Metasploit
a9078b4d68
Bump version of framework to 6.4.13
2024-06-06 03:33:45 -05:00
Metasploit
ebfbd3d305
Bump version of framework to 6.4.12
2024-05-30 03:39:13 -05:00
Metasploit
7eefa4b1ee
Bump version of framework to 6.4.11
2024-05-23 03:34:03 -05:00
Metasploit
e3fdfd6c71
Bump version of framework to 6.4.10
2024-05-16 03:39:08 -05:00
Dean Welch
68f7334348
Fix kerberos auth and missing method error when querying with -a
2024-05-15 16:11:40 +01:00
Dean Welch
9e4f958af7
keep ldap connection open for use in a session
2024-05-15 15:12:51 +01:00
Dean Welch
3cedb20f75
Add initial ldap session support
2024-05-15 15:12:51 +01:00
Jack Heysel
b1cd5b3476
Land #19132 , Add LDAPS Channel Binding
...
Add channel binding information to Metasploits NTLM and Kerberos
authentication for the LDAP protocol. This enables users to authenticate
to domain controllers where the hardened security configuration setting
is in place
2024-05-13 11:31:10 -07:00
Metasploit
2a8b36d432
Bump version of framework to 6.4.9
2024-05-09 07:11:01 -05:00
Spencer McIntyre
69e35005ee
Add TLS channel binding for kerberos
2024-05-08 16:30:24 -04:00
Spencer McIntyre
942d47bec5
Add TLS channel binding for NTLM
2024-05-08 16:24:48 -04:00
Spencer McIntyre
a999ad49a0
Move the LDAP encryptors to their own files
2024-05-08 10:16:40 -04:00
Christophe De La Fuente
8c76143a9d
Land #19127 , Ldap signing
2024-05-07 17:28:36 +02:00
Spencer McIntyre
69d603e6fc
Switch to an enum option for the signing
2024-05-03 10:27:10 -04:00
cgranleese-r7
d105ae10ff
Fixes some password_spray issues
2024-05-02 15:43:07 +01:00
Metasploit
4c7f1e6520
Bump version of framework to 6.4.8
2024-05-02 03:37:55 -05:00
bwatters
8a08f6a083
Land #19075 , Modularise the Softing login code
...
Merge branch 'land-19075' into upstream-master
2024-04-29 14:47:44 -05:00
Metasploit
b607c70611
Bump version of framework to 6.4.7
2024-04-25 03:35:58 -05:00
Ashley Donaldson
b5f4dfae71
Make encrypting/signing an option
2024-04-24 13:24:05 +10:00
Ashley Donaldson
9aead31bb9
Support encrypted LDAP (ldap signing) over Kerberos and NTLM
2024-04-24 12:56:06 +10:00
cgranleese-r7
4bbe2c306c
Land #19079 , Fix PASSWORD_SPRAY being ignored for LDAP (and potentially other modules)
2024-04-22 10:22:51 +01:00
Noam Rathaus
533a631ee4
Fix suggestions given by cgranleese-r7
2024-04-21 11:51:21 +03:00
bwatters
c6fc5ad2e1
Land #19114 , Better enforce types to prevent nil values from causing stack traces
...
Merge branch 'land-19114' into upstream-master
2024-04-19 16:21:22 -05:00
Spencer McIntyre
5675c59690
Fix blank values for LDAP NTLM auth
2024-04-19 16:30:29 -04:00
Metasploit
42a14ef6bf
Bump version of framework to 6.4.6
2024-04-19 11:34:11 -05:00
Metasploit
13a79ab536
Bump version of framework to 6.4.5
2024-04-18 03:37:54 -05:00
Noam Rathaus
b7e0e83d04
Use yields rather than build an array and sort
2024-04-12 08:05:55 +03:00
Noam Rathaus
c239db573a
Revert "PASSWORD_SPRAY handling"
...
This reverts commit 9b1978c0b6 .
2024-04-12 07:42:55 +03:00
Imran E. Dawoodjee
4026141809
Change how #get_auth_token returns
2024-04-12 07:14:34 +08:00
Noam Rathaus
9b1978c0b6
PASSWORD_SPRAY handling
2024-04-11 17:56:12 +03:00
Metasploit
2a176e5e15
Bump version of framework to 6.4.4
2024-04-11 03:39:05 -05:00
Spencer McIntyre
76145c3091
Land #19064 , SNMP TCP support
2024-04-10 07:38:35 -04:00
Imran E. Dawoodjee
1129e443c2
Modularise the Softing login lib file
2024-04-09 16:02:46 +08:00
Noam Rathaus
71538a871f
1. Adjust if end if end to if else end
...
2. Use ::Rex::Socket create's Proto
2024-04-09 08:39:45 +03:00
Noam Rathaus
01d31612c6
Add support for TCP
2024-04-08 17:41:46 +03:00
Dean Welch
87b84b00fb
Don't close sockets that we're using for sessions
2024-04-05 14:33:30 +01:00
Dean Welch
25a65c0ed7
Consolidate and simplify session tests
2024-04-05 13:10:15 +01:00
Metasploit
a6ffb5fae8
Bump version of framework to 6.4.3
2024-04-04 03:35:15 -05:00
Jack Heysel
0cd2bc5010
Land #18935 , Fix LDAP auto auth
...
This PR fixes a common user mistake when authenticating with LDAP
modules. Now users can specify either the USERNAME (user) and DOMAIN
(domain.local) datastore options or the original format of just the
USERNAME in the UPN format (user@domain.local ). This updates the LDAP
library.
2024-03-28 11:19:55 -07:00
Metasploit
8d3bfc05ef
Bump version of framework to 6.4.2
2024-03-28 07:29:54 -05:00
Metasploit
3af4358281
Bump version of framework to 6.4.1
2024-03-21 03:37:19 -05:00
adfoster-r7
c9fe98b522
Bump Metasploit version to 6.4.0
2024-03-20 13:46:08 +00:00
Metasploit
7cabfd7855
Bump version of framework to 6.3.61
2024-03-14 03:35:21 -05:00
dwelch-r7
d88185bff0
Land #18945 , Fix crash when running http crawler with database connected
2024-03-12 16:13:44 +00:00
adfoster-r7
9a9c27bb60
Fix crash when running http crawler with database connected
2024-03-12 15:47:32 +00:00
Spencer McIntyre
fc2d5c2659
Fix ldap auto authentication
...
When the auth method is set to auto and a domain is specific, use NTLM.
2024-03-07 14:04:08 -05:00
Metasploit
b91b718077
Bump version of framework to 6.3.60
2024-03-07 03:34:49 -06:00
adfoster-r7
d8abd2bcc2
Land #18898 , Add rex proto mysql client wrapper
2024-02-29 10:13:47 +00:00
dwelch-r7
a4543b0f41
Land #18897 , Update smb login to support additional configuration
2024-02-29 10:07:02 +00:00
Metasploit
435759bb47
Bump version of framework to 6.3.59
2024-02-29 03:39:23 -06:00