pythem is a multi-purpose pentest framework written in Python. It has been developed to be used by security researchers and security professionals. The tool intended to be used only for acts within the law. I am not liable for any undue and unlawful act practiced by this tool, for more information, read the license.
This repository is an upgraded/modernized version of the original PytheM project by Angelo Moura (m4n3dw0lf): https://github.com/m4n3dw0lf/pythem/
Links:
NOTE: Tested only with Debian-based distros, feel free to try the dependencies installation with yum or zypper if you use Redhat-like or SUSE-like.
sudo apt-get update
sudo apt-get install -y build-essential python3-dev python3-pip tcpdump \
libnetfilter-queue-dev libffi-dev libssl-dev
- With pip:
sudo pip3 install pythem
- With source:
git clone https://github.com/3tternp/PytheM
cd PytheM
sudo python3 setup.py install
- With source and pip:
git clone https://github.com/3tternp/PytheM
cd PytheM
sudo python3 setup.py sdist
sudo pip3 install dist/*
- Call on a terminal (Requires root privileges):
$ sudo pythem
- Run from source (Python 3):
$ python3 pythem.py
- Run optional web UI (Python 3):
$ python3 pythem.py --web
- Requires Docker
docker build -t pythem .
docker run -it --net=host --rm --name pythem pythem
- ARP spoofing - Man-in-the-middle.
- ARP+DNS spoof - fake page redirect to credential harvester
- DHCP ACK Injection spoofing - Man-in-the-middle
- Man-in-the-middle inject BeEF hook
- SSH Brute-Force attack.
- Web page formulary brute-force
- URL content buster
- Overthrow the DNS of LAN range/IP address
- Redirect all possible DNS queries to host
- Get Shellcode from binary
- Filter strings on pcap files
- Exploit Development 1: Overwriting Instruction Pointer
- Exploit Development 2: Ret2libc
- scan
- webcrawl
- arpspoof
- dhcpspoof
- dnsspoof
- redirect
- sniff
- dos
- pforensic
pforensic: Commands Reference
- xploit
xploit: Commands Reference

