Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update fork #1

Merged
merged 3,988 commits into from
Sep 13, 2020
Merged

Update fork #1

merged 3,988 commits into from
Sep 13, 2020
This pull request is big! We’re only showing the most recent 250 commits.

Commits on Aug 18, 2020

  1. fix newlines and cleanup

    timwr committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    e65e7e2 View commit details
    Browse the repository at this point in the history
  2. getroot -> make writable

    timwr committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    53b2db7 View commit details
    Browse the repository at this point in the history
  3. cleanup properly

    timwr committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    dce83ad View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    114290c View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    3fcdbd9 View commit details
    Browse the repository at this point in the history
  6. Adds rhost url support behind a feature flag

    Tidy up test
    
    Return a string instead of a URI object
    
    Code review comments
    
    Rubcocop
    dwelch-r7 committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    e706143 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    b7d8fb1 View commit details
    Browse the repository at this point in the history
  8. minor rubocop fix

    space-r7 committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    d79ad5e View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    6e2a700 View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    9bd98f9 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    a765c1d View commit details
    Browse the repository at this point in the history
  12. fix disown

    timwr committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    eabc59e View commit details
    Browse the repository at this point in the history
  13. review comments

    h00die committed Aug 18, 2020
    Configuration menu
    Copy the full SHA
    28338ac View commit details
    Browse the repository at this point in the history

Commits on Aug 19, 2020

  1. Configuration menu
    Copy the full SHA
    f8523cb View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    f05f2b1 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    2919641 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    897c51d View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    d488dab View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    5f07bfe View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    7fd489c View commit details
    Browse the repository at this point in the history
  8. Land #13998, Always use module cache for searching

    Always use module cache for searching
    dwelch-r7 authored Aug 19, 2020
    Configuration menu
    Copy the full SHA
    3d1eba2 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    11e0bd1 View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    d300ddb View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    43ecb41 View commit details
    Browse the repository at this point in the history

Commits on Aug 20, 2020

  1. Configuration menu
    Copy the full SHA
    02e6e3f View commit details
    Browse the repository at this point in the history
  2. arista

    h00die authored and space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    43fabca View commit details
    Browse the repository at this point in the history
  3. handle md5 and plaintext passwords

    h00die authored and space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    14e0ebe View commit details
    Browse the repository at this point in the history
  4. privilege is optional

    h00die authored and space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    88f8b71 View commit details
    Browse the repository at this point in the history
  5. arista libs

    h00die authored and space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    7bbe84d View commit details
    Browse the repository at this point in the history
  6. no db compliant

    h00die authored and space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    2e426ae View commit details
    Browse the repository at this point in the history
  7. review comments

    h00die authored and space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    3326d86 View commit details
    Browse the repository at this point in the history
  8. add a space to author field

    space-r7 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    86dbac3 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    9e51507 View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    0a91db9 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    6e8e667 View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    138c951 View commit details
    Browse the repository at this point in the history
  13. Configuration menu
    Copy the full SHA
    9a64e3c View commit details
    Browse the repository at this point in the history
  14. Applying suggested fixes.

    0x44434241 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    06cbf9a View commit details
    Browse the repository at this point in the history
  15. Configuration menu
    Copy the full SHA
    935403d View commit details
    Browse the repository at this point in the history
  16. Serve the public trust. Protect the innocent. Tell noobs to delete ne…

    …cessary parameters. Uphold the law.
    0x44434241 committed Aug 20, 2020
    Configuration menu
    Copy the full SHA
    178bc3f View commit details
    Browse the repository at this point in the history

