliance on hardcoded or precomputed packets
  • Fine-grained, per-protocol configuration using a modular system (see Docs - Configuration)
  • Near-complete protocol parity with Responder (see Docs - Compatibility)
  • Easy integration of new protocols via the extension system
  • A lot of new protocols (e.g. IPP, MySQL, X11, ...)

Installation

Installation via pip/pipx from GitHub or PyPI:

pip install dementor

Usage

Just type in Dementor, specify the target interface and you are good to go! It is recommended to run Dementor with sudo as most protocol servers use privileged ports.

sudo Dementor -I "$INTERFACE_NAME"

Let's take a look.

index_video

CLI Options

 Usage: Dementor [OPTIONS]

╭─ Options ───────────────────────────────────────────────────────────────────────────────────────────────────────────────╮
│ --interface   -I      NAME        Network interface to use (required for poisoning)                                     │
│ --analyze     -A                  Only analyze traffic, don't respond to requests                                       │
│ --config      -c      PATH        Path to a configuration file (otherwise standard path is used)                        │
│ --option      -O      KEY=VALUE   Add an extra option to the global configuration file.                                 │
│ --host        -H      HOST        Host FQDN for all protocol servers (e.g. DC01.contoso.lab). Shortcut for -O           │
│                                   Globals.Host=FQDN.                                                                    │
│ --yes,--yolo  -y                  Do not ask before starting attack mode.                                               │
│ --target      -t      NAME[,...]  Target host(s) to attack                                                              │
│ --ignore      -i      NAME[,...]  Target host(s) to ignore                                                              │
│ --quiet       -q                  Don't print banner at startup                                                         │
│ --version                         Show Dementor's version number                                                        │
│ --ts                              Log timestamps to the terminal too                                                    │
│ --paths                           Displays the default configuration paths                                              │
│ --repl        -F                  Starts Dementor in interactive mode supporting runtime configuration                  │
│ --help                            Show this message and exit.                                                           │
╰─────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────╯

You need more?

Take a look at the Documentation on GitHub-Pages or at the Blog Series.

License

Distributed under the MIT License. See LICENSE for more information.

Disclaimer

Dementor is intended only for lawful educational purposes: learning, testing in your own lab, or assessments on systems where you have explicit written authorization. You agree not to use this software to access, damage, interfere with, or exfiltrate data from systems for which you do not have permission. We make no promises about safety, completeness, or fitness for any purpose. Use at your own risk. If you discover a vulnerability, please follow responsible disclosure by using the private disclosing feature offered by GitHub.

Metadata

Release files for dementor 1.0.0.dev25

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for dementor 1.0.0.dev25
File Size Uploaded
dementor-1.0.0.dev25.tar.gz 255.3 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for dementor 1.0.0.dev25
File Interpreter ABI Platform
dementor-1.0.0.dev25-py3-none-any.whl Python 3 none any Details

Total release size: 541.8 kB

Release files / dementor-1.0.0.dev25.tar.gz

Download URL dementor-1.0.0.dev25.tar.gz
Size 255.3 kB
Tags Source
SHA-256 checksum
How to use checksums
5ce394563ca16d0fe7eeda3ecfd09ce2f281db0a533aa94f2d3fd4153c40ddd7
BLAKE2b-256 checksum
How to use checksums
dbf549cd41616f96713bc2e753f1a8716a4b51c3119d70a35898a07ba186e42f
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.7

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 18, 2026.

Transparency log

Release files / dementor-1.0.0.dev25-py3-none-any.whl

Download URL dementor-1.0.0.dev25-py3-none-any.whl
Size 286.5 kB
Tags Python 3
SHA-256 checksum
How to use checksums
ed5faea5545e842f0691459c69804f3867445436f98559e14788abe7c65cf45b
BLAKE2b-256 checksum
How to use checksums
6c6da60bc5872b4a14cdac42e82fee650da6739458a8cdcaac2a361566993d92
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.7

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 18, 2026.

Transparency log
Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page