Tom Sellers
|
d5e39ae284
|
Adjustments for new LoginScanner code
|
2014-08-26 18:13:00 -05:00 |
HD Moore
|
ba1f7c3bf6
|
Land #3687, reworks the nat-pmp portscanner
|
2014-08-26 14:34:46 -05:00 |
HD Moore
|
ed9bb3e52c
|
Fix a small typo
|
2014-08-26 14:34:10 -05:00 |
Jon Hart
|
775ebce56b
|
Correct natpmp_portscan's print_* usage to include peer
|
2014-08-26 12:27:12 -07:00 |
HD Moore
|
3b8bbdf10c
|
Merge master back in before landing #3545
|
2014-08-26 14:07:58 -05:00 |
HD Moore
|
4e19d9ade1
|
Land #3545, fix up sip scanners, msftidy, db services cmd
|
2014-08-26 14:07:21 -05:00 |
Jon Hart
|
5826d7b164
|
vprint_status when no external address obtained, print_ is too noisy
|
2014-08-26 12:05:40 -07:00 |
Jon Hart
|
e75e213b52
|
Clarify SIP mixin method name, store header values as string, etc
|
2014-08-26 11:40:49 -07:00 |
Jon Hart
|
246f021437
|
Update natpmp_external_address to use Msf::Auxiliary::UDPScanner
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
5c57f9b4eb
|
Don't overload RPORT/LPORT for mapping external -> internal ports
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
162508f532
|
Update NAT-PMP modules to use new/updated mixins
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
816404bb88
|
Move common NAT-PMP functionality into a central place
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
ca11eae3a9
|
Show a useful failure message when the external address probe fails
|
2014-08-26 10:49:52 -07:00 |
William Vu
|
9f6a40dfd6
|
Fix bad pack in mswin_tiff_overflow
Reported by @egyjuzer in #3706.
|
2014-08-26 11:14:44 -05:00 |
Jon Hart
|
bb00c97f46
|
Add a CERT reference
|
2014-08-26 08:29:28 -07:00 |
Jon Hart
|
40fe2fd3a9
|
Remove DRDoS references, as this just proves amplification
|
2014-08-26 08:23:50 -07:00 |
Jon Hart
|
10f52d8765
|
Use MX of 1 to speed up responses from endpoints that respect it
|
2014-08-26 08:00:30 -07:00 |
Jon Hart
|
333c3a90ae
|
Space between SSDP headers and values, which is sometimes required
|
2014-08-26 07:57:59 -07:00 |
Jon Hart
|
337cd02dd7
|
Change Auxiliary::DRDoS' prove_drdos to prove_amplification
|
2014-08-26 07:48:44 -07:00 |
Jon Hart
|
04fbd07a16
|
vprint_error in the unlikely event we get an unexpected response
|
2014-08-26 07:30:14 -07:00 |
Jon Hart
|
79b05db409
|
Correct minor style issues
|
2014-08-26 07:26:30 -07:00 |
xistence
|
63b75a0093
|
SSDP Amplification module changes
|
2014-08-26 16:03:32 +07:00 |
xistence
|
a90d142140
|
Add UPnP SSDP Amplication Scanner
|
2014-08-26 12:53:14 +07:00 |
Jon Hart
|
6a522cc105
|
Remove unused BATCHSIZE from SIP options_tcp, duplicate from options
|
2014-08-25 13:12:29 -07:00 |
Jon Hart
|
bfa89bb3a5
|
Enforce binary encoding on non-modules, no encoding on modules
|
2014-08-25 13:12:29 -07:00 |
Jon Hart
|
6185721a61
|
Address @hmoore-r7's feedback regarding binary encoding
|
2014-08-25 13:11:22 -07:00 |
Jon Hart
|
9955cb5b27
|
Enforce proper protocol case where necessary
|
2014-08-25 13:11:22 -07:00 |
Jon Hart
|
637f86f37d
|
Gut SIP UDP stuff, use Msf::Auxiliary::UDPScanner
|
2014-08-25 13:11:21 -07:00 |
Jon Hart
|
c2e70446ed
|
Move SIP module stuff to Msf::Exploit::Remote::SIP
|
2014-08-25 13:11:21 -07:00 |
Jon Hart
|
02e41c27e7
|
Split SIP response parsing out on its own, add unit tests.
Passes rspec but fails in framework. WIP.
|
2014-08-25 13:11:20 -07:00 |
Jon Hart
|
d4ea3e9f29
|
Pass protocol down to parse_reply for report_* purposes
|
2014-08-25 13:09:39 -07:00 |
Jon Hart
|
a2e2e37a69
|
Fix SIP options scanning
|
2014-08-25 13:09:39 -07:00 |
Tod Beardsley
|
6d9833e32b
|
Minor pre-release updates with descriptions
|
2014-08-25 13:34:45 -05:00 |
Tod Beardsley
|
03a1f4455d
|
No need to escape single quotes in %q{} strigns
|
2014-08-25 13:03:33 -05:00 |
Tod Beardsley
|
2f87c880df
|
Add link to blog post for NTP modules
|
2014-08-25 12:58:10 -05:00 |
William Vu
|
1ee83ff57e
|
Land #3696, pile of NTP DRDoS 0days
Dr. DoS in da house?
|
2014-08-25 11:47:28 -05:00 |
William Vu
|
7a76efa7f7
|
Add reference and disclosure date
|
2014-08-25 11:46:47 -05:00 |
OJ
|
a39f7b94ec
|
Land #3684 - IP Board Login Scanner
|
2014-08-25 11:54:42 +10:00 |
Christopher Truncer
|
302e4025ba
|
Removed unnecessary function
|
2014-08-24 20:45:28 -04:00 |
Christopher Truncer
|
2b59063d6c
|
Updated based on feedback
|
2014-08-24 19:53:29 -04:00 |
jvazquez-r7
|
c20b4dc0ff
|
Land #3645, @jlee-r7's fix for mremoge credentials gather module
|
2014-08-24 15:53:29 -05:00 |
Christopher Truncer
|
84f4fa5c76
|
Updated module based on feedback
|
2014-08-22 21:16:53 -04:00 |
jvazquez-r7
|
0737d0dbd5
|
Refactor auxiliary module
|
2014-08-22 17:05:45 -05:00 |
jvazquez-r7
|
0031913b34
|
Fix nil accesses
|
2014-08-22 16:19:11 -05:00 |
jvazquez-r7
|
9ef09a7725
|
Pass msftidy
|
2014-08-22 13:24:59 -05:00 |
jvazquez-r7
|
38e6576990
|
Update
|
2014-08-22 13:22:57 -05:00 |
jvazquez-r7
|
e93fbbd904
|
Land #3685, @pedrib's exploit for CVE-2014-3996
|
2014-08-22 11:45:41 -05:00 |
jvazquez-r7
|
cf147254ad
|
Use snake_case in the filename
|
2014-08-22 11:44:35 -05:00 |
jvazquez-r7
|
823649dfa9
|
Clean exploit, just a little
|
2014-08-22 11:43:58 -05:00 |
jvazquez-r7
|
9815b1638d
|
Refactor pick_target
|
2014-08-22 11:31:06 -05:00 |