Commits on Aug 21, 2020

  1. Configuration menu
    Copy the full SHA
    c70ab56 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    38d8110 View commit details
    Browse the repository at this point in the history
  3. misaligned except statement

    space-r7 committed Aug 21, 2020
    Configuration menu
    Copy the full SHA
    e74a8f3 View commit details
    Browse the repository at this point in the history
  4. msftidy, module name fixes

    space-r7 committed Aug 21, 2020
    Configuration menu
    Copy the full SHA
    1abe6ad View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    5bcdaa5 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    586f244 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    37a0675 View commit details
    Browse the repository at this point in the history
  8. Create cisco_7937g_ssh_privesc.md

    debifrank authored Aug 21, 2020
    Configuration menu
    Copy the full SHA
    7598c9e View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    5a26aa6 View commit details
    Browse the repository at this point in the history
  10. Delete cisco_7937g_ssh_privesc.md

    debifrank authored Aug 21, 2020
    Configuration menu
    Copy the full SHA
    eda50d2 View commit details
    Browse the repository at this point in the history
  11. Delete cisco_7937g_ssh_privesc.py

    debifrank authored Aug 21, 2020
    Configuration menu
    Copy the full SHA
    8ea1f5a View commit details
    Browse the repository at this point in the history
  12. Create cisco_7937g_ssh_privesc.py

    debifrank authored Aug 21, 2020
    Configuration menu
    Copy the full SHA
    33524c0 View commit details
    Browse the repository at this point in the history
  13. Update cisco_7937g_dos.md

    debifrank authored Aug 21, 2020
    Configuration menu
    Copy the full SHA
    28068cd View commit details
    Browse the repository at this point in the history
  14. Configuration menu
    Copy the full SHA
    3dc6e3d View commit details
    Browse the repository at this point in the history
  15. Configuration menu
    Copy the full SHA
    06f0e2e View commit details
    Browse the repository at this point in the history
  16. Merge pull request #1 from space-r7/cisco-13985

    add randomize ssh cred function
    debifrank authored Aug 21, 2020
    Configuration menu
    Copy the full SHA
    22a09b4 View commit details
    Browse the repository at this point in the history
  17. Configuration menu
    Copy the full SHA
    39284d4 View commit details
    Browse the repository at this point in the history
  18. Configuration menu
    Copy the full SHA
    c578fde View commit details
    Browse the repository at this point in the history
  19. Configuration menu
    Copy the full SHA
    2443d38 View commit details
    Browse the repository at this point in the history
  20. fix msftidy warnings

    space-r7 committed Aug 21, 2020
    Configuration menu
    Copy the full SHA
    cd351a2 View commit details
    Browse the repository at this point in the history
  21. Configuration menu
    Copy the full SHA
    841d488 View commit details
    Browse the repository at this point in the history
  22. Configuration menu
    Copy the full SHA
    27456ab View commit details
    Browse the repository at this point in the history
  23. Configuration menu
    Copy the full SHA
    f69facc View commit details
    Browse the repository at this point in the history
  24. Configuration menu
    Copy the full SHA
    2228cef View commit details
    Browse the repository at this point in the history

Commits on Aug 24, 2020

  1. Configuration menu
    Copy the full SHA
    786d59d View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    f083499 View commit details
    Browse the repository at this point in the history
  3. Fix features help command

    adfoster-r7 committed Aug 24, 2020
    Configuration menu
    Copy the full SHA
    6066bd8 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    d7ecb08 View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    c087ef3 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    e75bd31 View commit details
    Browse the repository at this point in the history

Commits on Aug 25, 2020

  1. remove dingtalk_plugins

    cn-kali-team committed Aug 25, 2020
    Configuration menu
    Copy the full SHA
    736511f View commit details
    Browse the repository at this point in the history
  2. add dingtalk's code

    cn-kali-team committed Aug 25, 2020
    Configuration menu
    Copy the full SHA
    f26133b View commit details
    Browse the repository at this point in the history
  3. Land #14041, Fix features help command

    Fix features help command
    dwelch-r7 authored Aug 25, 2020
    Configuration menu
    Copy the full SHA
    6e4ec6f View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    37fd5de View commit details
    Browse the repository at this point in the history
  5. Land #14045, Reload module after toggling feature

    Reload module after toggling feature
    dwelch-r7 authored Aug 25, 2020
    Configuration menu
    Copy the full SHA
    84c9e95 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    9bd687e View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    b2e38eb View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    0052da9 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    5368536 View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    9745385 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    a4a0a3a View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    d1baf96 View commit details
    Browse the repository at this point in the history
  13. Fixing zip import errors

    in particular:
    •passed workspace as an object instead of calling `.name`
    *loot and task processing now consumes `wspace` parameter
    *fixed typo in `.delete` method
    mhagan-r7 committed Aug 25, 2020
    Configuration menu
    Copy the full SHA
    97eb04a View commit details
    Browse the repository at this point in the history

