Christophe De La Fuente
6758c8313f
Land #17258 , Update sharphound
2022-12-21 14:04:09 +01:00
Christophe De La Fuente
fa5e4df3f5
Land #17278 , Add solarwinds_orion_dump post module
2022-12-20 15:42:25 +01:00
npm-cesium137-io
e3c6aa7820
solarwinds_orion_dump attribution update
...
Updated original research attribution to align with reality.
2022-12-20 08:55:19 -05:00
npm-cesium137-io
d04111ad6f
solarwinds_orion_dump markdown update
...
Nuked the last embarrassing typo in the module description.
Updated the documentation to include detail on sqlcmd / CSV export
process when manually exporting the data.
2022-12-12 10:54:41 -05:00
npm-cesium137-io
8075654f10
Revise solarwinds_orion_dump MKII
...
Fixed humiliating typos in the markdown doc.
Updated the Author section of the module per guidelines.
Changed credential type for AES key loot storage.
Updated database config code to include the case where the SQL password
is not encrypted (needs testing).
Additional tweaks and fixes.
2022-12-09 14:47:18 -05:00
npm-cesium137-io
2f3fd6c917
Revise solarwinds_orion_dump
...
Made modifications to documentation to add further detail for each
action.
Significant refactor of error handling, now with (hopefully) proper use
of exceptions.
Various suggested code improvements and optimization.
Fixed some redundant and buggy code.
2022-12-07 07:55:43 -05:00
bcoles
d90dee8235
enum_proxy: Cleanup and support non-Meterpreter sessions
2022-12-04 15:10:47 +11:00
Jeffrey Martin
453cfc5939
spelling change per review
...
Co-authored-by: adfoster-r7 <60357436+adfoster-r7@users.noreply.github.com >
2022-11-23 13:26:19 -06:00
Jeffrey Martin
cb8e023734
add warning about external links
...
Links to external resources not controlled by the project maintainers
are subject to bitrot and malicious take over. Warnings seem appropriate.
2022-11-23 12:08:05 -06:00
npm-cesium137-io
6f885ba700
Add solarwinds_orion_dump post module
...
Post module for extracting encrypted credentials from SolarWinds Orion
NPM. Tested on the 2020 version.
2022-11-18 10:40:10 -05:00
h00die
496a6f74ff
remove verbiage of list
2022-11-17 16:49:11 -05:00
h00die
f6eba6a836
updated bloodhound module
2022-11-13 14:29:28 -05:00
Christophe De La Fuente
929d4f2fa4
Land #17097 , Gather Navicat
2022-11-07 12:30:16 +01:00
bwatters
4aa2b76bde
Land #17092 , netlm_downgrade Cleanup and support non-Meterpreter sessions
...
Merge branch 'land-17092' into upstream-master
2022-10-12 11:40:20 -05:00
三米前有蕉皮
20015d7351
Update documentation/modules/post/windows/gather/credentials/navicat.md
...
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com >
2022-10-12 13:52:12 +08:00
三米前有蕉皮
7caf2eb9dc
Update documentation/modules/post/windows/gather/credentials/navicat.md
...
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com >
2022-10-12 11:29:25 +08:00
Jack Heysel
60c21da50e
Land #17009 , Add MobaXterm cred gather module
...
This module determines if MobaXterm is installed and if
it is dumps all saved session information from the target
2022-10-05 14:14:27 -04:00
bwatters
052d233bd9
Land #17006 , Gather_RedisDesktopManager_Password
...
Merge branch 'land-17006' into upstream-master
2022-10-03 15:10:30 -05:00
cn-kali-team
3fa2268aa1
fix username
2022-10-03 00:07:30 +08:00
cn-kali-team
2f3378fc4a
Gather_Navicat
2022-10-02 23:48:09 +08:00
bcoles
3ffbc99d9f
netlm_downgrade: Cleanup and support non-Meterpreter sessions
2022-10-01 22:35:11 +10:00
Jack Heysel
9ad513dade
Land #16933 , Thycotic Secret Server post module
...
