Gold Open Source
ExplorePackagesVulnerabilitiesCWEsMCP ServersScan
Login
Gold Open Source

The authoritative source for production-ready open-source components. Every package, container image, AI model, and MCP server undergoes rigorous verification for security, malware, and license compliance.

Explore Gold

  • Explore Everything
  • Packages
  • Gold Certified Packages
  • Container Images
  • AI Models
  • MCP Servers
  • Agent Skills
  • Chip Manufacturers

Security Data & Tools

  • Scan Your Dependencies
  • Trending Threats
  • Threat RSS Feeds
  • CVE Database
  • Actively Exploited (KEV)
  • SGZ Zero-Days
  • CWE Index
  • MITRE ATT&CK
  • Malicious Packages
  • Security Glossary
  • Supply-Chain Report
  • Developers (API & Badge)
  • Chrome Extension
  • Credits & Data Sources

Products

  • The Platform
  • ESSCM
  • Portal
  • TPRM
  • OSM
  • Cowork
  • Code / Runner
  • Guard

Use Cases

  • Know Your Software
  • Auto-Fix Vulnerabilities
  • Asset Discovery
  • AI Governance
  • MCP Server Security
  • Supply Chain Compliance
  • Zero-Day Discovery
  • All Use Cases

Company

  • About
  • Pricing
  • Blog
  • Documentation
  • Safeguard Academy
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 Gold Open Source. All rights reserved.

Built with care bySafeguard
Home/ATT&CK/Software/S0488
MITRE ATT&CK Tool

CrackMapExec (S0488)

ShareXLinkedInRedditHN

[CrackMapExec](https://attack.mitre.org/software/S0488), or CME, is a post-exploitation tool developed in Python and designed for penetration testing against networks. [CrackMapExec](https://attack.mitre.org/software/S0488) collects Active Directory information to conduct lateral movement through targeted networks.(Citation: CME Github September 2018)

Platforms: Windows

▪Techniques implemented (20)

T1003.002Security Account ManagerT1003.003NTDST1110.003Password SprayingT1201Password Policy DiscoveryT1087.002Domain AccountT1049System Network Connections DiscoveryT1110.001Password GuessingT1053.002AtT1135Network Share DiscoveryT1018Remote System DiscoveryT1003.004LSA SecretsT1047Windows Management InstrumentationT1112Modify RegistryT1083File and Directory DiscoveryT1550.002Pass the HashT1680Local Storage DiscoveryT1069.002Domain GroupsT1059.001PowerShellT1016System Network Configuration DiscoveryT1110Brute Force

▪Used by groups (5)

G0087APT39G0046FIN7G1003Ember BearG0035DragonflyG0069MuddyWater
S0488on MITRE ATT&CK →

MITRE ATT&CK® is a registered trademark of The MITRE Corporation. © 2026 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.