legba
« Back to VersTracker
Description:
Multiprotocol credentials bruteforcer/password sprayer and enumerator
Type: Formula  |  Tracked Since: Dec 28, 2025
Links: Homepage  |  @evilsocket  |  formulae.brew.sh
Category: Security
Tags: security pentesting bruteforce password-spraying red-team
Install: brew install legba
About:
Legba is a multiprotocol credentials bruteforcer, password sprayer, and enumerator. It supports a wide range of protocols including RDP, SSH, SMB, and HTTP for offensive security testing. Its main value is providing a unified, high-performance tool for credential stuffing and service enumeration.
Key Features:
  • Supports over 30 protocols including RDP, SSH, SMB, and HTTP
  • High-performance asynchronous operations for fast attacks
  • Modular plugin architecture for easy extension
  • Integrated service enumeration and fingerprinting
Use Cases:
  • Penetration testing and red team engagements
  • Auditing password policies and strength
  • Identifying exposed services and weak credentials
Alternatives:
  • Hydra – Hydra is a classic tool, but Legba offers a more modern, asynchronous architecture and broader protocol support in a single binary.
Version History
Detected Version Rev Change Commit
Sep 15, 2025 4:10pm 0 VERSION_BUMP 641c65fe
Sep 12, 2025 5:49pm 0 VERSION_BUMP 6eb62dd1