-
Notifications
You must be signed in to change notification settings - Fork 56
Open
Labels
enhancementNew feature or requestNew feature or requestgood first issueGood for newcomersGood for newcomershelp wantedExtra attention is neededExtra attention is needed
Description
Hi!
Thanks for a great tool, I'm really fond of it :-)
The tool is blazingly fast and stable, but that can trigger lots of events that would correlate into alerts and offenses.
To combat that and make it more usable for Red Teams that require running their ops low and slow, I could suggest a few features that would be really helpful:
- Throttle time between subsequent connections: Just a delay before connecting to the next server.
- Jitter that would be introducing variance in specified throttle time
- List of servers to evaluate fed from parameter and from input file. There are use cases when we have for instance hundred of servers and would like to check only them for any exposed SMB shares. Can we have that implemented in SharpShares?
- The option
/filteris great as it acts as a blacklist. What about introducing whitelist-alike option as well? Something like/pattern. Also, both options - filter and new proposed pattern could accept regular expressions (or create dedicated switches for regular expression to avoid loosing performance while evaluating simple literal /filter and /pattern ones) - Accept username and password credentials to make authenticated shares scan on behalf of other user identity.
- LDAP Filter: let me specify my custom LDAP Filter that would be use to pull list of computers to check their SMB shares from AD, based on OU or my custom LDAP filter.
Cheers!
Mariusz.
qgrosperrin, TH3xACE and filipposmastro
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or requestgood first issueGood for newcomersGood for newcomershelp wantedExtra attention is neededExtra attention is needed