ATT&CKReferencesGitHub Responder

GitHub Responder

Gaffie, L. (2016, August 25). Responder. Retrieved November 17, 2017.

Open the source

Techniques1

Groups0

None recorded.

Software1

Campaigns0

None recorded.

Procedure examples2

TechniqueUsed byProcedure example
T1040
Network Sniffing
ToolResponder

Responder captures hashes and credentials that are sent to the system after the name services have been poisoned.

T1557.001
Name Resolution Poisoning and SMB Relay
ToolResponder

Responder is used to poison name services to gather hashes and credentials from systems within a local network.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.