Adam Cammack
5f8181efa7
Avoid auto-encoding payloads free of badchars
...
Payloads without any of the specified badchars will no longer be encoded
by default. This should hopefully lead to less surprising results when
using simple payloads (especially commands. Things that had incomplete
badchar analysis may break as a result, since not everything will be
encoded by default anymore. Sorry in advance if they do.
2020-05-07 10:58:03 -05:00
William Vu
437a056f67
Land #13364 , .NET deserialization tool
2020-05-05 11:02:31 -05:00
Jeffrey Martin
e5be9ee9ef
add test for reverse_tcp_uuid stager with osx
2020-05-01 11:20:20 -05:00
Spencer McIntyre
b38648db12
Only fail on fatal XML syntax errors for the SoapFormatter
...
The library name in the XML needs to contain a space so it is not a valid URI.
2020-04-30 08:40:31 -04:00
L
d31882fe15
Modify unkown to unknown
2020-04-27 10:50:34 -05:00
L
48ed0ba3c5
Update java_deserialization_spec
2020-04-27 10:50:09 -05:00
Christophe De La Fuente
af239303d2
Land #13257 , .NET Deserialization Library Improvements
2020-04-27 13:05:38 +02:00
Spencer McIntyre
090cf259ee
Add some additional unit testing through rspec
2020-04-22 15:53:59 -04:00
bwatters-r7
15f4f7ea95
Land #13049 , Add fileformat exploit for libnotify plugin
...
Merge branch 'land-13049' into upstream-master
2020-04-16 16:03:14 -05:00
Spencer McIntyre
a13580bfd2
Fix the payload size tests for real this time
2020-04-16 15:35:38 -04:00
Spencer McIntyre
23319489b9
Remove unnecessary logic from ClassWithId
2020-04-15 18:11:45 -04:00
Spencer McIntyre
49580a48ac
Refactor exceptions and add more unit testing
2020-04-15 15:13:41 -04:00
Spencer McIntyre
82dc28e2c4
Use gadget chain classes for identification
2020-04-15 15:13:41 -04:00
Spencer McIntyre
46d5628d79
Add the WindowsIdentity gadget chain
2020-04-15 15:13:41 -04:00
Spencer McIntyre
f808121c84
Refactor formatters into modules
2020-04-15 15:13:41 -04:00
Spencer McIntyre
d6c2375eb8
Add chain consistency checks to the spec file
2020-04-15 15:13:41 -04:00
h00die
6a2561d2d1
remove excessive store_loot from cisco lib
2020-04-10 09:45:18 -04:00
Spencer McIntyre
d6d939b2ed
Land #12594 , add a Ubiquiti config importer mixin
2020-04-08 17:52:28 -04:00
Brendan Coles
89e257c722
Add spec
2020-03-26 06:55:05 +00:00
Alan Foster
bf07b1c897
Landing #13039 , add color to search text matches and module ranks
2020-03-23 18:26:17 +00:00
Adam Galway
04903daa4c
highlights search text & color codes module ranks
2020-03-23 17:42:17 +00:00
dwelch-r7
682653e9d9
PR comments
2020-03-13 13:32:59 +00:00
Alan Foster
1137036ecb
Tidy up results tracking
2020-03-13 13:32:59 +00:00
dwelch-r7
55bd3f45be
run rubocop -a on new files
2020-03-13 13:32:58 +00:00
dwelch-r7
6762a7b147
Fix all the tests
2020-03-13 13:32:58 +00:00
dwelch-r7
54928c0e7b
fix tests
2020-03-13 13:32:58 +00:00
dwelch-r7
4705f9c2dc
Adds tests
2020-03-13 13:32:58 +00:00
dwelch-r7
9f76f3ef08
Use rpc specific job status tracker and add default no op tracker
2020-03-13 13:32:57 +00:00
dwelch-r7
34fc7528dd
Re-add original job state tracker code
...
This reverts commit 908ce3d3
2020-03-13 13:32:57 +00:00
Alan Foster
bfd284b349
Add initial layout cops for the module super hash
2020-03-06 10:41:41 +00:00
Alan Foster
3aeb6597a2
Landing #12980 , ensure json is always returned from the json rpc api
2020-03-04 12:14:53 +00:00
Adam Galway
dd12e65828
adds middleware and application error handlers
2020-03-04 11:56:32 +00:00
Alan Foster
5ed87be78e
Land #12989 , internal refactor sanitizing module names before they are loaded
2020-03-04 11:01:26 +00:00
Adam Galway
607b7ae5ae
moves logic for bad paths to common.rb
2020-03-04 10:41:19 +00:00
William Vu
ba924b3047
Land #13014 , Exchange ECP ViewState exploit
2020-03-03 17:23:17 -06:00
Spencer McIntyre
5574eaa591
Make a new .NET serialization lib
2020-03-03 10:41:59 -05:00
Jeffrey Martin
908ce3d36b
Revert "Land #12960 , add ttl to job results instantiated from an RPC request"
...
This reverts commit ff8bb2e16f , reversing
changes made to ae28463ec6 .
2020-03-02 15:58:13 -06:00
h00die
7c86fb8546
fix for #12358
2020-02-29 19:33:11 -05:00
h00die
3d77c48eae
almost working
2020-02-29 19:33:11 -05:00
h00die
bab5a34b34
progress on ubiquiti
2020-02-29 19:33:11 -05:00
Jeffrey Martin
ffd5a0b39d
add cmd/unix/reverse_ssh test stub
2020-02-27 09:07:37 -06:00
dwelch-r7
89bea26763
Replace results count with something that works and added tests
2020-02-26 11:52:45 +00:00
dwelch-r7
5c94910998
Add a cache to handle the ttl of job results
...
Remove accidental addition of gem
Remove commented out code
Remove commented out code
Remove commented out code
Refactor job tracking code, remove simple framework tests
finish renaming service to job_state_tracker
add missing require and move alias definition
fix private attr declaration
Add rspec tests
Address PR comments
Use let syntax in tests
Finish refactor moving job state tracker
2020-02-25 13:31:28 +00:00
Alan Foster
8a59b8cb1c
Ensure thread cleanup
2020-02-21 17:36:20 +00:00
Alan Foster
9c987b8271
Add json rpc tests for module checks
2020-02-18 21:43:15 +00:00
Brent Cook
f4a0ef2ee9
Land #12640 , improve Wordpress check versions
...
Merge remote-tracking branch 'upstream/pr/12640' into upstream-master
2019-12-26 13:47:04 -06:00
Brent Cook
d3a636eb6a
Land #12509 , add check result to RPC API
2019-12-02 11:37:43 -06:00
Christophe De La Fuente
857677f39d
Update log message
2019-11-29 11:35:14 +01:00
Christophe De La Fuente
6a7c2835ec
Update specs... again
2019-11-28 16:05:51 +01:00
Christophe De La Fuente
127e1d451f
Update specs
2019-11-28 14:58:25 +01:00