Land #2972, enum_system find/save logs/S[UG]ID
commit
c67c0dde8f
|
@ -27,6 +27,7 @@ class Metasploit3 < Msf::Post
|
||||||
'Stephen Haywood <averagesecurityguy[at]gmail.com>', # get_cron and original enum_linux
|
'Stephen Haywood <averagesecurityguy[at]gmail.com>', # get_cron and original enum_linux
|
||||||
'sinn3r', # Testing and modification of original enum_linux
|
'sinn3r', # Testing and modification of original enum_linux
|
||||||
'ohdae <bindshell[at]live.com>', # Combined separate mods, modifications and testing
|
'ohdae <bindshell[at]live.com>', # Combined separate mods, modifications and testing
|
||||||
|
'Roberto Espreto <robertoespreto[at]gmail.com>', # log files and setuid/setgid
|
||||||
],
|
],
|
||||||
'Platform' => [ 'linux' ],
|
'Platform' => [ 'linux' ],
|
||||||
'SessionTypes' => [ 'shell' ]
|
'SessionTypes' => [ 'shell' ]
|
||||||
|
@ -59,6 +60,8 @@ class Metasploit3 < Msf::Post
|
||||||
crons = get_crons(users, user)
|
crons = get_crons(users, user)
|
||||||
diskspace = execute("/bin/df -ahT")
|
diskspace = execute("/bin/df -ahT")
|
||||||
disks = (mount +"\n\/"+ diskspace)
|
disks = (mount +"\n\/"+ diskspace)
|
||||||
|
logfiles = execute("find /var/log -type f -perm -4 2> /dev/null")
|
||||||
|
uidgid = execute("find / -xdev -type f -perm +6000 -perm -1 2> /dev/null")
|
||||||
|
|
||||||
save("Linux version", distro)
|
save("Linux version", distro)
|
||||||
save("User accounts", users)
|
save("User accounts", users)
|
||||||
|
@ -66,6 +69,8 @@ class Metasploit3 < Msf::Post
|
||||||
save("Running Services", installed_svc)
|
save("Running Services", installed_svc)
|
||||||
save("Cron jobs", crons)
|
save("Cron jobs", crons)
|
||||||
save("Disk info", disks)
|
save("Disk info", disks)
|
||||||
|
save("Logfiles", logfiles)
|
||||||
|
save("Setuid/setgid files", uidgid)
|
||||||
|
|
||||||
end
|
end
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue