William Vu
e053ed7a1e
Add Msf::Exploit::Expect mixin and refactor again
2020-02-05 21:16:24 -06:00
William Vu
95fa8602bc
Refactor modules that use Expect
2020-02-05 21:16:21 -06:00
Tim W
cfffb65a21
Land #12859 , update AF_PACKET chocobo_root linux LPE
2020-01-24 17:30:13 +08:00
Brent Cook
6f6cc00871
Land #12751 , add Linux RDS socket NP deref privesc
2020-01-22 07:08:47 -06:00
Brendan Coles
19b1f567b2
Update AF_PACKET chocobo_root Privilege Escalation module
2020-01-19 11:51:01 +00:00
Brendan Coles
36b6ceb56f
Add rds_atomic_free_op_null_pointer_deref_priv_esc (CVE-2018-5333)
2020-01-18 08:34:52 +00:00
William Vu
60b787bde1
Use new immutable? method in modules
2020-01-16 15:05:11 -06:00
William Vu
6712458dbd
Land #12758 , attributes and immutable? methods
2020-01-16 14:01:29 -06:00
Dave York
7b14442ab0
replace strings with bools
2020-01-14 20:47:27 -05:00
Brendan Coles
a7b63557db
Notify operator that cleanup of crontab is required
2019-12-26 16:21:44 +00:00
Brendan Coles
d449a93b44
Add Msf::Post::File.attributes method
2019-12-25 07:34:44 +00:00
h00die
4f8382fc98
Land #12744 , rds lpe updates and improvements
2019-12-22 10:21:03 -05:00
h00die
4e1e8d344f
rds reliability, stability notes
2019-12-22 10:20:00 -05:00
h00die
7a027216cc
Land #12701 linux priv esc on reptile_cmd rootkit
2019-12-21 15:50:07 -05:00
Brendan Coles
c0da9e2202
Rename exploit/linux/local/rds_priv_esc -> exploit/linux/local/rds_rds_page_copy_user_priv_esc
2019-12-18 20:05:19 +00:00
Christophe De La Fuente
42a60034f2
Land #12725 , Bash profile persistence module
2019-12-16 09:19:08 +01:00
Brendan Coles
dd41892123
Update netfilter_priv_esc_ipv4 exploit
2019-12-15 07:17:42 +00:00
bluesentinelsec
c43330934b
New module: Bash Profile Persistence
2019-12-14 21:40:18 -05:00
Brendan Coles
1ebfe6c284
Add Reptile Rootkit reptile_cmd Privilege Escalation
2019-12-11 06:48:51 +00:00
Brendan Coles
38498305d3
Add module notes for Reliability and Stability
2019-11-03 00:33:24 +00:00
Brendan Coles
294cbcffb6
Land #12382 , Add Linux Micro Focus (HPE) Data Protector omniresolve Privesc (CVE-2019-11660)
2019-11-01 08:06:01 +00:00
bcoles
b08e031863
Update module description
2019-11-01 17:11:33 +11:00
bcoles
c6e739c76d
Code cleanup
2019-11-01 16:30:37 +11:00
Brendan Coles
991ccdbda5
Land #12106 , Add Linux PTRACE_TRACEME local root exploit
2019-10-23 14:01:14 +00:00
Tim W
8c93b219d1
fix compile.rb and rubocop
2019-10-23 20:54:42 +08:00
Tim W
7ff71819e9
add architecture check to check method
2019-10-23 20:38:55 +08:00
Tim W
3b5d0b98e7
add a basic check method using loginctl
2019-10-23 19:50:19 +08:00
Tim W
4d4754a389
feedback from bcoles
2019-10-10 13:30:31 +08:00
h00die
905eb17132
begining to fix spelling errors
2019-10-05 14:26:34 -04:00
s7u55
dc64529f03
Update modules/exploits/linux/local/omniresolve_suid_priv_esc.rb
2019-10-03 09:08:12 +03:00
s7u55
b8f19eb933
Update modules/exploits/linux/local/omniresolve_suid_priv_esc.rb
...
Co-Authored-By: Valeri Melnikov <MelnikoffVA@yandex.ru >
2019-10-03 09:03:24 +03:00
s7u55
fd2008c182
Update modules/exploits/linux/local/omniresolve_suid_priv_esc.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-10-02 20:21:35 +03:00
s7u55
2f0e08b323
Update modules/exploits/linux/local/omniresolve_suid_priv_esc.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-10-02 20:03:07 +03:00
s7u55
06118ab8dc
Update modules/exploits/linux/local/omniresolve_suid_priv_esc.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-10-02 11:43:12 +03:00
s7u55
98c8168253
Update modules/exploits/linux/local/omniresolve_suid_priv_esc.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-10-02 11:42:34 +03:00
s7u55
43b2332afe
Add omniresolve priv escalation module (CVE-2019-11660) fix
2019-10-02 01:38:51 -04:00
s7u55
bb0eb16a3e
Add omniresolve priv escalation module (CVE-2019-11660)
2019-10-01 15:03:29 -04:00
Shelby Pace
4710322cd7
Land #11762 , add sosreport privesc
2019-09-24 09:48:57 -05:00
Tim W
5123fdbb5e
s/pkexec_helper_ptrace/ptrace_traceme_pkexec_helper/g
2019-09-06 01:00:44 +08:00
Tim W
bade8bfc48
add live compiling
2019-09-03 17:31:04 +08:00
h00die
ea50149ba7
land #12212 linux LPE ktsuss exploit
2019-09-02 13:32:45 -04:00
h00die
4b9e748882
ktsuss misc fixes
2019-09-02 13:31:30 -04:00
h00die
5b89c221f0
land #11799 linux local priv esc for cached sudo privs
2019-09-02 11:12:21 -04:00
Shelby Pace
413cd7194d
Land #12064 , add Exim Local Privesc module
2019-08-23 12:23:53 -05:00
Brendan Coles
ca82e6cd25
Add ktsuss suid Privilege Escalation module
2019-08-19 13:28:02 +00:00
Brendan Coles
9fdee466ca
Update ptrace_sudo_token_priv_esc
2019-08-10 07:03:23 +00:00
Tim W
979681443c
add rudimentary check method
2019-08-06 14:48:37 +08:00
Tim W
b35b4674d0
fix forking behaviour
2019-08-06 14:17:28 +08:00
Tim W
f48d1b1231
add more links
2019-08-06 13:54:15 +08:00
Adam Cammack
cf9b94a964
Set needs_cleanup flag for exploits that need it
...
The `needs_cleanup` flag needs to be set per-module when an exploit
needs an interactive session to clean up. Some `FileDropper` exploits
need additional cleanup to what the mixin provides, but since all
`FileDropper`s already mark themselves as needing cleanup those are not
covered here. A few of these could potentially be refactored to use the
original exploitation method to clean up or to compile the list of
files/commands to clean up ahead of time, but that is out of the scope
of this fix.
2019-08-02 10:23:53 -05:00