Pwdlyser
Pwdlyser (Password-Analyser) is a multi-functional analysis tool created to provide security professionals and organisations aiming to improve their security posture with the ability to easily review and analyse passwords from Active Directory domain accounts, databases, etc. The second was that it should be able to be used by security consultants and penetration testers to identify and target key-account passwords (such as Domain Admins), the most common Hashcat character password masks, and to provide an output for estimated entropy of the most common passwords within the list.
The result of this is a tool that provides a fantastic granular output and a simple report-ready format, both from a high-level management summary and that of more technical detail. The enterprise version also includes the ability to review dynamically-generated graphs and charts, relating to the key issues outlined within the results, along with an overarching review score, which can be used when performing regular audits to track and gauge improvements to securing the corporate password posture.
Feature
High-level Results Over Time
Continual auditing allows for graphing over time. Monitor and review the trends when performing regular audits.
Active Directory Integration
Connect to Active Directory and audit user accounts alongside the password analysis.
Simple and Effective Reporting
Create simple and effective reports automatically, aimed both at an executive and a technical level.
Administrative Account Auditing
Automated or manually assisted administrative account auditing. Compromised admin accounts can often lead to data loss.
Password History Re-use
Identify the user accounts that may be bypassing technical password policies by re-using their favourite passwords.
Password Re-use and Sharing
Locate user accounts that share a password with similarly named accounts, or identify where an administrator is using a frequently used password.
Download
Copyright (C) 2020 ins1gn1a