cgranleese-r7
|
40ca2b3b1b
|
Adds sentinel notes to modules that are missing stability, reliability or side effects
|
2025-06-25 09:32:01 +01:00 |
|
cgranleese-r7
|
a454217bd4
|
Update info -d markdown
|
2025-06-24 11:21:49 +01:00 |
|
cgranleese-r7
|
37388ca1be
|
Adds sentinel values to modules missing notes
|
2025-06-23 12:24:58 +01:00 |
|
cgranleese-r7
|
ade9b54d94
|
Runs Style/TrailingCommaInArguments Rubocop against modules
|
2025-06-23 09:30:35 +01:00 |
|
cgranleese-r7
|
a4b14d8b64
|
Runs Rubocop to fix layout in modules
|
2025-06-20 15:18:01 +01:00 |
|
bcoles
|
3272ee0f28
|
Modules: Convert DisableNops property to Boolean in several modules
|
2025-06-10 23:57:52 +10:00 |
|
cgranleese-r7
|
f6faa5598b
|
Fixes modules to now correctly use a hash with report note
|
2025-05-22 10:59:50 +01:00 |
|
Brendan
|
5faa0a5b6b
|
Merge pull request #19777 from msutovsky-r7/linqpad_deserialization
Linqpad deserialization persistence
|
2025-05-13 08:03:30 -05:00 |
|
Martin Sutovsky
|
24a86cd74a
|
Refactoring based on comments
|
2025-05-06 08:43:57 +02:00 |
|
Zeecka
|
9ade55bd35
|
Fix typo in bypassuac_fodhelper.rb
|
2025-04-23 17:49:11 +02:00 |
|
Jack Heysel
|
faea5f7933
|
Responded to comments
|
2025-04-17 09:43:13 -07:00 |
|
Jack Heysel
|
3ead0fdf42
|
Add check for is_uac_enabled?
|
2025-04-16 17:59:53 -07:00 |
|
Jack Heysel
|
9a95f60df6
|
Updated service_permissions with action to exploit CVE-2025-21293
|
2025-04-16 10:55:05 -07:00 |
|
bcoles
|
06d1971f23
|
exploit/windows/local/unquoted_service_path: Check if write_file fails
|
2025-04-13 16:34:03 +10:00 |
|
bwatters-r7
|
ec67435de9
|
Rebase and squash for CVE-2024-30085
|
2025-03-20 09:03:28 -05:00 |
|
Jack Heysel
|
cf08a4e533
|
Readd missing checks
|
2025-03-13 13:14:13 -07:00 |
|
Jack Heysel
|
82f07c171b
|
Fix check method
|
2025-03-13 13:00:24 -07:00 |
|
Martin Sutovsky
|
f667179515
|
Removing execution of LINQPad file due to module recategorisation to persistence
|
2025-01-24 16:54:27 +01:00 |
|
Martin Sutovsky
|
689e44f3ff
|
Addressing some issues
|
2025-01-10 11:12:32 +01:00 |
|
Martin Sutovsky
|
2f351eae33
|
Addressing some issues
|
2025-01-10 11:12:21 +01:00 |
|
Martin Sutovsky
|
93c2360741
|
Renaming module to persistence module instead
|
2025-01-09 15:30:50 +01:00 |
|
Martin Sutovsky
|
058e7be47a
|
Cleaning up module
|
2024-12-30 16:13:24 +01:00 |
|
Martin Sutovsky
|
302052c692
|
LINQPad deserialization module init
|
2024-12-30 15:57:59 +01:00 |
|
bwatters-r7
|
48ed31f323
|
Fix version check
|
2024-12-12 17:11:53 -06:00 |
|
Jack Heysel
|
81b83f2fd6
|
Updated docs and check
|
2024-11-06 09:13:51 -08:00 |
|
Jack Heysel
|
5bc3e046eb
|
Update check
|
2024-11-05 15:34:25 -08:00 |
|
Jack Heysel
|
7a5bc60aab
|