Commits on Aug 26, 2020

  1. Configuration menu
    Copy the full SHA
    855aa3c View commit details
    Browse the repository at this point in the history
  2. Update lib/msf/core/payload/windows/x64/reflective_pe_loader.rb

    Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com>
    EgeBalci and smcintyre-r7 authored Aug 26, 2020
    Configuration menu
    Copy the full SHA
    071eb14 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    66292a5 View commit details
    Browse the repository at this point in the history
  4. Rescue connection errors and return a CheckCode

    Oops, the Scanner mixin was silently catching them.
    wvu committed Aug 26, 2020
    Configuration menu
    Copy the full SHA
    c45c01f View commit details
    Browse the repository at this point in the history
  5. Set exempt labels

    dwelch-r7 committed Aug 26, 2020
    Configuration menu
    Copy the full SHA
    bea6259 View commit details
    Browse the repository at this point in the history

Commits on Aug 27, 2020

  1. Configuration menu
    Copy the full SHA
    c069d94 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    af06429 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    518e7b3 View commit details
    Browse the repository at this point in the history
  4. parent 1bd4a8d

    author Hynek Petrak <hynek.petrak@gmail.com> 1595628792 +0200
    committer Spencer McIntyre <Spencer_McIntyre@rapid7.com> 1598532753 -0400
    
    Added module to dump hashes from LDAP
    
    added hash formatters, documentation, ldap authentication
    
    typo
    
    sanitizing
    
    added scenario for NASDeluxe
    
    added few hash attribute examples
    
    typo correction
    
    Co-authored-by: bcoles <bcoles@gmail.com>
    
    typo correction
    
    Co-authored-by: bcoles <bcoles@gmail.com>
    
    typo correction
    
    Co-authored-by: bcoles <bcoles@gmail.com>
    
    avoid option name conflicts
    
    added test scenario
    
    linted
    
    linted
    
    Dump all nameContexts, not just the first one. Search creds in multiple attributes.
    
    attemt to dump special and operational attributes
    
    check if ldap bind succeeded
    
    sanitize the ldap hashes, skip invalid, remove {crypt} prefix
    
    memory optimization for large LDAP servers
    
    spaces at eols
    
    put header to the ldif loot
    
    added other LDAP hash formats, don't save empty ldif, dump root DSE
    
    now we handle vmdir case too
    
    explictly set md5crypt for $
    
    Converted to scanner to improve performance on large networks
    
    krbprincipalkey, memory optimization for ldap.search
    
    handle additional hash types
    
    be verbose about search errors
    
    added per host timeout
    
    catch exception from Net::Ldap
    
    shorten the param value
    
    handle pwdhistory entries
    
    added comment about sambapwdhistory value
    
    reject shorter empty sambapassordhistory entries
    
    reject null nt and lm hashes
    
    report assumed clear text passwords
    
    refactored timeout for the sake of the loot
    
    ignore {SASL} pass-trough auth entries
    
    distinguish unresolved hashes from clear passwords
    
    print ldap server error message, meaningful loot name
    
    correct exception handling
    
    handle hashes with eol
    
    remove debug line
    
    handle pkcs12 in binary form
    
    attemt to control timeout on bind operation
    
    leave LDAP#bind to be called implicitly in #search
    
    remove debug line
    
    fixed bug, when pillage broke the outer LDAP#search
    
    learning ruby
    
    monkey patched ldap connection handling, ignoring bind errors
    
    commenting the net:LDAP misbehaviour
    
    review fixes
    
    review fixes
    
    moving ldap.search into a function
    
    remove fail_with, store loot from one place, print statistics
    
    linting
    
    consolidated ldap_new and connect, don't catch exceptions in the mixin
    
    Complete the credential creation
    
    Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com>
    HynekPetrak and smcintyre-r7 committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    f8bf996 View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    aa60b4e View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    5e636c8 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    07acf7b View commit details
    Browse the repository at this point in the history
  8. Reduce msfvenom run time by only loading relevant modules

    Work was already done, just need the args passed in
    dwelch-r7 committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    98eaef2 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    26e5fc9 View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    477f731 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    8f9a849 View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    4374edd View commit details
    Browse the repository at this point in the history
  13. Configuration menu
    Copy the full SHA
    a42ae52 View commit details
    Browse the repository at this point in the history
  14. Configuration menu
    Copy the full SHA
    1c69dfd View commit details
    Browse the repository at this point in the history
  15. Comment the SQLite methods

    red0xff committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    e0c59ed View commit details
    Browse the repository at this point in the history
  16. Configuration menu
    Copy the full SHA
    080e25e View commit details
    Browse the repository at this point in the history
  17. Configuration menu
    Copy the full SHA
    2bb2b73 View commit details
    Browse the repository at this point in the history
  18. Configuration menu
    Copy the full SHA
    95ce79b View commit details
    Browse the repository at this point in the history
  19. Configuration menu
    Copy the full SHA
    4e302dc View commit details
    Browse the repository at this point in the history
  20. Configuration menu
    Copy the full SHA
    6cd9fa8 View commit details
    Browse the repository at this point in the history
  21. Configuration menu
    Copy the full SHA
    a681f7a View commit details
    Browse the repository at this point in the history
  22. Configuration menu
    Copy the full SHA
    b9b2423 View commit details
    Browse the repository at this point in the history
  23. Configuration menu
    Copy the full SHA
    348c955 View commit details
    Browse the repository at this point in the history
  24. Configuration menu
    Copy the full SHA
    7a89542 View commit details
    Browse the repository at this point in the history
  25. Configuration menu
    Copy the full SHA
    24b5f8a View commit details
    Browse the repository at this point in the history
  26. get_cookies insead of accessing the Set-Cookie header

    as the #get_cookies method is getting fixed to support case-insensitive cookie presence checking
    
    Co-authored-by: Jeffrey Martin <jeffrey_martin@rapid7.com>
    red0xff and jmartin-tech committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    3e73f5e View commit details
    Browse the repository at this point in the history
  27. Configuration menu
    Copy the full SHA
    d54046f View commit details
    Browse the repository at this point in the history
  28. Some improvements suggested for code optimization

    María Belén Tualombo Chimbo committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    ddfc554 View commit details
    Browse the repository at this point in the history
  29. minor fix

    María Belén Tualombo Chimbo committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    bbb032b View commit details
    Browse the repository at this point in the history
  30. Configuration menu
    Copy the full SHA
    4ace8e3 View commit details
    Browse the repository at this point in the history
  31. Configuration menu
    Copy the full SHA
    de0826f View commit details
    Browse the repository at this point in the history
  32. Configuration menu
    Copy the full SHA
    935340a View commit details
    Browse the repository at this point in the history
  33. Fix documentation, remove unused instance variable in SQLite TimeBase…

    …dBlind class (sleepdelay)
    red0xff committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    d66bb40 View commit details
    Browse the repository at this point in the history
  34. Land #14021, when searching modules for multiple text terms, the sear…

    …ch will now require for all words to be matched
    adfoster-r7 authored Aug 27, 2020
    Configuration menu
    Copy the full SHA
    177f720 View commit details
    Browse the repository at this point in the history
  35. Add a SECURITY.md file

    Git has this cool sheild button on the ribbon on every project now that
    indicates the vulnerability reporting policy for that project. We should
    totally populate this so people don't accidnetally dox our bugs on
    Issues.
    todb-r7 committed Aug 27, 2020
    Configuration menu
    Copy the full SHA
    ca590c7 View commit details
    Browse the repository at this point in the history
  36. Configuration menu
    Copy the full SHA
    8d64cb9 View commit details
    Browse the repository at this point in the history
  37. Configuration menu
    Copy the full SHA
    1d2443c View commit details
    Browse the repository at this point in the history
  38. Configuration menu
    Copy the full SHA
    a61db03 View commit details
    Browse the repository at this point in the history
  39. Configuration menu
    Copy the full SHA
    4bd8690 View commit details
    Browse the repository at this point in the history

