All tools

Sniffing & MITM

Responder

LLMNR/NBT-NS/MDNS poisoner that captures NetNTLM hashes on LANs.

intermediate
Linux
Exploitation
Enumeration

Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.

When

On internal Windows networks (authorized) where name resolution poisoning is in scope.

How

Run on interface; wait for authentications; crack or relay hashes.

Why

Common real-world internal attack path.

Commands & usage

sudo responder -I eth0 -wd
sudo responder -I eth0 -wrf

Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.

Tags

llmnr
hashes
internal

Related in Sniffing & MITM