All tools
Sniffing & MITM
Responder
LLMNR/NBT-NS/MDNS poisoner that captures NetNTLM hashes on LANs.
intermediate
Linux
Exploitation
Enumeration
Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.
When
On internal Windows networks (authorized) where name resolution poisoning is in scope.
How
Run on interface; wait for authentications; crack or relay hashes.
Why
Common real-world internal attack path.
Commands & usage
sudo responder -I eth0 -wd
sudo responder -I eth0 -wrf
Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.
Tags
llmnr
hashes
internal