h00die
|
e3560e43cf
|
windows wsl registry persistence
|
2025-11-16 08:35:44 -05:00 |
|
Diego Ledda
|
110cb837aa
|
Merge pull request #20672 from h00die-gr3y/centreon_auth_rce
Centreon authenticated command injection leading to RCE via broker engine "reload" parameter [CVE-2025-5946]
|
2025-11-05 16:29:29 +01:00 |
|
h00die-gr3y
|
408eceb2d9
|
small update documentation
|
2025-11-03 10:27:44 +00:00 |
|
h00die-gr3y
|
85b4233345
|
updated module based on review comments and added documentation
|
2025-11-03 10:21:31 +00:00 |
|
Diego Ledda
|
13dc61e2e8
|
Merge pull request #20523 from h00die/modern_persistence_upstart
update upstart to persistence mixin
|
2025-10-31 12:28:59 +01:00 |
|
msutovsky-r7
|
af5baeb3c6
|
Land #20660, adds windows task scheduler persistence module
Windows task scheduler persistence
|
2025-10-31 10:16:19 +01:00 |
|
msutovsky-r7
|
c804e5fb55
|
Land #20643, expands diamorphine privilege escalation module to other rootkits
Add Rootkit Privilege Escalation Signal Hunter
|
2025-10-31 10:00:21 +01:00 |
|
bcoles
|
676a2ed4b1
|
Add Rootkit Privilege Escalation Signal Hunter
|
2025-10-31 17:22:19 +11:00 |
|
msutovsky-r7
|
09f1d1ae57
|
Land #20650, adds module for NCR Command Center Agent unauthenticated RCE (CVE-2021-3122)
Add NCR Command Center Agent Unauthenticated RCE (CVE-2021-3122)
|
2025-10-30 08:26:42 +01:00 |
|
msutovsky-r7
|
56480df99f
|
Land #20662, adds windows startup folder persistence module
windows persistence: startup folder
|
2025-10-29 13:23:35 +01:00 |
|
h00die
|
c0b3f40b3e
|
upstart review
|
2025-10-27 19:45:38 -04:00 |
|
h00die
|
fd04f465eb
|
windows persistence: startup folder
|
2025-10-27 15:35:52 -04:00 |
|
msutovsky-r7
|
d839a84a12
|
Land #20631, moves windows registry module into persistence category
update windows registry to persistence mixin
|
2025-10-27 14:57:48 +01:00 |
|
h00die
|
c210a897ac
|
windows persistence: task scheduler
|
2025-10-26 16:17:16 -04:00 |
|
Muhammad Daffa
|
af2b2cc40f
|
Add documentation for NCR Command Center Agent RCE
|
2025-10-24 16:15:11 +07:00 |
|
bcoles
|
52b7f1ff25
|
Deprecate exploit/linux/local/diamorphine_rootkit_signal_priv_esc
|
2025-10-24 17:05:10 +11:00 |
|
h00die
|
0f26c9316a
|
registry persistence peer review
|
2025-10-23 17:44:22 -04:00 |
|
adfoster-r7
|
f24552cdfd
|
Merge pull request #20632 from h00die/linqpad_cleanup
Linqpad cleanup
|
2025-10-22 13:23:32 +01:00 |
|
vognik
|
74c7f98ad9
|
code review changes from @msutovsky-r7
|
2025-10-20 09:00:24 -07:00 |
|
h00die
|
8490ce844d
|
linqpad persistence cleanup
|
2025-10-19 10:08:33 -04:00 |
|
h00die
|
287cba7436
|
linqpad persistence cleanup
|
2025-10-19 10:05:36 -04:00 |
|
h00die
|
2575a9ad03
|
windows registry persistence doc update
|
2025-10-19 09:45:06 -04:00 |
|
h00die
|
bc9bd4b62c
|
windows registry persistence mixin conversion
|
2025-10-19 09:36:59 -04:00 |
|
vognik
|
9ad83f6454
|
Add Vvveb CMS Authenticated RCE (CVE-2025-8518)
|
2025-10-18 17:12:05 -07:00 |
|
Diego Ledda
|
644bcfabbb
|
Merge pull request #20522 from h00die/modern_persistence_sysvinit
update systemvinit to persistence mixin
|
2025-10-16 16:35:16 +02:00 |
|
h00die
|
55583bd2c8
|
review for sysv persistence
|
2025-10-14 19:30:06 -04:00 |
|
h00die
|
1e9dd04505
|
update periodic_script to new persistence mechanism
|
2025-10-13 17:48:00 -04:00 |
|
h00die
