Commit Graph

21995 Commits

Author SHA1 Message Date
Spencer McIntyre 518d1c8538 Merge pull request #20897 from h00die/fix_john_cracker
fix jtr cracking
2026-01-28 09:31:13 -05:00
h00die 04be22dc1a john formatter review 2026-01-28 07:44:50 -05:00
h00die 6d53d73758 debugging 2026-01-27 10:01:37 -05:00
Rudraditya Thakur 93b0c3004f removed: the mixin's String16 class to stop BinData registry collisions and reverted: MsTdsLogin7 to its original :string16 2026-01-26 23:00:52 +05:30
h00die 582d5ea230 fix jtr cracking 2026-01-25 11:16:32 -05:00
Rudraditya Thakur 82bae54abe ensured: MsTdsLogin7 UTF-18 fields use RubySMB String16 2026-01-25 10:59:02 +05:30
Spencer McIntyre c0e9288ac5 Merge pull request #20799 from jheysel-r7/feat/cacti_graph_template_rce
Cacti Graph Template Authenticated RCE [CVE-2025-24367]
2026-01-22 14:26:38 -05:00
Spencer McIntyre 18a4cf8c00 Use the ssl setting for HttpServer#start_service 2026-01-22 13:49:28 -05:00
Jack Heysel 34cebd1453 Update CheckCode messaging 2026-01-22 15:03:32 +01:00
Jack Heysel 99e032f4af SmarterTools SmarterMail Unauth File Upload RCE [CVE-2025-52691] 2026-01-22 15:03:30 +01:00
jenkins-metasploit fd79b33758 Bump version of framework to 6.4.111 2026-01-22 03:35:53 +00:00
adfoster-r7 5ba95b5def Merge pull request #20888 from jheysel-r7/fix/bad_successor_service_auth_fix_2
Fixes the base service authenticator for BadSuccessor
2026-01-21 11:37:28 +00:00
jheysel-r7 c47a74d0dd Merge pull request #20770 from vognik/Splunk_2022-43571_CVE-2024-36985
Add Splunk RCE Exploits (CVE-2022-43571 & CVE-2024-36985)
2026-01-20 12:36:51 -08:00
Jack Heysel e3e388d57d Fixes the base service authenticator for BadSuccessor 2026-01-20 09:24:36 -08:00
vognik 9e320dd168 add suggestions from @jheysel-r7 2026-01-19 18:45:01 -08:00
jenkins-metasploit 3d18f613ba Bump version of framework to 6.4.110 2026-01-19 23:24:55 +00:00
jheysel-r7 eb49dade6f Merge pull request #20755 from rudraditya21/feature/kerberos-clock-skew
Added: Option to adjust kerberos clock
2026-01-19 10:00:54 -08:00
adfoster-r7 bb07207b9b Merge pull request #20861 from bcoles/post-linux-system-get_hostname
Post::Linux::System.get_hostname: Use session sysinfo if available
2026-01-17 19:38:21 +00:00
jenkins-metasploit a1eb2e224c Bump version of framework to 6.4.109 2026-01-16 23:18:09 +00:00
Jack Heysel 4b610957ce Fix Kerberos Base Service Authenticator 2026-01-16 12:31:34 -08:00
adfoster-r7 8a129bfc92 Merge pull request #20873 from zeroSteiner/fix/issue/socket-channels-udp-flakies
Add more specific error messages
2026-01-15 23:44:05 +00:00
Spencer McIntyre 36827c486d Add more specific error messages 2026-01-15 18:20:36 -05:00
Spencer McIntyre 3ecd8005e4 Merge pull request #20772 from rmtsixq/master
Fix undefined variable in Host.normalize_host causing session failures when DB is connected
2026-01-15 10:48:28 -05:00
jenkins-metasploit 9f591ad456 Bump version of framework to 6.4.108 2026-01-15 03:35:45 +00:00
Spencer McIntyre 658c251b66 Merge pull request #20472 from jheysel-r7/feat/mod/badsuccessor
Add BadSuccessor dMSA Privilege Escalation in Windows 2025
2026-01-14 15:43:35 -05:00
Jack Heysel c1023fd62a Add BadSuccessor dMSA Privilege Escalation in Windows 2025 2026-01-14 12:34:45 -08:00
Martin Sutovsky dfc1adb40c Dropping support for PPC archs 2026-01-13 08:36:28 +01:00
Martin Sutovsky c925ffbfdf Fixes the Mipsbe bug 2026-01-13 08:34:33 +01:00
Martin Sutovsky b1fc76c1c6 Fixes MIPS64 2026-01-13 08:34:32 +01:00
Martin Sutovsky d057be11e5 Adds more reliable splitting hex shellcode, more reliable shell spawning 2026-01-13 08:34:32 +01:00
Martin Sutovsky 8a7ed167ae Adds x86/x64 loader shellcode 2026-01-13 08:34:31 +01:00
Martin Sutovsky a302985f34 Adds POSIX support, more reliable process killing 2026-01-13 08:34:31 +01:00
Martin Sutovsky f92c58151a Removes unnecessary line 2026-01-13 08:34:30 +01:00
Martin Sutovsky b19f7d1f1b Removing teaser 2026-01-13 08:34:30 +01:00
Martin Sutovsky 243c71b7a9 Adds killing memfd_create process to avoid having bash idly waiting; code refactor; comments 2026-01-13 08:34:30 +01:00
Martin Sutovsky 596184d636 Option rename 2026-01-13 08:34:29 +01:00
Martin Sutovsky 5857697edb MIPS fix 2026-01-13 08:34:29 +01:00
Martin Sutovsky bbe66eec78 MIPS64 fix 2026-01-13 08:34:29 +01:00
Martin Sutovsky e3514dda3a Add ppc/ppc64 fix 2026-01-13 08:34:28 +01:00
Martin Sutovsky bc467503a0 Add bash-search option 2026-01-13 08:34:28 +01:00
Martin Sutovsky c93015a86d Add armbe/armle fix 2026-01-13 08:34:27 +01:00
Martin Sutovsky cc3d10d2df Code refactor 2026-01-13 08:34:27 +01:00
Martin Sutovsky 66374f877a Update jump instruction armle/armbe 2026-01-13 08:34:27 +01:00
Martin Sutovsky 8a9eeafd1c armle/armbe shellcode update 2026-01-13 08:34:26 +01:00
Martin Sutovsky 8a4265038a armbe/armle jump instruction update 2026-01-13 08:34:26 +01:00
Martin Sutovsky dfc51fdcd9 Fix for lost zero byte in arm64, adding more reliable method for all archs 2026-01-13 08:34:25 +01:00
Martin Sutovsky 2ccbffe67a Fixing jump instruction for aarch64 2026-01-13 08:34:25 +01:00
Martin Sutovsky 0821db9e94 Adding remaining architectures, untested 2026-01-13 08:34:25 +01:00
Martin Sutovsky 7ab1e0dc10 Fix sh option 2026-01-13 08:34:24 +01:00
Martin Sutovsky ff9fe421f5 Rebase, adding sh option 2026-01-13 08:34:24 +01:00