Commit Graph

38134 Commits (2d5cf6cfe4fa19cde4ef7af84032bc1629c9bad7)

Author SHA1 Message Date
Brent Cook 04caa9affd
Land #6710, Add Powershell meterpreter bindings 2016-04-01 21:32:26 -05:00
Brent Cook 627615d47b update to payloads 1.1.6 2016-04-01 21:30:34 -05:00
Brent Cook 3d995546d9 check for true before empty string 2016-04-01 21:30:11 -05:00
Brent Cook 39bd501b73
Land #6735, bump rvm ruby version to 2.1.9 2016-04-01 20:05:44 -05:00
David Maloney 64b94dfe3b
reimplement HD's session interrupt handler
reimplement HD's work on a session interrupt handler
so that if an exploit fails the handler does not continue
waiting for a session that will never come

MS-385
2016-04-01 14:43:16 -05:00
William Vu 2e1e1ca839
Land #6742, psexec_psh restoration 2016-04-01 13:59:09 -05:00
William Vu d23a1c4551 Bump deprecation date 2016-04-01 13:57:58 -05:00
William Vu 60bee16e8c Restore psexec_psh
See @jabra-'s comments on #6222.
2016-04-01 13:56:22 -05:00
William Vu f3627b9b42
Land #6741, juniper_backdoor fixes 2016-04-01 13:55:21 -05:00
William Vu 41b802a8a2 Clean up module 2016-04-01 13:54:27 -05:00
Christian Mehlmauer 384f079fcd
revert travis.yml for now 2016-04-01 16:07:07 +02:00
Vex Woo 962acd0603 Merge pull request #13 from wchen-r7/pr6455
Add rspec for lib/net/dns/names/names.rb
2016-04-01 11:22:23 +08:00
Bigendian Smalls 6a4d7e3b58
Revshell cmd JCL payload for z/OS
Added a JCL-based reverse shell.  Uses the same source code as the
shellcode version does.  Source code is in
external/source/shellcode/mainframe/shell_reverse_tcp.s
2016-03-31 20:42:42 -05:00
wchen-r7 210cc8501c
Land #6507, Add PCMAN FTP Server Buffer Overflow (PUT command) 2016-03-31 19:36:33 -05:00
wchen-r7 ae0aecdd03 Change class name for exploits/windows/ftp/pcman_put.rb 2016-03-31 19:36:02 -05:00
wchen-r7 de0e02549c
Bring #6507 up to date with upstream-master 2016-03-31 19:30:45 -05:00
wchen-r7 d5bf82f1cc
Land #6488, Add Easy File Sharing FTP Server 7.2 SEH BoF 2016-03-31 19:24:34 -05:00
wchen-r7 f3336c7003 Update windows/http/easyfilesharing_seh 2016-03-31 19:24:06 -05:00
wchen-r7 dd83757966
Bring #6488 up to date with upstream-master 2016-03-31 19:11:11 -05:00
OJ 2a9f813bcd Don't interpreter blank string as error 2016-04-01 09:53:25 +10:00
OJ 9f299f4f0c
Merge branch 'upstream/master' into powershell-meterpreter-bindings 2016-04-01 09:32:32 +10:00
wchen-r7 75ebd08153
Land #6731, Add CVE-2015-7755 juniper backdoor 2016-03-31 17:30:38 -05:00
wchen-r7 df3427416e
Land #6409, Add auxiliary/scanner/redis/redis_login
This also changes:

* The Msf::Auxiliary::Redis for the naming & PASSWORD datastore option
* auxiliary/scanner/redis/redis_server module name
* Removes auxiliary/scanner/misc/redis_server, because it was
  deprecated.
2016-03-31 17:20:30 -05:00
wchen-r7 618f379488 Update auxiliary/scanner/redis/redis_server and mixin 2016-03-31 17:14:49 -05:00
wchen-r7 4d76b0e6a5 Rm auxiliary/scanner/misc/redis_server
Please use auxiliary/scanner/redis/redis_server or
auxiliary/scanner/redis/redis_login instead
2016-03-31 17:13:08 -05:00
wchen-r7 2e7d07ff53 Fix PASSWORD datastore option 2016-03-31 17:12:00 -05:00
wchen-r7 545cb11736
Bring #6409 up to date with upstream-master 2016-03-31 17:00:56 -05:00
wchen-r7 5fdea91e93 Change naming 2016-03-31 17:00:29 -05:00
wchen-r7 f33e994050 Delete anything related to configuring/saving username 2016-03-31 16:56:54 -05:00
Christian Mehlmauer 9fc7921a31
bump ruby version 2016-03-31 23:40:15 +02:00
wchen-r7 46d4b533f3 Add rspec for lib/net/dns/names/names.rb 2016-03-31 11:29:30 -05:00
Brent Cook 5873803e04
Land #6732, Add Android meterpreter-as-service, fix loading python extension modules 2016-03-30 23:15:35 -05:00
OJ 6c602dae90 Bump payloads to 1.1.5 2016-03-31 14:03:59 +10:00
Brian Patterson 8f0d664a38
Modify the open_vas importer to support both results.xml and reports.xml open_vas exports and modify the nessus importer to import what it can when it can't find a properly formatted port number 2016-03-30 17:44:26 -05:00
wchen-r7 f45a9f8b32
Land #6545, Update auxiliary/scanner/scada/modbusclient 2016-03-30 17:12:16 -05:00
wchen-r7 101775a5ba
Bring #6545 up to date with upstream-master 2016-03-30 16:07:24 -05:00
thao doan 82cec68606 Land #6427, removes the deprecated psexec_psh module; please use exploit/windows/smb/psexec instead 2016-03-30 12:58:43 -07:00
William Vu dee9adbc50 Remove deprecated psexec_psh module 2016-03-30 14:35:47 -05:00
thao doan 9f361759f6 Land #6725, allows msu_finder to the use patch_finder gem 2016-03-30 11:50:40 -07:00
wchen-r7 a2a522be07
Land #6716, Add a rescue to catch method missing for stage_payload 2016-03-30 13:08:52 -05:00
wchen-r7 280aeb0b59
Land #6727, Show handler URI so we know which job's responding 2016-03-30 12:22:18 -05:00
wchen-r7 4074634a13
Land #6713, Add post exploit module for HeidiSQL's stored passwords 2016-03-30 12:10:30 -05:00
wchen-r7 0c6b4d81c8 More proper exception handling 2016-03-30 12:09:40 -05:00
wchen-r7 aaa1515ba0 Print rhost:rport 2016-03-30 11:56:09 -05:00
James Lee ead6e6b6b6
Use a print_prefix instead 2016-03-30 11:50:45 -05:00
James Lee 0a239742f5
Show handler URI so we know which job's responding 2016-03-30 11:35:04 -05:00
wchen-r7 c7e63c3452
Land #6694, Add Apache Jetspeed exploit
CVE-2016-0710
CVE-2016-0709
2016-03-30 11:17:21 -05:00
wchen-r7 74f25f04bd Make sure to always print the target IP:Port 2016-03-30 11:16:41 -05:00
Spencer McIntyre 7d6033fcb9
Land #6023, Enable/Disable WDigest port module 2016-03-30 12:13:30 -04:00
wchen-r7 797acd625d
Land #6714, Kill defanged mode 2016-03-30 10:54:56 -05:00