Spencer McIntyre
|
11818c2812
|
Switch to using Rex's Crypto module
|
2025-02-27 10:52:09 -05:00 |
|
Spencer McIntyre
|
e159ea5300
|
Add the NIST SP 800 108 key derivation function
|
2025-02-26 18:09:36 -05:00 |
|
Spencer McIntyre
|
c9afd440f8
|
Add the NIST SP 800 38f key wrap function
|
2025-02-26 18:09:23 -05:00 |
|
Diego Ledda
|
8dd032e529
|
Land #19897, Invoice Ninja unauthenticated RCE (CVE-2024-55555) and Laravel Crypto Killer mixin
Land #19897, Invoice Ninja unauthenticated RCE (CVE-2024-55555) and Laravel Crypto Killer mixin
|
2025-02-25 13:14:18 +01:00 |
|
Spencer McIntyre
|
3487b485e9
|
Fix an API change from an old commit (#19880)
|
2025-02-25 10:15:33 +00:00 |
|
h00die-gr3y
|
79411eace8
|
added code sugesstions from dledda-r7
|
2025-02-24 15:51:32 +00:00 |
|
h00die-gr3y
|
ece33ee8ec
|
added documentation
|
2025-02-23 09:54:26 +00:00 |
|
H00die.Gr3y
|
b3a5da976b
|
Apply suggestions from code review
Co-authored-by: Julien Voisin <jvoisin@users.noreply.github.com>
|
2025-02-22 10:35:45 +01:00 |
|
h00die-gr3y
|
47a2079d19
|
initial module and laravel crypto killer mixin
|
2025-02-21 18:09:28 +00:00 |
|
Metasploit
|
3613013938
|
Bump version of framework to 6.4.51
|
2025-02-20 11:47:22 -06:00 |
|
Brendan
|
e9d4a9d918
|
Merge pull request #19858 from msutovsky-r7/fileless_elf_execution
Fileless elf execution
|
2025-02-18 15:05:47 -06:00 |
|
Simon Janusz
|
8f00370370
|
Make datastore to_h sane (#19890)
* Bump metasploit_data_models gem
* Make datastore to_h sane
|
2025-02-18 15:54:53 +00:00 |
|
cgranleese-r7
|
2e9326897f
|
Land #19887, Update reload_lib to ignore gemfiles
|
2025-02-17 14:14:02 +00:00 |
|
adfoster-r7
|
f16d31b7b1
|
Update reload_lib to ignore gemfiles
|
2025-02-17 13:50:41 +00:00 |
|
cgranleese-r7
|
80922124c8
|
Land #19884, Add osvdb search to msfconsole
|
2025-02-17 12:19:52 +00:00 |
|
dwelch-r7
|
19c6cd899c
|
Land #19885, Improve module search performance
|
2025-02-17 11:27:54 +00:00 |
|
adfoster-r7
|
a66981f9e7
|
Improve module search performance
|
2025-02-17 11:08:42 +00:00 |
|
adfoster-r7
|
3f85d6d46d
|
Add osvb search to msfconsole
|
2025-02-17 10:06:39 +00:00 |
|
Martin Sutovsky
|
dddcdccbef
|
Fixing generating certutil fetch command
|
2025-02-16 20:31:24 +01:00 |
|
msutovsky-r7
|
e284ea5dc7
|
Merge branch 'rapid7:master' into fileless_elf_execution
|
2025-02-16 20:01:15 +01:00 |
|
bwatters-r7
|
46e97e3776
|
Slight fixes and prep for adding piped fetch payloads
|
2025-02-13 11:35:06 -06:00 |
|
Metasploit
|
9dac85e3c9
|
Bump version of framework to 6.4.50
|
2025-02-13 03:34:13 -06:00 |
|
adfoster-r7
|
8e9c144e2c
|
Consolidate datastore with fallbacks logic
|
2025-02-09 20:26:52 +00:00 |
|
Martin Sutovsky
|
881ae72550
|
Optimizing execution of fetch command in bash
|
2025-02-09 09:17:19 +01:00 |
|
Martin Sutovsky
|
dfb1ed6d30
|
Land #19842, fixing jtr_format for NTLM hashes
|
2025-02-07 13:24:10 +01:00 |
|
Martin Sutovsky
|
ed648e9eca
|
Adding more reliable fileless fetch payload
|
2025-02-07 10:12:28 +01:00 |
|
