William Vu
32728742ea
Clarify why we can't proceed
2019-09-30 14:18:41 -05:00
William Vu
4975a24900
Refactor methods to use @tree_id ivar
...
Whoops, forgot this when I ivar'd it.
2019-09-30 14:18:41 -05:00
William Vu
b1f2fa4e64
Don't hardcode body size
2019-09-30 14:18:41 -05:00
William Vu
ed0b856aac
Prefer << over +=
...
Oops, spending too much time with Python.
2019-09-30 14:18:41 -05:00
William Vu
255af7f2d3
Simplify data count calculation
2019-09-30 14:18:41 -05:00
William Vu
ade715f88a
Update disclosure date to dump date
2019-09-30 14:18:41 -05:00
William Vu
7417aa8a30
Rename module and note kill target in description
2019-09-30 14:18:41 -05:00
William Vu
0392521887
Fix same multiplex ID meaning implant not detected
2019-09-30 14:18:41 -05:00
William Vu
33d7a2a818
Remove SMB::Client::Authenticated
...
They're fine as advanced options, since this targets a null session.
2019-09-30 14:18:41 -05:00
William Vu
6b4cf4970e
Don't support x86 at the moment
2019-09-30 14:18:41 -05:00
William Vu
aa2f7d378a
Create method for kernel shellcode size
2019-09-30 14:18:41 -05:00
William Vu
8190e7067a
Calculate kernel shellcode size
2019-09-30 14:18:41 -05:00
William Vu
05b83ff5da
Calculate max payload size automagically
2019-09-30 14:18:41 -05:00
William Vu
8cae04f194
Use constant for maximum shellcode size
2019-09-30 14:18:41 -05:00
William Vu
fb1bb0fd2f
Don't use NOPs because Peter would be sad
2019-09-30 14:18:41 -05:00
William Vu
530bf9bc0c
Finish RCE with Jacob's help
2019-09-30 14:18:41 -05:00
William Vu
3a5a05f3a9
Use recently enhanced Rex::Text.xor
2019-09-30 14:18:41 -05:00
William Vu
90cb0e039f
Add DOUBLEPULSAR payload execution
2019-09-30 14:18:41 -05:00
h00die
0288649fc2
rename juniper variables
2019-09-30 15:03:38 -04:00
dwelch-r7
30691d1c18
Add ranking
2019-09-30 12:20:38 +01:00
h00die
c188d179ed
fix atutor bugs
2019-09-26 20:37:10 -04:00
dwelch-r7
f6eaeaac71
Merge remote-tracking branch 'upstream/pr/12316' into HEAD
2019-09-26 15:20:45 +01:00
dwelch-r7
7395297da4
Add rank
2019-09-26 13:32:36 +01:00
dwelch-r7
1425d180b9
Add module to exploit file sharing wizard
2019-09-26 13:30:52 +01:00
RAMELLA Sébastien
28bbcd5402
fix. linux stager and add. documentation
2019-09-26 16:26:44 +04:00
Brent Cook
2227903585
Land #12313 , Add mazda_ic_mover module that moves the instrument cluster
2019-09-26 03:50:29 -05:00
RAMELLA Sébastien
dfd97a7518
add. stager and fix. generic command
2019-09-26 12:40:03 +04:00
Brent Cook
c86511722a
Land #12258 , Update gpp.rb to display GPO name
2019-09-26 03:36:28 -05:00
Wei Chen
6a80bf2cf5
Should ensure, not in exception
2019-09-25 22:23:41 -05:00
h00die
d6a7da9490
fix atutor nil
2019-09-25 22:02:55 -04:00
h00die
ca99bd4191
fix nil check
2019-09-25 21:24:14 -04:00
Wei Chen
8dc238e687
Add TotaJS CMS Code Injection in Widget Creation
2019-09-25 16:54:44 -05:00
Nicholas Starke
73569fef38
Removing Invalid CVE Identifier
...
CVE Identifier was invalid, I removed that and made a
few other minor formatting / procedural changes, including
doing the check for the options before sending any network traffic.
2019-09-25 16:52:50 -05:00
Nicholas Starke
90cd20b381
Minor Formatting Changes
...
I forgot to run msftidy before pushing. This commit
address two formatting issues and adds a place holder for
CVE, even though I don't think this is a CVE candidate.
2019-09-25 16:21:27 -05:00
RAMELLA Sébastien
82457a4049
add. exploit module vbulletin 5.x unauth RCE
2019-09-26 01:11:22 +04:00
Nicholas Starke
f77497883b
Adding Chrome Debugger Gather Auxiliary Module
...
This module can retrieve a file from a remote host that is
running a chrome session in headless mode on all network interfaces.
It can also make a web request from the remote host and send back the
full contents.
2019-09-25 15:58:34 -05:00
Brent Cook
026f9cbd96
Land #12354 , Remove unused targets from aux and post modules
2019-09-25 07:40:06 -05:00
Brent Cook
c53346d500
Land #12353 , Make BlueKeep scanner less chatty by default
2019-09-25 07:37:55 -05:00
Shelby Pace
4710322cd7
Land #11762 , add sosreport privesc
2019-09-24 09:48:57 -05:00
William Vu
2ce3e4f1c4
Make BlueKeep scanner's output less chatty
2019-09-24 08:49:27 -05:00
dwelch-r7
285244e877
Remove commented out code
2019-09-24 13:51:54 +01:00
dwelch-r7
a587668b9e
Remove Default targets from aux modules
2019-09-24 12:15:43 +01:00
Brent Cook
0ed09cc9bf
Land #11927 , Add Brocade post module and config parser
2019-09-24 05:59:21 -05:00
Brent Cook
2d1e7ffa2f
Land #12349 , Add Proxy/header opts to windows/python stageless
2019-09-24 05:54:51 -05:00
dwelch-r7
fe2b3f8f29
Remove targets from post modules
2019-09-23 17:26:36 +01:00
Brent Cook
b668e1fa5b
Land #12283 , Add exploit module for CVE-2019-0708 / BlueKeep
2019-09-23 11:22:36 -05:00
Brent Cook
c0be631bf0
tweak groombase for vmware 15.1
2019-09-23 11:01:04 -05:00
dwelch-r7
134765dc40
Remove targets from aux modules
2019-09-23 15:29:38 +01:00
OJ
3c0cb29a7c
Add Proxy/header opts to windows/python stageless
2019-09-23 08:45:43 +10:00
h00die
5e52f47c17
land #12279 resolve_hosts now databases results
2019-09-20 17:18:07 -04:00