|
1 | 1 | package main |
2 | 2 |
|
3 | 3 | import ( |
4 | | - "context" |
5 | | - "fmt" |
6 | | - "github.com/RedTeamPentesting/adauth/smbauth" |
7 | | - "github.com/oiweiwei/go-msrpc/smb2" |
8 | | - "github.com/oiweiwei/go-msrpc/ssp" |
9 | | - "net" |
10 | | - "os" |
11 | | - "path/filepath" |
12 | | - |
13 | | - "github.com/RedTeamPentesting/adauth" |
14 | | - "github.com/oiweiwei/go-msrpc/ssp/gssapi" |
15 | | - "github.com/spf13/pflag" |
16 | | -) |
| 4 | + "context" |
| 5 | + "fmt" |
| 6 | + "net" |
| 7 | + "os" |
| 8 | + "path/filepath" |
17 | 9 |
|
18 | | -var ( |
19 | | - debug bool |
20 | | - authOpts = &adauth.Options{ |
21 | | - Debug: adauth.NewDebugFunc(&debug, os.Stderr, true), |
22 | | - } |
23 | | -) |
| 10 | + "github.com/RedTeamPentesting/adauth/smbauth" |
24 | 11 |
|
25 | | -func init() { |
26 | | - pflag.CommandLine.BoolVar(&debug, "debug", false, "Enable debug output") |
27 | | - authOpts.RegisterFlags(pflag.CommandLine) |
28 | | - gssapi.AddMechanism(ssp.SPNEGO) |
29 | | - gssapi.AddMechanism(ssp.NTLM) |
30 | | -} |
| 12 | + "github.com/RedTeamPentesting/adauth" |
| 13 | + "github.com/spf13/pflag" |
| 14 | +) |
31 | 15 |
|
32 | 16 | func run() error { |
33 | | - pflag.Parse() |
34 | | - |
35 | | - if len(pflag.Args()) != 1 { |
36 | | - return fmt.Errorf("usage: %s <target> [--debug]", binaryName()) |
37 | | - } |
38 | | - |
39 | | - creds, target, err := authOpts.WithTarget(context.Background(), "host", pflag.Arg(0)) |
40 | | - if err != nil { |
41 | | - return err |
42 | | - } |
43 | | - |
44 | | - ctx := gssapi.NewSecurityContext(context.Background()) |
45 | | - |
46 | | - smbOpts, secOpts, err := smbauth.AuthenticationOptions(ctx, creds, target, &smbauth.Options{}) |
47 | | - if err != nil { |
48 | | - return err |
49 | | - } |
50 | | - |
51 | | - // Create go-smb2 Dialer |
52 | | - dialer := smb2.NewDialer(append(smbOpts, smb2.WithSecurity(secOpts...))...) |
53 | | - |
54 | | - conn, err := net.Dial("tcp", net.JoinHostPort(target.AddressWithoutPort(), "445")) |
55 | | - if err != nil { |
56 | | - return err |
57 | | - } |
58 | | - defer conn.Close() |
59 | | - |
60 | | - sess, err := dialer.Dial(conn) |
61 | | - if err != nil { |
62 | | - return err |
63 | | - } |
64 | | - defer sess.Logoff() |
65 | | - |
66 | | - names, err := sess.ListSharenames() |
67 | | - if err != nil { |
68 | | - return err |
69 | | - } |
70 | | - |
71 | | - for _, name := range names { |
72 | | - fmt.Println(name) |
73 | | - } |
74 | | - return nil |
| 17 | + var ( |
| 18 | + debug bool |
| 19 | + authOpts = &adauth.Options{ |
| 20 | + Debug: adauth.NewDebugFunc(&debug, os.Stderr, true), |
| 21 | + } |
| 22 | + smbauthOpts = &smbauth.Options{ |
| 23 | + Debug: authOpts.Debug, |
| 24 | + } |
| 25 | + ) |
| 26 | + |
| 27 | + pflag.CommandLine.BoolVar(&debug, "debug", false, "Enable debug output") |
| 28 | + authOpts.RegisterFlags(pflag.CommandLine) |
| 29 | + pflag.Parse() |
| 30 | + |
| 31 | + if len(pflag.Args()) != 1 { |
| 32 | + return fmt.Errorf("usage: %s [options] <target>", binaryName()) |
| 33 | + } |
| 34 | + |
| 35 | + creds, target, err := authOpts.WithTarget(context.Background(), "host", pflag.Arg(0)) |
| 36 | + if err != nil { |
| 37 | + return err |
| 38 | + } |
| 39 | + |
| 40 | + if target.Port == "" { |
| 41 | + target.Port = "445" |
| 42 | + } |
| 43 | + |
| 44 | + ctx := context.Background() |
| 45 | + |
| 46 | + smbDialer, err := smbauth.Dialer(ctx, creds, target, smbauthOpts) |
| 47 | + if err != nil { |
| 48 | + return fmt.Errorf("setup SMB authentication: %w", err) |
| 49 | + } |
| 50 | + |
| 51 | + conn, err := net.Dial("tcp", target.Address()) |
| 52 | + if err != nil { |
| 53 | + return fmt.Errorf("dial: %w", err) |
| 54 | + } |
| 55 | + |
| 56 | + defer conn.Close() |
| 57 | + |
| 58 | + sess, err := smbDialer.DialContext(ctx, conn) |
| 59 | + if err != nil { |
| 60 | + return fmt.Errorf("create session: %w", err) |
| 61 | + } |
| 62 | + |
| 63 | + defer sess.Logoff() |
| 64 | + |
| 65 | + shares, err := sess.ListSharenames() |
| 66 | + if err != nil { |
| 67 | + return fmt.Errorf("list share names: %w", err) |
| 68 | + } |
| 69 | + |
| 70 | + if len(shares) == 0 { |
| 71 | + fmt.Println("No shares available") |
| 72 | + |
| 73 | + return nil |
| 74 | + } |
| 75 | + |
| 76 | + fmt.Println("Shares:") |
| 77 | + |
| 78 | + for _, share := range shares { |
| 79 | + fmt.Printf(" - %s\n", share) |
| 80 | + } |
| 81 | + |
| 82 | + return nil |
75 | 83 | } |
76 | 84 |
|
77 | 85 | func binaryName() string { |
78 | | - executable, err := os.Executable() |
79 | | - if err == nil { |
80 | | - return filepath.Base(executable) |
81 | | - } |
| 86 | + executable, err := os.Executable() |
| 87 | + if err == nil { |
| 88 | + return filepath.Base(executable) |
| 89 | + } |
82 | 90 |
|
83 | | - if len(os.Args) > 0 { |
84 | | - return filepath.Base(os.Args[0]) |
85 | | - } |
| 91 | + if len(os.Args) > 0 { |
| 92 | + return filepath.Base(os.Args[0]) |
| 93 | + } |
86 | 94 |
|
87 | | - return "list-shares" |
| 95 | + return "smb" |
88 | 96 | } |
89 | 97 |
|
90 | 98 | func main() { |
91 | | - err := run() |
92 | | - if err != nil { |
93 | | - fmt.Fprintf(os.Stderr, "Error: %v\n", err) |
| 99 | + err := run() |
| 100 | + if err != nil { |
| 101 | + fmt.Fprintf(os.Stderr, "Error: %v\n", err) |
94 | 102 |
|
95 | | - os.Exit(1) |
96 | | - } |
| 103 | + os.Exit(1) |
| 104 | + } |
97 | 105 | } |
0 commit comments