RageLtMan
dd2ccb3750
AWSOOB: add references, cleanup ssm_enum name
2023-08-01 15:04:32 -04:00
JustAnda7
79d3cc81cb
changes-to-support-nmap-script
2023-08-01 07:50:01 -04:00
h00die
2130328b96
apache superset review
2023-07-31 15:58:40 -04:00
h00die
7c76196a5b
apache superset review
2023-07-28 16:21:23 -04:00
adfoster-r7
fa97281267
Add documentation on building and testing vulnerable targets
2023-07-25 13:48:38 +01:00
adfoster-r7
f287f50be7
Land #18187 , Fixes incorrect usage of pack/unpack directives
2023-07-21 11:40:02 +01:00
dwelch-r7
1af22cfd22
Land #18096 , Add initial proxies datastore support for kerberos workflows
2023-07-21 11:37:04 +01:00
adfoster-r7
08a2a293a9
Add proxies datastore support to kerberos
2023-07-21 11:19:50 +01:00
adfoster-r7
2ae6688815
Fix libssh_auth_bypass crash on newer versions
2023-07-20 12:29:21 +01:00
cgranleese-r7
8e0a909b18
Fixes incorrect usage of pack/unpack directives
2023-07-19 11:39:00 +01:00
rodnt
d7b0e94729
fix made at the request of bwatters-r7
2023-07-14 21:34:32 +00:00
rodnt
1e75365f8e
Update with all changes proposed by smcintyre-r7
2023-07-13 23:38:55 +00:00
rodnt
4dc6e59fa3
bwatters-r7 suggestions were applied.
2023-07-13 12:51:34 +00:00
101719434+rodnt@users.noreply.github.com
5b638bb37b
add module and doc for cve-2023-26876
2023-07-12 15:45:40 -03:00
h00die
3d3e2a9e2d
apache supserset exploit
2023-07-11 15:19:33 -04:00
Jack Heysel
420147d02e
Land #18164 , WooCommerce Payments auxiliary module
...
This module exploits an auth bypass and priv esc vulnerability
in order to create an admin wordpress user.
2023-07-10 17:19:56 -04:00
h00die
d6911f6b13
add new api endpoint, and checks for multiple versions
2023-07-09 19:48:16 -04:00
Grant Willcox
81cf6c2a09
Fix up credential storing code
2023-07-06 10:43:20 -05:00
Grant Willcox
c3aefe577b
Fix url_root loop code and user creation code
2023-07-06 09:36:19 -05:00
h00die
2c2f855e20
working cookies for superset
2023-07-06 07:12:39 -04:00
JustAnda7
8e33badd80
Better-parsing-of-dn-and-minor-changes
2023-07-05 18:21:48 +00:00
Grant Willcox
3abcb3ebaa
Explain ADMINID field more
2023-07-05 13:10:41 -05:00
Grant Willcox
ce19ce5b72
Apply fixes from review
2023-07-05 12:24:51 -05:00
Christophe De La Fuente
ae48236d07
Land #18122 , rocketmq version lib
2023-07-05 18:11:25 +02:00
Grant Willcox
da6cdd1d5b
Fix up datastore setting code
2023-07-05 10:55:14 -05:00
h00die
8d686e5a28
woocommerce payments auth bypass
2023-07-04 13:06:27 -04:00
h00die
375a315b3d
woocommerce payments auth bypass
2023-07-04 13:05:07 -04:00
h00die
c9249fd9b7
basics
2023-07-02 12:37:58 -04:00
adfoster-r7
085943bd78
Add Ruby 3.3.0-preview1 to test suite
2023-06-29 22:53:17 +01:00
Spencer McIntyre
7da9ea07aa
Land #17796 , AWS EC2 enum: implement reporting
2023-06-26 17:31:38 -04:00
Spencer McIntyre
fd89ac6893
Fix REGION related issues
...
Fixes hanging when REGION is invalid. Fixes a stack trace when REGION is
an empty string.
2023-06-26 17:18:13 -04:00
RageLtMan
60523c0f9b
Apply @smcintyre-r7's logic fix
...
Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com >
2023-06-23 18:48:21 -04:00
dwelch-r7
e298788a28
Land #18049 , Update jenkins login scanner to work with newer versions
2023-06-22 14:04:24 +01:00
Jack Heysel
64b441be2a
Rspec tests, get_broker_port addition
2023-06-22 01:29:33 -04:00
Nishant Desai
823824163e
Documentation-of-Capturing-Simple-Auth
2023-06-21 13:29:25 +00:00
cgranleese-r7
0609d246f3
adds more future proofing to implementation
2023-06-21 14:19:24 +01:00
Nishant Desai
e3c97148e8
Capturing-SimpleBind-Authentication
2023-06-18 18:47:42 +00:00
h00die
67225650de
convert _ to .
2023-06-16 16:13:36 -04:00
h00die
4f661ff230
rocketmq version lib
2023-06-16 15:36:06 -04:00
adfoster-r7
51dc30909a
Land #17670 , add module to exploit CVE-2019-16328
2023-06-14 23:30:33 +01:00
Jack Heysel
c98cc00de9
Land #18075 , RocketMQ version scanner
2023-06-13 18:15:34 -04:00
Jeffrey Martin
fa33052cf8
Land #18090 , Update the exported keytab table entries to sort by db insert id
2023-06-13 08:13:25 -05:00
adfoster-r7
7fe6b8f481
Update the exported keytab table entries to sort by db insert id
2023-06-13 09:14:06 +01:00
RageLtMan
ead8a99d79
AWS EC2 Enum: handle limits properly
...
Get all instances if limit is not set, improve output slightly.
Note: `inst.network_interfaces.select {|iface| iface.association}`
appears to have problems with multiple calls at run time - says
that the AWS SDK is trying to call `:[]` on `nil` but works in Pry.
2023-06-10 08:45:25 -04:00
Jeffrey Martin
c33fe50bbb
remove overzealous error handler
...
Update the error handling around the EC2 sdk to follow official documentation:
https://github.com/aws/aws-sdk-ruby/blob/a350a9cf9946aadd1292df6936aecd706c6ddd85/gems/aws-sdk-ec2/lib/aws-sdk-ec2.rb#L68-L72
2023-06-10 08:45:25 -04:00
Jeffrey Martin
b1477a8616
add new notes metadata
2023-06-10 08:45:25 -04:00
RageLtMan
afdcf76ef6
AWS EC2 enum: rubocop pass
2023-06-10 08:45:25 -04:00
RageLtMan
a04b54486f
AWS EC2 enum: parse tags
2023-06-10 08:45:25 -04:00
RageLtMan
00eed69b92
AWS EC2 enum: implement reporting
2023-06-10 08:45:25 -04:00
h00die
3e538a34af
review comments
2023-06-08 16:38:22 -04:00