Spencer McIntyre
|
518d1c8538
|
Merge pull request #20897 from h00die/fix_john_cracker
fix jtr cracking
|
2026-01-28 09:31:13 -05:00 |
|
h00die
|
04be22dc1a
|
john formatter review
|
2026-01-28 07:44:50 -05:00 |
|
h00die
|
6d53d73758
|
debugging
|
2026-01-27 10:01:37 -05:00 |
|
Rudraditya Thakur
|
93b0c3004f
|
removed: the mixin's String16 class to stop BinData registry collisions and reverted: MsTdsLogin7 to its original :string16
|
2026-01-26 23:00:52 +05:30 |
|
h00die
|
582d5ea230
|
fix jtr cracking
|
2026-01-25 11:16:32 -05:00 |
|
Rudraditya Thakur
|
82bae54abe
|
ensured: MsTdsLogin7 UTF-18 fields use RubySMB String16
|
2026-01-25 10:59:02 +05:30 |
|
Spencer McIntyre
|
c0e9288ac5
|
Merge pull request #20799 from jheysel-r7/feat/cacti_graph_template_rce
Cacti Graph Template Authenticated RCE [CVE-2025-24367]
|
2026-01-22 14:26:38 -05:00 |
|
Spencer McIntyre
|
18a4cf8c00
|
Use the ssl setting for HttpServer#start_service
|
2026-01-22 13:49:28 -05:00 |
|
Jack Heysel
|
34cebd1453
|
Update CheckCode messaging
|
2026-01-22 15:03:32 +01:00 |
|
Jack Heysel
|
99e032f4af
|
SmarterTools SmarterMail Unauth File Upload RCE [CVE-2025-52691]
|
2026-01-22 15:03:30 +01:00 |
|
jenkins-metasploit
|
fd79b33758
|
Bump version of framework to 6.4.111
|
2026-01-22 03:35:53 +00:00 |
|
adfoster-r7
|
5ba95b5def
|
Merge pull request #20888 from jheysel-r7/fix/bad_successor_service_auth_fix_2
Fixes the base service authenticator for BadSuccessor
|
2026-01-21 11:37:28 +00:00 |
|
jheysel-r7
|
c47a74d0dd
|
Merge pull request #20770 from vognik/Splunk_2022-43571_CVE-2024-36985
Add Splunk RCE Exploits (CVE-2022-43571 & CVE-2024-36985)
|
2026-01-20 12:36:51 -08:00 |
|
Jack Heysel
|
e3e388d57d
|
Fixes the base service authenticator for BadSuccessor
|
2026-01-20 09:24:36 -08:00 |
|
vognik
|
9e320dd168
|
add suggestions from @jheysel-r7
|
2026-01-19 18:45:01 -08:00 |
|
jenkins-metasploit
|
3d18f613ba
|
Bump version of framework to 6.4.110
|
2026-01-19 23:24:55 +00:00 |
|
jheysel-r7
|
eb49dade6f
|
Merge pull request #20755 from rudraditya21/feature/kerberos-clock-skew
Added: Option to adjust kerberos clock
|
2026-01-19 10:00:54 -08:00 |
|
adfoster-r7
|
bb07207b9b
|
Merge pull request #20861 from bcoles/post-linux-system-get_hostname
Post::Linux::System.get_hostname: Use session sysinfo if available
|
2026-01-17 19:38:21 +00:00 |
|
jenkins-metasploit
|
a1eb2e224c
|
Bump version of framework to 6.4.109
|
2026-01-16 23:18:09 +00:00 |
|
Jack Heysel
|
4b610957ce
|
Fix Kerberos Base Service Authenticator
|
2026-01-16 12:31:34 -08:00 |
|
adfoster-r7
|
8a129bfc92
|
Merge pull request #20873 from zeroSteiner/fix/issue/socket-channels-udp-flakies
Add more specific error messages
|
2026-01-15 23:44:05 +00:00 |
|
Spencer McIntyre
|
36827c486d
|
Add more specific error messages
|
2026-01-15 18:20:36 -05:00 |
|
Spencer McIntyre
|
3ecd8005e4
|
