mirror of
https://github.com/cisagov/snafflepy
synced 2026-09-24 18:22:23 +00:00
Merge pull request #42 from FL1GG/iss-41
initial idea for share specific scanning
This commit is contained in:
@@ -51,7 +51,7 @@ def begin_snaffle(options):
|
||||
for target in options.targets:
|
||||
|
||||
smb_client = SMBClient(
|
||||
target, options.username, options.password, options.domain, options.hash)
|
||||
target, options.username, options.password, options.domain, options.hash, options.shares)
|
||||
if not smb_client.login():
|
||||
log.error(f"Unable to login to{target}")
|
||||
continue
|
||||
|
||||
+6
-1
@@ -20,7 +20,7 @@ class SMBClient:
|
||||
Wrapper around impacket's SMBConnection() object
|
||||
'''
|
||||
|
||||
def __init__(self, server, username, password, domain, nthash):
|
||||
def __init__(self, server, username, password, domain, nthash, share_names):
|
||||
|
||||
self.server = server
|
||||
|
||||
@@ -30,6 +30,7 @@ class SMBClient:
|
||||
self.password = password
|
||||
self.domain = domain
|
||||
self.nthash = nthash
|
||||
self.share_names = share_names
|
||||
if self.nthash:
|
||||
# means no password, see https://yougottahackthat.com/blog/339/what-is-aad3b435b51404eeaad3b435b51404ee
|
||||
self.lmhash = 'aad3b435b51404eeaad3b435b51404ee'
|
||||
@@ -46,6 +47,10 @@ class SMBClient:
|
||||
remarkname = resp[i]['shi1_remark'][:-1]
|
||||
# log.info(f'Found share {sharename} on {self.server}, remark {remarkname}')
|
||||
|
||||
if(self.share_names != None): # if shares are empty, then scan all shares (otherwise)
|
||||
if(not sharename in self.share_names.split(",")): # if share is not in our list of shares to scan, skip it
|
||||
continue
|
||||
|
||||
share_text = termcolor.colored("[Share]", 'light_yellow')
|
||||
|
||||
print(share_text, termcolor.colored(
|
||||
|
||||
Reference in New Issue
Block a user