Windows Access Mode Mismatch LPE in ks.sys [CVE-2024-35250]
|
2024-11-05 15:31:44 -08:00 |
|
Jack Heysel
|
cf85992531
|
Placeholder commit
|
2024-10-18 16:11:06 -07:00 |
|
dledda-r7
|
0bf524482c
|
Land #19345, Post module Windows LPE CVE-2024-30088
|
2024-09-17 08:13:21 -04:00 |
|
Jack Heysel
|
05c3c9ac65
|
Updated reliability comment
|
2024-09-04 14:09:04 -07:00 |
|
Jack Heysel
|
2da95ebc6a
|
Remove SLEEP datastore option
|
2024-09-04 13:39:01 -07:00 |
|
bcoles
|
b1ec86ebc5
|
bypassuac_comhijack: Specify x86/x64 as supported payload architectures
|
2024-09-04 23:49:33 +10:00 |
|
Jack Heysel
|
9ad5b41064
|
Rubocop
|
2024-08-30 12:56:10 -07:00 |
|
Jack Heysel
|
7bfd814297
|
Removed memory polling
|
2024-08-30 12:52:18 -07:00 |
|
Jack Heysel
|
6689614d8f
|
Responded to comments
|
2024-08-22 13:06:29 -07:00 |
|
Jack Heysel
|
31348dac33
|
Windows LPE CVE-2024-30088
|
2024-08-21 23:16:37 -07:00 |
|
Adrian Șendroiu
|
2007e6d8fb
|
Fix inconsistent casing in windows/local/wmi_persistence
|
2024-03-12 12:17:46 +02:00 |
|
Spencer McIntyre
|
202db99004
|
Land #18801, Fix revision number checks
Fix revision number checks in cve_2022_26904_superprofile.rb
|
2024-02-12 15:52:16 -05:00 |
|
Spencer McIntyre
|
45365c8666
|
Land #18800, Fix revision number checks
Fix revision number checks for cve_2021_40449.rb
|
2024-02-12 15:19:56 -05:00 |
|
Spencer McIntyre
|
ce0498377d
|
Land #18798, fix version checks
windows/local/cve_2020_0787_bits_arbitrary_file_move (and similar) fails due to incorrect revision_number checks
|
2024-02-12 15:11:07 -05:00 |
|
upsidedwn
|
4b5d04e59e
|
Fix revision number checks in cve_2022_26904_superprofile.rb
|
2024-02-07 11:30:42 +08:00 |
|
upsidedwn
|
ccb446f2ae
|
Fix revision number checks for cve_2021_40449.rb
|
2024-02-07 11:28:00 +08:00 |
|
upsidedwn
|
436efad4ca
|
Fix revision number checks
|
2024-02-07 11:25:41 +08:00 |
|
upsidedwn
|
47d30696bc
|
Fix revision_number checks
|
2024-02-07 11:20:12 +08:00 |
|
adfoster-r7
|
094d6ee36b
|
Add additional reliability and stability notes to modules
|
2024-01-22 23:29:57 +00:00 |
|
Spencer McIntyre
|
7307c9810b
|
Use the new style of Windows version detection
This will become more important once the Windows Meterpreter returns a
more accurate string for the sysinfo OS field.
|
2023-11-28 14:35:26 -05:00 |
|
sjanusz-r7
|
daa8b8ae99
|
Use Metasploit-Payloads Crypto to decrypt payloads
|
2023-10-13 14:42:10 +01:00 |
|
sjanusz-r7
|
b428736e03
|
Add support for injection of encrypted dll payloads
|
2023-10-13 14:42:10 +01:00 |
|
bwatters
|
a4c6b11237
|
Fix pass by reference bug on the module side
|
2023-09-27 09:43:32 -05:00 |
|
Christophe De La Fuente
|
1058291af9
|
Land #18314, Windows Error Reporting RCE (CVE-2023-36874)
|
2023-09-27 15:25:06 +02:00 |
|