jheysel-r7
|
6861b1fb67
|
Merge pull request #19729 from sempervictus/bug/shell_command_overlap
Fix overlap of shell built-in commands with host's
|
2025-02-06 10:27:12 -08:00 |
|
Martin Sutovsky
|
6d073540e8
|
More elegant way of generating fileless payload, code refactor based on comments
|
2025-02-06 19:22:36 +01:00 |
|
Brendan
|
853b42cfaf
|
Merge pull request #19851 from zeroSteiner/feat/mod/adcs-cert-template-flags
Parse and display the flags field
|
2025-02-06 08:00:02 -06:00 |
|
Martin Sutovsky
|
50c95af7e0
|
Refactoring fileless execution, adjusting generating fetch commands
|
2025-02-06 11:28:05 +01:00 |
|
Metasploit
|
05a2e9dc9f
|
Bump version of framework to 6.4.49
|
2025-02-06 03:32:51 -06:00 |
|
Martin Sutovsky
|
e3bb4791e1
|
Refactoring based on comments
|
2025-02-05 13:55:58 +01:00 |
|
Martin Sutovsky
|
0d558a1f71
|
Fileless execution condition specified
|
2025-02-05 09:08:34 +01:00 |
|
Martin Sutovsky
|
b678126361
|
Code factor, adding comments
|
2025-02-05 07:33:42 +01:00 |
|
Martin Sutovsky
|
a2044acc42
|
Bug fixed
|
2025-02-04 15:38:59 +01:00 |
|
Martin Sutovsky
|
b98fb7553d
|
Adding FETCH_FILELESS option
|
2025-02-04 13:26:50 +01:00 |
|
msutovsky-r7
|
20d2a6c7a7
|
Merge branch 'rapid7:master' into fileless_elf_execution
|
2025-02-04 09:47:02 +01:00 |
|
Martin Sutovsky
|
6ab32cde32
|
Ivanti HTTP Module fix based on remaining comments
|
2025-02-04 07:24:10 +01:00 |
|
Spencer McIntyre
|
0caaa5d655
|
Parse and display the flags field
|
2025-02-03 17:29:33 -05:00 |
|
jheysel-r7
|
652fbf1a62
|
Merge pull request #19813 from h00die/local_version_patch
guard Rex::Version.new against crashes on local modules
|
2025-02-03 12:43:37 -08:00 |
|
Diego Ledda
|
ba8d5b7f5a
|
Land #19844, Add Ivanti Connect Secure HTTP Login Module
Land #19844, Add Ivanti Connect Secure HTTP Login Module
|
2025-02-03 18:17:36 +01:00 |
|
msutovsky-r7
|
46d2d4c63d
|
Update lib/metasploit/framework/login_scanner/ivanti_login.rb
Co-authored-by: Diego Ledda <diego_ledda@rapid7.com>
|
2025-02-03 18:05:54 +01:00 |
|
Martin Sutovsky
|
834e499b2a
|
Adding check for presence of logout token
|
2025-02-03 16:44:01 +01:00 |
|
Martin Sutovsky
|
f06a2d47f8
|
Code refactor, merging classes into one
|
2025-02-03 06:34:49 +01:00 |
|
jheysel-r7
|
f3eefc0d7e
|
Merge pull request #19849 from zeroSteiner/feat/mod/ldap/esc-finder-updates
AD CS Workflow Related Changes
|
2025-01-31 15:00:14 -08:00 |
|
jheysel-r7
|
6f945ca1ce
|
Merge pull request #19837 from adfoster-r7/fix-task-service-tracking-bug
Fix task service tracking bug
|
2025-01-31 13:56:00 -08:00 |
|
Spencer McIntyre
|
f8dfaae599
|
Guard FQDN lookup logic a bit more
Use DNS first, then fail back to LDAP
|
2025-01-31 09:42:22 -05:00 |
|
Martin Sutovsky
|
37bfe9368b
|
Addressing comments from pull request
|
2025-01-30 13:01:40 +01:00 |
|
Metasploit
|
64be670dfa
|
Bump version of framework to 6.4.48
|
2025-01-30 03:32:46 -06:00 |
|
Spencer McIntyre
|
f0f1aa9eb3
|
Add initial MsDnsp data structures
|
2025-01-29 16:34:25 -05:00 |
|