Christophe De La Fuente
b0b4da543d
Land #18400 , Kerberos ticket_search fix passing in a workspace
2023-10-23 16:17:24 +02:00
Christophe De La Fuente
77a8b0efa2
Land #18421 , Save Kerberos tickets in the MSF cache upon a successful login
2023-10-23 15:25:09 +02:00
cgranleese-r7
03433652e8
Land #18443 , Fix reverse ssh handler warnings on windows bootup
2023-10-13 10:24:31 +01:00
adfoster-r7
80d2fa738d
Land #18296 , update more mysql modules to support newer authentication methods
2023-10-12 17:19:02 +01:00
Spencer McIntyre
86b7ec4518
Address comments from the review
2023-10-12 09:50:19 -04:00
Spencer McIntyre
de8e392b7b
Only randomize the URI once
2023-10-12 09:50:19 -04:00
Spencer McIntyre
5577413bd9
Add additional classes for payload loading
...
This fixes the java/shell_reverse_tcp payload
2023-10-12 09:27:26 -04:00
Spencer McIntyre
f712c67441
Support URIPATH in Java::HTTP::ClassLoader
...
The URIPATH must end with / due to how the package names are requested
from the web server in a nested directory structure. #on_request_uri
also needed to be updated to check for the relative resource.
2023-10-12 09:27:26 -04:00
Rory McKinley
1b172768b4
Use upstream ruby-mysql in Remote::MYSQL
...
* ... and dependents
2023-10-12 13:08:35 +02:00
Ashley Donaldson
874366588c
Update metasploit side for java metasploit-payloads fix
2023-10-11 15:00:19 -04:00
adfoster-r7
0c407945a0
Fix reverse ssh handler warnings on windows bootup
2023-10-10 15:26:24 +01:00
Dean Welch
ef871685af
Revert accidental changes
2023-10-06 16:04:38 +01:00
Dean Welch
9eb4385a25
Get stats from the cache instead of from frameworks list of loaded modules
2023-10-06 16:04:38 +01:00
Dean Welch
d60993f7e8
Enable using modules when deferred loading is turned on
2023-10-06 16:04:34 +01:00
bwatters
a16379b2a7
Land #17919 , Post::Windows::Service: Support start/stop service on shell sessions
...
Merge branch 'land-17919' into upstream-master
2023-10-04 13:51:25 -05:00
adfoster-r7
14c42fcefc
Land #18405 , Show errors on inaccessible payload files
2023-10-03 12:22:04 +01:00
Ashley Donaldson
4d87d4e114
Save Kerberos tickets in the MSF cache upon a successful login
2023-10-03 13:45:41 +11:00
Jack Heysel
5087e0ffe3
Land #18197 , Ldap login scanner module
...
Adds a new login scanner module for LDAP
2023-10-02 10:56:56 -04:00
sjanusz-r7
e70f356239
Show errors on inaccessible payload files
2023-10-02 14:46:25 +01:00
Dean Welch
c1abf37d0c
Use passed in workspace if available, default to current workspace
2023-09-25 13:30:18 +01:00
h00die
d64ed33cdf
code spell for a bunch of modules
2023-09-24 17:42:00 -04:00
Dean Welch
1609836ea2
Don't store passwords to creds if the password wasn't needed for the auth type
2023-09-20 14:30:06 +01:00
dwelch-r7
0fc88a8050
Land #18378 , Remove left behind debug logging from prometheus exporter
2023-09-18 14:01:27 +01:00
adfoster-r7
8172f30204
Remove left behind debug logging from prometheus exporter
2023-09-18 13:47:36 +01:00
dwelch-r7
c1a44c8b7f
Land #18359 , Forge ticket fix
2023-09-18 13:05:25 +01:00
cgranleese-r7
2ed8b93e11
Land #18370 , Fix msfrpc hanging when updating saved command history
2023-09-18 10:38:45 +01:00
Simon Janusz
1378bfbfc7
Land #18294 , pick up netifaces updates, improve error catching
2023-09-15 13:04:26 +01:00
adfoster-r7
a60e048e78
Fix msfrpc hanging when updating saved command history
2023-09-15 12:42:40 +01:00
cgranleese-r7
ba9f879f64
Land #18369 , Fix opt address local crash when ipaddr is nil
2023-09-15 11:09:43 +01:00
adfoster-r7
871e1f401b
Fix OptAddressLocal crash when IPAddr is nil
2023-09-14 23:10:20 +01:00
cgranleese-r7
4bff7ddea1
Adds new search keywords to msfconsole
2023-09-13 16:41:05 +01:00
Ashley Donaldson
5c93b3880a
Don't add extra PACs for silver tickets
2023-09-13 15:41:09 +10:00
Spencer McIntyre
28c4902f4a
Land #18180 , Flask unsign library, related modules
...
Apache Supserset Priv Esc (CVE-2023-27524) and Flask unsign Library
2023-09-12 19:02:30 -04:00
Ashley Donaldson
6b8fe05865
Add new PAC types required by DCs for accepting TGTs as valid
2023-09-12 17:19:10 +10:00
Zach Goldman
a13d45ec2d
add unit test
2023-09-11 12:14:26 -05:00
Zach Goldman
615aa8dff5
pick up netifaces updates, improve error catching
2023-09-11 12:12:27 -05:00
Dean Welch
1af852b240
Add remote ldap specs
2023-09-11 16:33:01 +01:00
Dean Welch
80757fc717
Add missing require
2023-09-11 16:33:01 +01:00
Dean Welch
fc89c9939a
Add LDAP login scanner
2023-09-11 16:33:01 +01:00
Dean Welch
8f013d7aef
Add ldap login scanner module
2023-09-11 16:33:01 +01:00
h00die
235c142274
Merge remote-tracking branch 'origin/flask_unsign' into flask_unsign
2023-09-11 10:27:00 -04:00
bwatters
fdae4953eb
Land #18290 , Prometheus API & Prometheus Node Exporter Interrogator
...
Merge branch 'land-18290' into upstream-master
2023-09-08 12:55:30 -05:00
Spencer McIntyre
40716cb28b
Make the separator configurable
2023-09-08 08:56:45 -04:00
Spencer McIntyre
143e1c82b5
Add validation functionality to FlaskUnsign
2023-09-07 16:19:58 -04:00
h00die
213b9f9589
Merge remote-tracking branch 'upstream/master' into flask_unsign
2023-09-06 15:39:37 -04:00
Christophe De La Fuente
8217745a85
Land #18257 , Apache nifi h2 rce (CVE-2023-34468)
2023-08-30 13:37:37 +02:00
h00die
f467e0747a
review comments
2023-08-28 17:39:02 -04:00
Spencer McIntyre
3c6f5419f2
Land #18214 , Change fetch payload default options
...
Change default command to certutil for Windows HTTP Fetch and default…
2023-08-23 17:45:10 -04:00
bwatters
71ded31aae
Add check to make sure that FETCH_SRVHOST is set properly for bind payloads, too.
2023-08-23 12:50:25 -05:00
h00die
1bd14dd8f4
error handling for apache modules
2023-08-21 18:12:26 -04:00