Merge pull request #20772 from rmtsixq/master
Fix undefined variable in Host.normalize_host causing session failures when DB is connected
|
2026-01-15 10:48:28 -05:00 |
|
jenkins-metasploit
|
9f591ad456
|
Bump version of framework to 6.4.108
|
2026-01-15 03:35:45 +00:00 |
|
Spencer McIntyre
|
658c251b66
|
Merge pull request #20472 from jheysel-r7/feat/mod/badsuccessor
Add BadSuccessor dMSA Privilege Escalation in Windows 2025
|
2026-01-14 15:43:35 -05:00 |
|
Jack Heysel
|
c1023fd62a
|
Add BadSuccessor dMSA Privilege Escalation in Windows 2025
|
2026-01-14 12:34:45 -08:00 |
|
Martin Sutovsky
|
dfc1adb40c
|
Dropping support for PPC archs
|
2026-01-13 08:36:28 +01:00 |
|
Martin Sutovsky
|
c925ffbfdf
|
Fixes the Mipsbe bug
|
2026-01-13 08:34:33 +01:00 |
|
Martin Sutovsky
|
b1fc76c1c6
|
Fixes MIPS64
|
2026-01-13 08:34:32 +01:00 |
|
Martin Sutovsky
|
d057be11e5
|
Adds more reliable splitting hex shellcode, more reliable shell spawning
|
2026-01-13 08:34:32 +01:00 |
|
Martin Sutovsky
|
8a7ed167ae
|
Adds x86/x64 loader shellcode
|
2026-01-13 08:34:31 +01:00 |
|
Martin Sutovsky
|
a302985f34
|
Adds POSIX support, more reliable process killing
|
2026-01-13 08:34:31 +01:00 |
|
Martin Sutovsky
|
f92c58151a
|
Removes unnecessary line
|
2026-01-13 08:34:30 +01:00 |
|
Martin Sutovsky
|
b19f7d1f1b
|
Removing teaser
|
2026-01-13 08:34:30 +01:00 |
|
Martin Sutovsky
|
243c71b7a9
|
Adds killing memfd_create process to avoid having bash idly waiting; code refactor; comments
|
2026-01-13 08:34:30 +01:00 |
|
Martin Sutovsky
|
596184d636
|
Option rename
|
2026-01-13 08:34:29 +01:00 |
|
Martin Sutovsky
|
5857697edb
|
MIPS fix
|
2026-01-13 08:34:29 +01:00 |
|
Martin Sutovsky
|
bbe66eec78
|
MIPS64 fix
|
2026-01-13 08:34:29 +01:00 |
|
Martin Sutovsky
|
e3514dda3a
|
Add ppc/ppc64 fix
|
2026-01-13 08:34:28 +01:00 |
|
Martin Sutovsky
|
bc467503a0
|
Add bash-search option
|
2026-01-13 08:34:28 +01:00 |
|
Martin Sutovsky
|
c93015a86d
|
Add armbe/armle fix
|
2026-01-13 08:34:27 +01:00 |
|
Martin Sutovsky
|
cc3d10d2df
|
Code refactor
|
2026-01-13 08:34:27 +01:00 |
|
Martin Sutovsky
|
66374f877a
|
Update jump instruction armle/armbe
|
2026-01-13 08:34:27 +01:00 |
|
Martin Sutovsky
|
8a9eeafd1c
|
armle/armbe shellcode update
|
2026-01-13 08:34:26 +01:00 |
|
Martin Sutovsky
|
8a4265038a
|
armbe/armle jump instruction update
|
2026-01-13 08:34:26 +01:00 |
|
Martin Sutovsky
|
dfc51fdcd9
|
Fix for lost zero byte in arm64, adding more reliable method for all archs
|
2026-01-13 08:34:25 +01:00 |
|
Martin Sutovsky
|
2ccbffe67a
|
Fixing jump instruction for aarch64
|
2026-01-13 08:34:25 +01:00 |
|
Martin Sutovsky
|
0821db9e94
|
Adding remaining architectures, untested
|
2026-01-13 08:34:25 +01:00 |
|
Martin Sutovsky
|
7ab1e0dc10
|
Fix sh option
|
2026-01-13 08:34:24 +01:00 |
|
Martin Sutovsky
|
ff9fe421f5
|
Rebase, adding sh option
|
2026-01-13 08:34:24 +01:00 |
|