Versionv5.4.0-1355-gd8c50c8
Revision275
Size54.2 MB
LicenseGPL-3.0-or-later
Confinementstrict
Basecore22
CategoriesSecurity

A swiss army knife for pentesting networks


CrackMapExec (a.k.a CME) is a post-exploitation tool that helps automate assessing the security of large Active Directory networks. Built with stealth in mind, CME follows the concept of "Living off the Land": abusing built-in Active Directory features/protocols to achieve it's functionality and allowing it to evade most endpoint protection/IDS/IPS solutions.

CME makes heavy use of the impacket library (developed by @asolino) for working with network protocols and performing a variety of post-exploitation techniques.

Although meant to be used primarily for offensive purposes (e.g. red teams, internal pentest), CME can be used by blue teams as well to assess account privileges, find possible misconfigurations and simulate attack scenarios.

CrackMapExec is developed by @byt3bl33d3r and @mpgn

Installation: snap install --edge crackmapexec

User's Manual:- https://wiki.porchetta.industries/

Note:- For Kali Linux users, to use CrackMapExec snap you've to create openssl.cnf in /etc/ssl using the following command:-

sudo cp /etc/ssl/kali.cnf /etc/ssl/openssl.cnf

Update History

v5.4.0-1355-gd8c50c8 (275)
13 Dec 2025, 09:47 UTC

Published25 Sept 2022, 06:28 UTC

Last updated29 Oct 2023, 18:41 UTC

First seen13 Dec 2025, 09:47 UTC