Spencer McIntyre
|
07ab8b294f
|
Land #13957, allow dns server on different port
|
2020-08-07 16:15:17 -04:00 |
|
bwatters
|
231ad83773
|
Land #13860,Mikrotik Processing
Merge branch 'land-13860' into upstream-master
|
2020-08-07 14:48:22 -05:00 |
|
Robin Wood
|
0d6dcb6dc8
|
Update dyn_dns_update.rb
removed commit from other PR
|
2020-08-07 12:47:39 +01:00 |
|
Robin Wood
|
9ba8e3a803
|
Update dyn_dns_update.rb
Removed the deregistering of RPORT
|
2020-08-07 12:46:20 +01:00 |
|
Robin
|
cc1614be72
|
checking reply when asking if record already exists
|
2020-08-07 12:25:13 +01:00 |
|
Robin
|
51f2261921
|
allow dns server on different port
|
2020-08-07 11:39:58 +01:00 |
|
gwillcox-r7
|
d2b1d97b62
|
Land #13940, Compliance and Typo Edits for baldr_upload_exec
|
2020-08-06 11:25:31 -05:00 |
|
gwillcox-r7
|
2ca508c08e
|
Further edits for RuboCop and msftidy_docs.rb compliance
|
2020-08-06 11:18:39 -05:00 |
|
gwillcox-r7
|
5c6530d9e5
|
Update module description and documentation to have a better description of what is going on and to also fix further copies of the typos that were pointed out.
|
2020-08-06 10:50:47 -05:00 |
|
Jeffrey Martin
|
35017886b8
|
Land #13935, Preliminary Version 6
|
2020-08-06 10:19:34 -05:00 |
|
gwillcox-r7
|
63ca46bc0c
|
Land #13844, Add Linux Container Enumeration Module
|
2020-08-06 08:46:17 -05:00 |
|
stealthcopter
|
2cb1eb9fb3
|
rubocop changes
|
2020-08-06 09:31:17 +01:00 |
|
gwillcox-r7
|
0e1ae86511
|
More RuboCop fixes...
|
2020-08-05 21:14:24 -05:00 |
|
gwillcox-r7
|
88e96bab22
|
Add in support so that if a command is specified, we store its results for the host in the loot.
|
2020-08-05 20:47:06 -05:00 |
|
gwillcox-r7
|
283aa6156c
|
Fix a small typo on my side
|
2020-08-05 20:26:11 -05:00 |
|
gwillcox-r7
|
822ad64c62
|
Given that the current code skips the command execution part if a command is not supplied, there is no need to supply a default command.
|
2020-08-05 20:18:10 -05:00 |
|
gwillcox-r7
|
96215a586d
|
Fix up code to appropriately handle cases where container_execute, list_running_containers_id, and list_containers might fail due to an invalid container type
|
2020-08-05 19:40:22 -05:00 |
|
gwillcox-r7
|
d27edb46d8
|
Add further corrections from review and update calls to count_containers so we properly print out the actual number of running containers and the number of total containers (logic was correct but order was backwards))
|
2020-08-05 18:59:24 -05:00 |
|
gwillcox-r7
|
f1b7627f44
|
Apply RuboCop updates to the module.
|
2020-08-05 18:01:14 -05:00 |
|
gwillcox-r7
|
9e7c353a2b
|
Reorder some logic, replace some print_good statements with print_error, and generally make code changes to ensure that we print out if a container system exists on a target, but if we don't have permissions to list what its running that we alert the user of this and print a properly highlighted message that informs them of this, without storing information into any loot files
|
2020-08-05 17:46:18 -05:00 |
|
bwatters
|
ba7f1ea486
|
Land #13897, Fix dangling reference issue in cve_2020_0688_service_tracing.rb
and filesystem.rb
Merge branch 'land-13897' into upstream-master
|
2020-08-05 17:04:15 -05:00 |
|
gwillcox-r7
|
7989005a12
|
Update 'runnable' command so that it can enumerate if container software is installed on the host even if the user isn't the 'root' user.