Commits on Aug 28, 2020

  1. Land #14040, Use CheckModule auxiliary/scanner/misc/java_rmi_server i…

    …n exploit/multi/misc/java_rmi_server
    adfoster-r7 authored Aug 28, 2020
    Configuration menu
    Copy the full SHA
    62d4587 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    e094a55 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    f14f70d View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    d6b9165 View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    763448c View commit details
    Browse the repository at this point in the history
  6. Land #14061, ensure framework options are passed through from msfvenom

    Reduce msfvenom run time by only loading relevant modules
    adfoster-r7 authored Aug 28, 2020
    Configuration menu
    Copy the full SHA
    760aba0 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    c92bc38 View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    983434a View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    9acafb7 View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    d58cb9f View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    58a56a2 View commit details
    Browse the repository at this point in the history

Commits on Aug 29, 2020

  1. help output for action commands updated

    María Belén Tualombo Chimbo committed Aug 29, 2020
    Configuration menu
    Copy the full SHA
    769b4ab View commit details
    Browse the repository at this point in the history
  2. lowercase added to help output for action commands

    María Belén Tualombo Chimbo committed Aug 29, 2020
    Configuration menu
    Copy the full SHA
    db4de72 View commit details
    Browse the repository at this point in the history
  3. some minor changes

    María Belén Tualombo Chimbo committed Aug 29, 2020
    Configuration menu
    Copy the full SHA
    30bebdb View commit details
    Browse the repository at this point in the history

Commits on Aug 30, 2020

  1. Update command_shell.rb

    - Improved path detection
    - Check for bash with python / python3 and use it if it exists
    - Minor grammatical improvements
    Reelix authored Aug 30, 2020
    Configuration menu
    Copy the full SHA
    e2a008e View commit details
    Browse the repository at this point in the history
  2. Update command_shell.rb

    - Fixed spacing (Tabs VS Spaces)
    Reelix authored Aug 30, 2020
    Configuration menu
    Copy the full SHA
    b61a5e5 View commit details
    Browse the repository at this point in the history
  3. Update command_shell.rb

    - Converted a missed tab to spaces
    Reelix authored Aug 30, 2020
    Configuration menu
    Copy the full SHA
    b9db589 View commit details
    Browse the repository at this point in the history

Commits on Aug 31, 2020

  1. Configuration menu
    Copy the full SHA
    7882441 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    e5e1ce7 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    ddb6782 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    3a87dfa View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    12d1ec8 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    e7ad8d9 View commit details
    Browse the repository at this point in the history
  7. Fix SECURITY.md for less clever GH Issues and link

    Tod Beardsley authored Aug 31, 2020
    Configuration menu
    Copy the full SHA
    cd69e2a View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    84b229d View commit details
    Browse the repository at this point in the history
  9. Update command_shell.rb

    - Implement changes suggested by @smcintyre-r7
    Reelix authored Aug 31, 2020
    Configuration menu
    Copy the full SHA
    f5a8589 View commit details
    Browse the repository at this point in the history
  10. Update python.rb

    - Added py_create_exec_stub required for #14072
    Reelix authored Aug 31, 2020
    Configuration menu
    Copy the full SHA
    d46f0ce View commit details
    Browse the repository at this point in the history
  11. Update lib/msf/core/payload/python.rb

    - Implemented bug fix and naming improvement as suggested by @smcintyre-r7
    
    Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com>
    Reelix and smcintyre-r7 authored Aug 31, 2020
    Configuration menu
    Copy the full SHA
    296a065 View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    27a2ef6 View commit details
    Browse the repository at this point in the history

Commits on Sep 1, 2020

  1. Include KB installation date in enum_patches

    Currently, the output of this module only lists the KB packages installed on a Windows PC. 
    