|
058e858e82
|
update systemvinit to persistence mixin
|
2025-10-13 13:42:41 -04:00 |
|
Brendan
|
91c0adb17f
|
Merge pull request #20585 from vognik/CVE_2025_60787
Add MotionEye Authenticated RCE (CVE-2025-60787)
|
2025-10-09 13:50:25 -05:00 |
|
Vognik
|
267a26b763
|
code review changes from smcintyre-r7@
|
2025-10-09 21:51:31 +04:00 |
|
Vognik
|
c05a9d3f7f
|
code review changes from @bwatters-r7
|
2025-10-07 03:07:26 +04:00 |
|
jheysel-r7
|
dbf84abec3
|
Merge pull request #20586 from bcoles/windows_script_host_wsf
Add Malicious Windows Script Host Script File (.wsf) module
|
2025-10-06 13:21:56 -07:00 |
|
Vognik
|
25624e9ae0
|
code review changes
|
2025-10-06 15:46:59 +04:00 |
|
bcoles
|
9a8d1473d8
|
Add Malicious Windows Script Host Script File (.wsf) module
|
2025-10-05 20:16:00 +11:00 |
|
Vognik
|
6d295b993a
|
Add MotionEye Unauthenticated RCE (CVE-2025-60787)
|
2025-10-05 05:32:32 +04:00 |
|
msutovsky-r7
|
a23473a103
|
Land #20565, moves image exec module to persistence category and mixin
Modern persistence image exec
|
2025-09-29 09:32:25 +02:00 |
|
msutovsky-r7
|
79ff667d5e
|
Land #20538, adds systemd override persistence module
persistence: systemd service override
|
2025-09-26 15:57:31 +02:00 |
|
h00die
|
915cad72b5
|
modern persistence for windows image_exec_options
|
2025-09-23 17:25:27 -04:00 |
|
Echo_Slow
|
19074eef02
|
Add exploit for CVE-2025-57819
Added an exploit script for unauthenticated remote code execution targeting FreePBX
|
2025-09-21 22:56:19 +02:00 |
|
h00die
|
6c5522cdba
|
Update documentation/modules/exploit/linux/persistence/init_systemd_override.md
Co-authored-by: Brendan <bwatters@rapid7.com>
|
2025-09-18 16:25:54 -04:00 |
|
h00die
|
15f4abd1b2
|
update yum to persistence module
|
2025-09-18 15:36:44 -04:00 |
|
Diego Ledda
|
c718a965d7
|
Merge pull request #20508 from h00die/modern_persistence_cron
update cron to persistence mixin
|
2025-09-18 12:04:00 +02:00 |
|
msutovsky-r7
|
dc8d67538c
|
Land #20536, adds docker image persistence module
docker image persistence module
|
2025-09-17 09:56:16 +02:00 |
|
jheysel-r7
|
81ce0f8868
|
Merge pull request #20521 from h00die/modern_persistence_systemd
update systemd to persistence mixin
|
2025-09-16 14:56:26 -07:00 |
|
jheysel-r7
|
58dfd4d0ca
|
Merge pull request #20507 from remmons-r7/commvault_rce_cve_2025_57790_cve_2025_57791
Exploit Module for CVE-2025-57790/CVE-2025-57791 - Commvault Unauthenticated RCE
|
2025-09-16 13:22:18 -07:00 |
|
msutovsky-r7
|
32aa0d84e4
|
Land #20525, moves obsidian plugin module to persistence category and mixin
update obsidian to persistence mixin
|
2025-09-16 14:58:15 +02:00 |
|
jheysel-r7
|
02e35f7e92
|
Merge pull request #20520 from h00die/modern_persistence_openrc
update openrc to persistence mixin
|
2025-09-15 15:54:31 -07:00 |
|
h00die
|
ebe0234ddb
|
Update documentation/modules/exploit/linux/persistence/init_openrc.md
Co-authored-by: jheysel-r7 <Jack_Heysel@rapid7.com>
|
2025-09-15 16:30:17 -04:00 |
|
Brendan
|
1ec10ec877
|
Merge pull request #20510 from h00die/modern_persistence_rc_local
update rc_local to persistence mixin
|
2025-09-15 14:47:48 -05:00 |
|
remmons-r7
|
eddc81f10c
|
Update commvault_rce_cve_2025_57790_cve_2025_57791.md
Update the example usage terminal output to reflect module changes.
|
2025-09-15 11:37:57 -05:00 |
|