|
2020-08-05 16:38:39 -05:00 |
|
Jericho
|
41e22992ff
|
typo and touch-ups to desc
typo and touch-ups to desc
|
2020-08-04 16:59:57 -06:00 |
|
bwatters
|
fade2c76b5
|
Land #13904, Added Module: priviledged docker container escape
Merge branch 'land-13904' into upstream-master
|
2020-08-04 14:39:17 -05:00 |
|
adfoster-r7
|
2efcb8d5cd
|
Land #13194, bloodhound cleanup
|
2020-08-04 13:32:01 +01:00 |
|
gwillcox-r7
|
6ed05df308
|
Land #13517, Documalis Free PDF Editor and Free PDF Scanner JPEG PDF Stack Buffer Overflow
|
2020-08-03 14:11:50 -05:00 |
|
gwillcox-r7
|
b64e843d9f
|
Remove CVE reference for now until we can add in a proper CVE reference, fix some alignment issues for Notes section
|
2020-08-03 13:06:45 -05:00 |
|
Jeffrey Martin
|
f69dedf40b
|
update payload sizes for mettle 1.0.2 gem
|
2020-08-03 12:32:33 -05:00 |
|
h00die
|
0ca7581b67
|
disk write method success
|
2020-08-03 13:08:39 -04:00 |
|
h00die
|
2dc04709e7
|
less privs needed
|
2020-08-03 13:08:39 -04:00 |
|
h00die
|
dac3cbcbcd
|
more options, more optimizations
|
2020-08-03 13:08:39 -04:00 |
|
h00die
|
498a94a9c0
|
bloodhound cleanup
|
2020-08-03 13:08:39 -04:00 |
|
Jeffrey Martin
|
9aa26d1208
|
Merge upstream into 6.x
|
2020-08-03 11:43:47 -05:00 |
|
gwillcox-r7
|
513f2dac9b
|
Add in Notes section to exploit
|
2020-08-03 11:00:17 -05:00 |
|
gwillcox-r7
|
b13b3b3d77
|
Add in a temp valid CVE number to see if that will get builds to pass or not
|
2020-07-31 17:49:14 -05:00 |
|
gwillcox-r7
|
8ad94e5484
|
Remove trailing new line at end of the line that was causing the last commit to fail for reasons other than the CVE being missing
|
2020-07-31 17:47:58 -05:00 |
|
gwillcox-r7
|
2d5fa912c3
|
Apply fixes to documentation to fix some errors and make it msftidy_docs.rb compliant. Also apply RuboCop updates to the module
|
2020-07-31 17:36:51 -05:00 |
|
gwillcox-r7
|
e355bc783c
|
Update the module's description and title to be more accurate, and also remove the EDB field and replace it with a temporary CVE field
|
2020-07-31 16:07:33 -05:00 |
|
gwillcox-r7
|
96859ba492
|
Add in the proper instructions corresponding to the gadgets that we use for the SEH handler overwrite within the exploit
|
2020-07-31 15:50:49 -05:00 |
|
gwillcox-r7
|
907bedca34
|
Edit up the exploit to correct the size calculation logic so it correctly calculates the maximum size of the payload and ensures we don't overrun this.
|
2020-07-31 15:36:37 -05:00 |
|
Spencer McIntyre
|
a32d4c2a20
|
Land #13875, CVE-2020-8010 & CVE-2020-8012
|
2020-07-31 09:08:36 -04:00 |
|
stealthcopter
|
10e591ae24
|
Randomized exploit filenames
|
2020-07-30 17:35:30 +01:00 |
|
stealthcopter
|
f424887536
|
Using upload_and_chmodx function and linting
|
2020-07-30 17:04:45 +01:00 |
|
stealthcopter
|
ad80baa71e
|
Added loot and lxc table formatting
|
2020-07-30 16:52:41 +01:00 |
|
gwillcox-r7
|
b6bce114ea
|
Add in further edits to the library code to remove the possiblity of dangling handles and also update the module code accordingly.
|
2020-07-30 10:45:19 -05:00 |
|
h00die
|
d366666418
|
add Mikrotik SwOS
|
2020-07-30 11:29:25 -04:00 |
|
Spencer McIntyre
|
a7274afd46
|
Add an optional delay when executing PSExec commands
|
2020-07-30 09:45:22 -04:00 |
|
gwillcox-r7
|
2ef43ab7d0
|
Land #13920, CVE-2020-1147 SharePoint Deserialization RCE
|
2020-07-29 16:10:32 -05:00 |
|
gwillcox-r7
|
17c26b098b
|
Ninja edit to make sure that if we fail to authenticate to the server, we return CheckCode::Unknown rather than CheckCode::Safe
|
2020-07-29 16:08:51 -05:00 |
|
Spencer McIntyre
|
4fa657d6eb
|
Fix a bunch of documentation typos and minor code cleanups
|
2020-07-29 16:30:44 -04:00 |
|