    This change improves the module by also having it output when a given patch package was installed (this information can also be retrieved from the WMI query); this will provide insight into how regularly and reliably a PC (and by extension, environment) patches - for example, are they late in installing patches by months, when did they last patch etc.
    247arjun authored Sep 1, 2020
    Configuration menu
    Copy the full SHA
    fb4acd5 View commit details
    Browse the repository at this point in the history
  2. exploit binary

    timwr committed Sep 1, 2020
    Configuration menu
    Copy the full SHA
    c23cb63 View commit details
    Browse the repository at this point in the history
  3. avoid using the datastore and use kwarg

    María Belén Tualombo Chimbo committed Sep 1, 2020
    Configuration menu
    Copy the full SHA
    9eca457 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    c8a8e1c View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    e54d685 View commit details
    Browse the repository at this point in the history
  6. Land #14068, Update smb_enum_gpp to use RubySMB

    Merge branch 'land-14068' into upstream-master
    bwatters-r7 committed Sep 1, 2020
    Configuration menu
    Copy the full SHA
    b135367 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    3690baf View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    e01d9e7 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    62d3d9b View commit details
    Browse the repository at this point in the history

Commits on Sep 2, 2020

  1. Configuration menu
    Copy the full SHA
    67df4ea View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    c2d4938 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    534bd1f View commit details
    Browse the repository at this point in the history
  4. Changing print statements to follow Ruby style

    In response to PR feedback
    247arjun authored Sep 2, 2020
    Configuration menu
    Copy the full SHA
    ca846fa View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    6d1a905 View commit details
    Browse the repository at this point in the history
  6. Updated module description

    Changed string description to call out the modified WMI query that now also pulls in the InstalledOn metadata for a given KB.
    247arjun authored Sep 2, 2020
    Configuration menu
    Copy the full SHA
    b2bd40e View commit details
    Browse the repository at this point in the history
  7. Move just SECURITY.md to .github

    Tod Beardsley authored and gwillcox-r7 committed Sep 2, 2020
    Configuration menu
    Copy the full SHA
    3e582ec View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    632a3bd View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    161083e View commit details
    Browse the repository at this point in the history
  10. Configuration menu
    Copy the full SHA
    d15e27f View commit details
    Browse the repository at this point in the history
  11. Update documentation for the enum_patches.rb module to reflect recent…

    … changes to its code and output
    gwillcox-r7 committed Sep 2, 2020
    Configuration menu
    Copy the full SHA
    f10871a View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    20e4b3e View commit details
    Browse the repository at this point in the history
  13. Configuration menu
    Copy the full SHA
    8c215c7 View commit details
    Browse the repository at this point in the history
  14. Run rubocop

    bwatters-r7 committed Sep 2, 2020
    Configuration menu
    Copy the full SHA
    149566b View commit details
    Browse the repository at this point in the history
  15. Land #14075, Add support for ZIP file generation in zip_slip exploit

    Merge branch 'land-14075' into upstream-master
    bwatters-r7 committed Sep 2, 2020
    Configuration menu
    Copy the full SHA
    8fb8b00 View commit details
    Browse the repository at this point in the history
  16. Configuration menu
    Copy the full SHA
    0e6f6cd View commit details
    Browse the repository at this point in the history

Commits on Sep 3, 2020

  1. Configuration menu
    Copy the full SHA
    d8447e9 View commit details
    Browse the repository at this point in the history

Commits on Sep 4, 2020

  1. Use select in smb_version scanner for ruby <= 2.5

    Use Array.select! instead of Array.filter! (which is an alias for the
    former) in the smb_version scanner module to be compatible with ruby
    versions <= 2.5.
    rtpt-erikgeiser committed Sep 4, 2020
    Configuration menu
    Copy the full SHA
    efaeb1b View commit details
    Browse the repository at this point in the history
  2. add documentation

    timwr committed Sep 4, 2020
    Configuration menu
    Copy the full SHA
    7b1f5c1 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    242656b View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    2e19c9e View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    d69f344 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    2c1b6ed View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    749423d View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    1b77d01 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    5e2a3a6 View commit details
    Browse the repository at this point in the history
  10. Land #13992, Add module for CVE-2020-9839, LPE for macOS <= 10.15.4

