Skip to content

Emulate the evil LDAP service in a vulnerable JNDI lookup

Notifications You must be signed in to change notification settings

sciccone/evil-ldap-service

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

31 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

evil-ldap-service

Simplified LDAP service to answer a vulnerable Java JNDI lookup.

What's simulated

alt text

Compile

mvn clean package

Usage

java -jar target/evil-ldap-service-jar-with-dependencies.jar -l <LISTEN_HOST> -lp <LDAP_PORT> -hp <HTTP_PORT> -c <OS_COMMAND>

About

Emulate the evil LDAP service in a vulnerable JNDI lookup

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages