Spencer McIntyre
f0f1aa9eb3
Add initial MsDnsp data structures
2025-01-29 16:34:25 -05:00
adfoster-r7
9c98804d58
Merge pull request #19800 from zeroSteiner/fix/dns/caching-incompatible-answers
...
Carry on if the record can't be cached
2025-01-15 22:45:50 +00:00
Spencer McIntyre
e425bba900
Catch the exception and log a message
2025-01-15 16:59:07 +00:00
Dean Welch
4c478a5b23
Add LDAP to the set of interactive session types
2025-01-15 09:51:35 +00:00
Spencer McIntyre
db3699a516
Carry on if the record can't be cached
2025-01-10 15:45:49 -05:00
jheysel-r7
d560a3202e
Merge pull request #19751 from zeroSteiner/fix/issue/19744
...
Fix missing attributes on LDAP SSL sockets
2025-01-07 09:47:53 -08:00
jheysel-r7
f475b9d4d6
Merge pull request #19749 from zeroSteiner/fix/mod/ntp_nak_to_the_future
...
Fix ntp_nak_to_the_future
2025-01-07 09:01:15 -08:00
adfoster-r7
6b805bfdd6
Merge pull request #19755 from smashery/ua-strings-dec24
...
Updated user agent strings December 2024
2025-01-01 19:48:25 +00:00
Martin Sutovsky
789f7cfcd1
Land #19731 , new feature for recognizing broken SMB session and managing them
2024-12-23 12:06:49 +01:00
Spencer McIntyre
6eb2f6170c
Merge pull request #19756 from smashery/dns_reorder
...
Add the ability to reorder DNS entries
2024-12-20 11:50:38 -05:00
Spencer McIntyre
a68b9dc8cd
Remove the old NTPSymmetric model
...
It is no longer in use by any modules. It has been superseded by
NTPHeader.
2024-12-20 08:57:24 -05:00
Ashley Donaldson
ee4f01f0a4
Ability to reorder DNS entries
2024-12-20 11:02:38 +11:00
Ashley Donaldson
4eb01d7395
Updated user agent strings December 2024
2024-12-20 08:56:07 +11:00
Spencer McIntyre
c8100375d9
Fix missing attributes on SSL sockets
2024-12-19 14:52:08 -05:00
Spencer McIntyre
048038f44a
Add NTP mode constants
2024-12-18 15:33:38 -05:00
Spencer McIntyre
f4dc4a8220
Add the NTPHeader structure
2024-12-18 15:33:33 -05:00
Ashley Donaldson
40f2eaaab1
Recognise broken SMB sessions and close them
2024-12-16 19:52:19 +11:00
szymonj99
78781be801
Set readline output to non-prompting on method exit
2024-12-09 18:53:54 +00:00
Spencer McIntyre
d22c6996be
Merge pull request #18877 from h00die/xspy
...
New module to replicate xspy tool (and X11 library)
2024-12-02 13:38:37 -05:00
Spencer McIntyre
cd4899da00
Refactor some X11 code around
...
Consistently refer to replys as responses
2024-11-27 15:19:26 -05:00
Spencer McIntyre
502e415344
Merge pull request #19630 from remmons-r7/cups_ipp_rce
...
Exploit module for IPP attributes remote code execution - OpenPrinting CUPS
2024-11-22 09:22:21 -05:00
Spencer McIntyre
24d3ef16cf
Remove some unnecessary code, switch to passive stance
2024-11-21 15:08:43 -05:00
h00die
4ff389762d
xspy updates
2024-11-20 19:35:19 -05:00
jheysel-r7
05cbd1d9a3
Land #19593 Add exploit for CVE-2023-28324 (Unauthenticated RCE in Ivanti EPM)
...
This exploits an unauthenticated RCE in Ivanti's EPM where a .NET remoting client can invoke a method that results in an OS command being executed in the context of NT AUTHORITY\SYSTEM.
2024-11-20 11:18:58 -08:00
adfoster-r7
e6615d3a74
Merge pull request #19659 from sjanusz-r7/fix-irb-deadlock-error
...
Fix IRB deadlock recursive locking on Ctrl+C
2024-11-19 16:11:09 +00:00
Christophe De La Fuente
7bab1c1980
Fix specs and add algorithm argument
2024-11-18 17:17:58 +01:00
sjanusz-r7
bc45734fed
Fix IRB deadlock recursive locking on Ctrl+C
2024-11-18 14:37:01 +00:00
Christophe De La Fuente
35bb832b7c
Add create_csr helper under Rex::Proto
...
Also update `ms_icpr.rb` to use it
2024-11-12 12:34:20 +01:00
remmons-r7
4951a9b24d
Create mDNS server.rb
2024-11-11 15:54:44 -06:00
Spencer McIntyre
c98830834b
Merge pull request #19620 from dudu7615/Fixed-spelling-errors-in-command-usage
...
Fixed spelling errors in command usage
2024-11-07 09:14:32 -05:00
dudu
8ffa333a97
Fixed spelling errors in command usage
2024-11-06 20:38:51 +08:00
Spencer McIntyre
5550e073dd
Implement suggested changes
2024-10-31 11:29:34 -04:00
bwatters
c4c1aae565
Update smb thread logging, fix control flow, use RELAY_TARGET, other suggestions
2024-10-24 15:23:10 -05:00
bwatters
7d86c99ba6
Currently getting a bad username/password message
2024-10-24 15:23:09 -05:00
adfoster-r7
fdfda1f7e3
Fix crash when running meterpreter shell command
2024-10-23 00:35:47 +01:00
Spencer McIntyre
77f63442d7
Add the initial higher level client
2024-10-17 12:54:25 -04:00
Spencer McIntyre
619620733d
Add the initial Ivanti Agent Portal RCE
2024-10-17 12:54:25 -04:00
Spencer McIntyre
4dbcde793b
Add the definitions for MS-NRTP messages
2024-10-17 12:54:25 -04:00
Spencer McIntyre
8d943efc30
Add the ldapwhoami command support
...
See RFC4532 and ruby-ldap/ruby-net-ldap#425
2024-10-17 11:23:31 -04:00
Spencer McIntyre
fd1f14e5ab
Add the x509 definitions for ESC15
2024-10-17 11:23:31 -04:00
adfoster-r7
26e041dbfe
Merge pull request #19108 from smashery/new_cmd_exec
...
New process launch API
2024-10-17 00:08:06 +01:00
dwelch-r7
9cb3fefb40
Land #19539 , Keep LDAP sessions alive
2024-10-15 11:28:08 +01:00
Ashley Donaldson
0ab16ae3af
Fix bug when no arguments are present
2024-10-12 14:36:08 +11:00
Ashley Donaldson
5d71aa26e3
Treat old-style path separately to new (unescaped) path
2024-10-12 14:36:08 +11:00
Ashley Donaldson
85d019cd3c
Handle CommandLineToArgv behaviour
2024-10-12 14:36:08 +11:00
Ashley Donaldson
e9f86c4865
Reworked unix create_process, as it was buggy
2024-10-12 14:36:08 +11:00
Ashley Donaldson
955c675334
Implement new cmd_exec API for PowerShell
2024-10-12 14:36:08 +11:00
Ashley Donaldson
395e74359e
Update User Agent strings for October 2024. Add script to automate this in future.
2024-10-11 09:31:07 +11:00
Ashley Donaldson
c732fed617
Feedback from code review
2024-10-11 08:22:39 +11:00
Ashley Donaldson
22cf3f05d5
Send a benign LDAP request every 10 minutes to keep sessions alive
2024-10-11 08:22:39 +11:00