    Merge branch 'land-13992' into upstream-master
    bwatters-r7 committed Sep 4, 2020
    Configuration menu
    Copy the full SHA
    e592736 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    ce17c43 View commit details
    Browse the repository at this point in the history

Commits on Sep 5, 2020

  1. Fix user path on newer Windows

    egypt committed Sep 5, 2020
    Configuration menu
    Copy the full SHA
    a870b1d View commit details
    Browse the repository at this point in the history

Commits on Sep 7, 2020

  1. Reduce operations per run

    dwelch-r7 committed Sep 7, 2020
    Configuration menu
    Copy the full SHA
    234ef7c View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    97f523b View commit details
    Browse the repository at this point in the history
  3. Land #14089, update smb_version module to use select instead of filte…

    …r for backwards compatibility
    adfoster-r7 authored Sep 7, 2020
    Configuration menu
    Copy the full SHA
    be5cd6e View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    190d5c3 View commit details
    Browse the repository at this point in the history

Commits on Sep 8, 2020

  1. Configuration menu
    Copy the full SHA
    5769519 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    645562a View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    b069634 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    437f11b View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    6a1d26a View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    a0f91d9 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    288a35f View commit details
    Browse the repository at this point in the history
  8. Improve documentation

    itsecurityco authored and gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    a2a69f5 View commit details
    Browse the repository at this point in the history
  9. Refactor the module's code and fix several typos

    Co-authored-by: bcoles <bcoles@gmail.com>
    2 people authored and gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    04e0926 View commit details
    Browse the repository at this point in the history
  10. bold title

    itsecurityco authored and gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    5f75479 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    bec08f5 View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    182797f View commit details
    Browse the repository at this point in the history
  13. Add in various fixes for review comments, including description impro…

    …vements, validation of the UNIT_ID value, and fixes to the return values of some functions. Also update the documentation to address issues from first round of the review.
    gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    c6d98a5 View commit details
    Browse the repository at this point in the history
  14. Remove the UNIT_ID option from the registers_option section and from …

    …the documentation, and update the module with a link to the Modbus protocol specification.
    itsecurityco authored and gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    710ac48 View commit details
    Browse the repository at this point in the history
  15. Fix up one of the documentation lines to reflect the fact that we can…

    … get the version number in the major.minor version format. Also fix up the Options section to remove the default option and replace it with a line that I think should be more appropriate
    gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    ea8cf7b View commit details
    Browse the repository at this point in the history
  16. Add in further fixes to address issues discovered during manual code …

    …review, and then apply RuboCop fixes
    gwillcox-r7 committed Sep 8, 2020
    Configuration menu
    Copy the full SHA
    0270a09 View commit details
    Browse the repository at this point in the history
  17. Configuration menu
    Copy the full SHA
    488977b View commit details
    Browse the repository at this point in the history
  18. Configuration menu
    Copy the full SHA
    9a5f393 View commit details
    Browse the repository at this point in the history

Commits on Sep 9, 2020

  1. Add module for CVE-2020-9934

    timwr committed Sep 9, 2020
    Configuration menu
    Copy the full SHA
    42d70bb View commit details
    Browse the repository at this point in the history
  2. feedback from bcoles

    timwr committed Sep 9, 2020
    Configuration menu
    Copy the full SHA
    d447bbc View commit details
    Browse the repository at this point in the history
  3. more feedback from bcoles

    timwr committed Sep 9, 2020
    Configuration menu
    Copy the full SHA
    c725a71 View commit details
    Browse the repository at this point in the history
  4. fix mkdir

    timwr committed Sep 9, 2020
    Configuration menu
    Copy the full SHA
    686ef94 View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    f2e3480 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    d63a79b View commit details
    Browse the repository at this point in the history

Commits on Sep 10, 2020

  1. Configuration menu
    Copy the full SHA
    df7483a View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    6a011fe View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    cc8321e View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    fe6bfad View commit details
    Browse the repository at this point in the history
  5. Configuration menu
    Copy the full SHA
    bc49826 View commit details
    Browse the repository at this point in the history
  6. Configuration menu
    Copy the full SHA
    bfdbb90 View commit details
    Browse the repository at this point in the history
  7. Initial module and documentation for Microsoft Windows DNS ServerLeve…

