Skip to main content

LLMNR/NBT-NS/mDNS Poisoner and rogue service provider

Project description

Dementor

IPv6/IPv4 LLMNR/NBT-NS/mDNS Poisoner and rogue service provider - you can think if it as Responder 2.0. Get more information on the Documentation page.

Offers

  • No reliance on hardcoded or precomputed packets
  • Fine-grained, per-protocol configuration using a modular system (see Docs - Configuration)
  • Near-complete protocol parity with Responder (see Docs - Compatibility)
  • Easy integration of new protocols via the extension system
  • A lot of new protocols (e.g. IPP, MySQL, X11, ...)

Installation

Installation via pip/pipx from GitHub or PyPI:

pip install dementor

Usage

Just type in Dementor, specify the target interface and you are good to go! It is recommended to run Dementor with sudo as most protocol servers use privileged ports.

sudo Dementor -I "$INTERFACE_NAME"

Let's take a look.

index_video

CLI Options

 Usage: Dementor [OPTIONS]

╭─ Options ───────────────────────────────────────────────────────────────────────────────────────────────────────────────╮
│ --interface   -I      NAME        Network interface to use (required for poisoning)                                     │
│ --analyze     -A                  Only analyze traffic, don't respond to requests                                       │
│ --config      -c      PATH        Path to a configuration file (otherwise standard path is used)                        │
│ --option      -O      KEY=VALUE   Add an extra option to the global configuration file.                                 │
│ --host        -H      HOST        Host FQDN for all protocol servers (e.g. DC01.contoso.lab). Shortcut for -O           │
│                                   Globals.Host=FQDN.                                                                    │
│ --yes,--yolo  -y                  Do not ask before starting attack mode.                                               │
│ --target      -t      NAME[,...]  Target host(s) to attack                                                              │
│ --ignore      -i      NAME[,...]  Target host(s) to ignore                                                              │
│ --quiet       -q                  Don't print banner at startup                                                         │
│ --version                         Show Dementor's version number                                                        │
│ --ts                              Log timestamps to the terminal too                                                    │
│ --paths                           Displays the default configuration paths                                              │
│ --repl        -F                  Starts Dementor in interactive mode supporting runtime configuration                  │
│ --help                            Show this message and exit.                                                           │
╰─────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────╯

You need more?

Take a look at the Documentation on GitHub-Pages or at the Blog Series.

License

Distributed under the MIT License. See LICENSE for more information.

Disclaimer

Dementor is intended only for lawful educational purposes: learning, testing in your own lab, or assessments on systems where you have explicit written authorization. You agree not to use this software to access, damage, interfere with, or exfiltrate data from systems for which you do not have permission. We make no promises about safety, completeness, or fitness for any purpose. Use at your own risk. If you discover a vulnerability, please follow responsible disclosure by using the private disclosing feature offered by GitHub.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

dementor-1.0.0.dev22.tar.gz (263.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

dementor-1.0.0.dev22-py3-none-any.whl (294.0 kB view details)

Uploaded Python 3

File details

Details for the file dementor-1.0.0.dev22.tar.gz.

File metadata

  • Download URL: dementor-1.0.0.dev22.tar.gz
  • Upload date:
  • Size: 263.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.7

File hashes

Hashes for dementor-1.0.0.dev22.tar.gz
Algorithm Hash digest
SHA256 98d874a4ea9a5b709eae1d580d7f60007a4c942d44370f308f6966d24a251133
MD5 355a3efbbb4fcfa122a8ff8a7e29e4d4
BLAKE2b-256 f953d0879d8ed56819bddd3cf87a342456c1bd7d9ea087451a3b99b7f6bef0c9

See more details on using hashes here.

Provenance

The following attestation bundles were made for dementor-1.0.0.dev22.tar.gz:

Publisher: wheel-publish.yml on MatrixEditor/dementor

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file dementor-1.0.0.dev22-py3-none-any.whl.

File metadata

  • Download URL: dementor-1.0.0.dev22-py3-none-any.whl
  • Upload date:
  • Size: 294.0 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.7

File hashes

Hashes for dementor-1.0.0.dev22-py3-none-any.whl
Algorithm Hash digest
SHA256 e62ade2bffb0a16ada6cddbed7c368cdb6b0f25faf69656b6f166c689795c989
MD5 eb269cd562547f7ff792fbf9c0d53830
BLAKE2b-256 c6e365811f8644fb89d6ab57534283c5f44b932978d254d7113de4f077e381d5

See more details on using hashes here.

Provenance

The following attestation bundles were made for dementor-1.0.0.dev22-py3-none-any.whl:

Publisher: wheel-publish.yml on MatrixEditor/dementor

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page