h00die
6a851855a8
spelling fixes for lib folder
2024-01-06 15:54:49 -05:00
bwatters
548a2d7ab4
Add fetch payloads for Windows and Linux x64
2023-05-18 10:47:29 -05:00
Spencer McIntyre
ec4c45f145
Land #16521 , Add custom stage
2022-09-08 14:44:32 -04:00
bwatters
0201693519
Rebase and update with Spencer's collab branch
2022-05-26 18:31:37 -05:00
bwatters
41a5891627
Add x64 reverse_winhttp support for custom stagers
2022-05-24 16:13:01 -05:00
bwatters
e312619418
Add support for 64-bit, rubocop, and some requested changes
2022-05-24 16:13:01 -05:00
Spencer McIntyre
a8a9b4bbe1
Update the #generate signature to take opts
2022-05-19 16:30:54 -04:00
Spencer McIntyre
8206c24f4c
Account for dynamic cached sizes in Windows payloads
2022-05-09 11:55:57 -04:00
dwelch-r7
2e44a91b39
Refactor debugging config options to a common location
2022-04-29 15:04:12 +01:00
dwelch-r7
db1d42237b
Refactor debugging config options
2022-04-29 15:04:12 +01:00
dwelch-r7
ec9f0b5242
Add log path session config option
2022-04-29 15:04:11 +01:00
dwelch-r7
aca1b8df9b
Use debug versions of extensions if MeterpreterDebugBuild is enabled
2022-04-13 14:10:57 +01:00
dwelch-r7
647463b5ad
Use updated payloads gem and refactor debug option
2022-04-01 11:20:22 +01:00
dwelch-r7
8e773c1939
Rename debug option and make it advanced
2022-04-01 11:14:52 +01:00
dwelch-r7
13ca7c88f3
Add debug option for windows meterpreter
2022-04-01 11:14:52 +01:00
dwelch-r7
b95be3ed10
Zeitwerk rex folder
2021-02-08 12:24:12 +00:00
Tim W
a30cdfc892
Fix #14254 , Add CVE-2020-1054, win32k DrawIconEx OOB Write LPE
2020-12-14 14:54:54 +00:00
dwelch-r7
49a6b1b257
Remove requires that sneaked in while the PR was up
2020-12-07 11:02:10 +00:00
dwelch-r7
1617b3ec9b
Use zeitwerk for lib/msf/core folder
2020-12-07 10:31:45 +00:00
Tim W
12c5f4f916
CVE-2019-1458 chrome sandbox escape initial commit
2020-10-15 10:57:46 -05:00
Spencer McIntyre
c2d49384c0
Land #13980 , Reflective PE Payloads Added
2020-09-02 13:22:30 -04:00
Spencer McIntyre
67df4ea672
Adjust verbiage and whitespace, remove a buggy asm instruction
2020-09-02 13:20:50 -04:00
Ege Balcı
84b229d393
Major changes on x64 PE loader and several improvments
2020-08-31 21:35:59 +03:00
Ege Balcı
4bd8690370
Several bug fixes on x64 PE loader and PE mapper
2020-08-28 01:08:29 +03:00
Ege Balcı
66292a5f28
DLL preamble fixed & exitfunk is now optional
2020-08-26 19:45:44 +03:00
Ege Balcı
071eb14e4e
Update lib/msf/core/payload/windows/x64/reflective_pe_loader.rb
...
Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com >
2020-08-26 19:04:17 +03:00
Ege Balcı
138c951052
New PE loader mechanics, PE characteristics detection and several bug fixes
2020-08-20 20:35:32 +03:00
Spencer McIntyre
cc21e5e50d
Validate the PE file early on to raise errors
2020-08-12 17:32:12 -04:00
Ege Balcı
65643ff40c
Reflective PE Payloads Added
2020-08-12 14:38:56 +03:00
Spencer McIntyre
6f153688ff
Add labels to shuffled assembly source code for post-processing
2020-07-08 14:39:00 -04:00
Spencer McIntyre
90870c91de
Refactor the shuffle code to place it in a more accessible location
2020-07-07 18:13:55 -04:00
Spencer McIntyre
cfae4c76d0
Shuffle the block API source code every time
2020-07-07 15:55:32 -04:00
Auxilus
26b2ec3d84
remove spaces at EOL
2020-03-24 18:08:34 +05:30
dwelch-r7
66328675f7
Give flag correct name
2020-01-22 15:23:13 +00:00
dwelch-r7
1088448aac
Add flags to send custom cookies
2020-01-21 19:29:34 +00:00
bwatters-r7
36ae16df74
Accidentally removed include that is sort of imperative....
2019-07-31 08:46:01 -05:00
bwatters-r7
79b7bbd2cf
Update payload cache size and fix import bug
2019-07-26 13:52:36 -05:00
bwatters-r7
398a5dcce1
Reset send_uuid because it should not have been changed
...
remove debug print from options
change puts on pingback
2019-07-25 19:43:14 -05:00
bwatters-r7
374b56de89
Should not have changed reverse_tcp.rb
2019-07-25 19:43:14 -05:00
bwatters-r7
e51e271c92
Remove extra stuff that was part of the staged attempt at pingback.
...
It is no longer required because pingback is now a single.
2019-07-25 19:42:50 -05:00
bwatters-r7
e798a0dcf0
Add pingback changes
2019-07-25 19:42:25 -05:00
bwatters-r7
bee013a18c
update cache size and fix an assignment
2019-06-04 07:13:34 -05:00
RageLtMan
ff1630ad14
Implement bind TCP with RC4 decryption for x64
...
Update metasm generated shellcode blocks to cobble together an
RC4 decryption routine with a bind-socket handler for x64 targets.
Expose via new payload module
2019-06-03 18:06:53 -04:00
UserExistsError
bbf26c66f6
bind_named_pipe fixed for simpleclient versions param
2018-06-27 16:14:53 -06:00
Summus6
587215affc
Remove unwanted 'pop RAX' from windows/x64/reverse_(win)http
2018-03-20 11:01:10 +01:00
Jeffrey Martin
4801021aba
Land #9613 , add bind_named_pipe x86
2018-03-17 15:53:06 -05:00
bwatters-r7
0d07d44b14
ReLand #9565 , Reverse TCP x64 RC4 via max3raza's rc4_x64 asm
...
This reverts commit 7964868fcd .
2018-03-02 16:09:52 -06:00
bwatters-r7
7964868fcd
Revert "Land #9565 , Reverse TCP x64 RC4 via max3raza's rc4_x64 asm"
...
This reverts commit fcc579377f , reversing
changes made to 95cd149378 .
2018-03-02 08:29:48 -06:00
bwatters-r7
fcc579377f
Land #9565 , Reverse TCP x64 RC4 via max3raza's rc4_x64 asm
2018-03-02 07:34:45 -06:00
UserExistsError
e19a071910
add bind_named_pipe x86
2018-02-22 19:03:37 -07:00