    …lPluginDll abuse
    ide0x90 authored and gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    d1e9039 View commit details
    Browse the repository at this point in the history
  8. Configuration menu
    Copy the full SHA
    151fdb7 View commit details
    Browse the repository at this point in the history
  9. Configuration menu
    Copy the full SHA
    7701ea1 View commit details
    Browse the repository at this point in the history
  10. Changed DLL so that it doesn't block the DNS service from stopping af…

    …ter the module executes.
    
    Added OS check (>= Server 2003 is vulnerable so far).
    Now cleans up dropped DLL and modified registry value.
    ide0x90 authored and gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    53f3b70 View commit details
    Browse the repository at this point in the history
  11. Configuration menu
    Copy the full SHA
    c4d463e View commit details
    Browse the repository at this point in the history
  12. Configuration menu
    Copy the full SHA
    78dc43e View commit details
    Browse the repository at this point in the history
  13. Update documentation with some updated info about potentially bad sit…

    …uations the module could run into, and also include some new documentation on the new option we have added in to try to prevent this from happening
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    d0fe87f View commit details
    Browse the repository at this point in the history
  14. Add in the AVTIMEOUT option to allow the module to check if any AV or…

    … other processes deleted the uploaded DLL file, thereby preventing a situation where the DNS server is unable to restart. Also add in some warning's r.e when we enter the danger section and when we exit it so that users at more aware of when this is happening.
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    a94d362 View commit details
    Browse the repository at this point in the history
  15. Add in extra code to handle cases where the loops may enter a infinte…

    … loop state. New code should prevent this from happening
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    0d493bb View commit details
    Browse the repository at this point in the history
  16. Update documentation with the installation instructions I mentioned i…

    …n the GitHub comments. Also RuboCop the exploit module code.
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    7e1560f View commit details
    Browse the repository at this point in the history
  17. Fix up the exploit module so that it will not wait for AV if a UNC pa…

    …th is used, as there is no chance the AV on the host can remove the file on the UNC share, and the UNC share won't be accessed until the exact moment it is needed
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    4548037 View commit details
    Browse the repository at this point in the history
  18. Add in version checking to ensure we only check if the target has the…

    … 'Enable insecure guest logons' enabled if their build number is greater than or equal to 10.0.16299.0, which was the build where this change first was implemented.
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    16b27ae View commit details
    Browse the repository at this point in the history
  19. Update module documentation with more detail r.e affected versions an…

    …d the fact that the use of UNC paths could cause an issue if they are not typed in correctly. Also update the module documentation to use the output from recent tests to reflect recent changes. Shortern the module description and update its stability rating. Finally add in a reliability rating for the exploit module.
    gwillcox-r7 committed Sep 10, 2020
    Configuration menu
    Copy the full SHA
    593945e View commit details
    Browse the repository at this point in the history
  20. Configuration menu
    Copy the full SHA
    d4cf660 View commit details
    Browse the repository at this point in the history
  21. Configuration menu
    Copy the full SHA
    0fcc94f View commit details
    Browse the repository at this point in the history
  22. Configuration menu
    Copy the full SHA
    e95bd3b View commit details
    Browse the repository at this point in the history
  23. Configuration menu
    Copy the full SHA
    bb5bc94 View commit details
    Browse the repository at this point in the history
  24. Configuration menu
    Copy the full SHA
    a9197c4 View commit details
    Browse the repository at this point in the history

Commits on Sep 11, 2020

  1. add documentation

    timwr committed Sep 11, 2020
    Configuration menu
    Copy the full SHA
    93cdba4 View commit details
    Browse the repository at this point in the history
  2. Land #13942, Add module for CVE-2020-9934

    Merge branch 'land-13942' into upstream-master
    bwatters-r7 committed Sep 11, 2020
    Configuration menu
    Copy the full SHA
    f248f20 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    3870073 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    61fd733 View commit details
    Browse the repository at this point in the history