This PR adds a post exploitation module that exports
and decrypts Thycotic Secret Server credentials
2022-09-30 13:16:05 -04:00
bwatters
9e74b9887d
Land #17048 , enum_tokens: Cleanup
...
Merge branch 'land-17048' into upstream-master
2022-09-29 15:58:46 -05:00
jheysel-r7
e06acc7df0
Update documentation/modules/post/windows/gather/credentials/thycotic_secretserver_dump.md
2022-09-29 13:59:01 -04:00
jheysel-r7
e8d4bcdcc6
Update documentation/modules/post/windows/gather/credentials/thycotic_secretserver_dump.md
2022-09-29 13:58:37 -04:00
jheysel-r7
713d63654b
Update documentation/modules/post/windows/gather/credentials/thycotic_secretserver_dump.md
2022-09-29 13:58:22 -04:00
bwatters
3170eac829
Land #16981 , enum_domain_tokens: Cleanup and fix group member retrieval
...
Merge branch 'land-16981' into upstream-master
2022-09-27 09:47:34 -05:00
cgranleese-r7
c74f480177
Land #17049 , enum_domain_group_users module clean up
2022-09-22 17:51:12 +01:00
bcoles
ce48afd0db
wmic_command: Cleanup
2022-09-23 00:25:13 +10:00
bcoles
9eab7eadab
enum_domain_group_users: Cleanup
2022-09-22 17:05:19 +10:00
bcoles
eef42884e0
enum_tokens: Cleanup
2022-09-22 12:04:24 +10:00
Grant Willcox
bd4a062e5f
Land #17023 , Fix #16999 by using a compatible default action
2022-09-19 17:33:01 -05:00
Grant Willcox
5d7c7b0a09
Update documentation and change up the code to use action.name vs datastore['ACTION'] since that is no longer populated
2022-09-19 17:31:51 -05:00
Spencer McIntyre
eae1adb8bb
Add getsystem module docs
2022-09-16 14:59:50 -04:00
cn-kali-team
35a33c9710
rename,delete useless code
2022-09-16 11:38:48 +08:00
Grant Willcox
cee6b6a111
Land #17003 , enum_patches: Cleanup, print patches as table, store patches as CSV
2022-09-15 18:07:11 -05:00
Grant Willcox
d278d6aa81
Add in missing require to make module work, then fix up some minor things observed during review process
2022-09-15 17:44:25 -05:00
Grant Willcox
e7d2fdfe0a
Rename module and fix up some issues with documentation
2022-09-14 17:03:42 -05:00
Christophe De La Fuente
3c9b57c415
Land #16911 , enum_ms_product_keys: Cleanup and support non-meterpreter sessions
2022-09-13 16:06:55 +02:00
Spencer McIntyre
6467fb3a8f
Land #16906 , enum_snmp improvements
...
enum_snmp: Cleanup and support non-Meterpreter sessions
2022-09-13 09:05:15 -04:00
bcoles
a0030ac667
enum_snmp: Cleanup and support non-Meterpreter sessions
2022-09-13 17:45:10 +10:00
cn-kali-team
2cca50956b
MobaXtrem
2022-09-13 08:14:57 +08:00
cn-kali-team
2726f04e43
Gather_RedisDesktopManager_Password
2022-09-12 20:40:49 +08:00
bcoles
ebaca4cd48
enum_patches: Cleanup, print patches as table, store patches as CSV
2022-09-12 13:50:32 +10:00
bcoles
302bcfbc03
enum_domain_tokens: Cleanup and fix group member retrieval
2022-09-10 13:54:39 +10:00
Grant Willcox
b5686dc7ca
Update documentation to improve some explanations
2022-09-09 15:51:31 -05:00
bcoles
8dc4107bed
enum_services: Cleanup and support non-Meterpreter sessions
2022-09-09 15:09:47 -05:00
bcoles
290d70bd19
enum_domain: Cleanup and support non-Meterpreter sessions
2022-09-08 12:34:37 -05:00
Grant Willcox
446d891705
Land #16901 , killav: Cleanup and support non-meterpreter sessions
2022-09-07 14:02:11 -05:00
space-r7
53b25d7d69
Land #16934 , support dumping mem by process name
2022-09-01 12:58:01 -05:00