Commit Graph

14042 Commits (3d14d72396779df3d55cddcbf05c1a1634563a74)

Author SHA1 Message Date
Brent Cook 0465a7bc71
Land #9220, Module cache improvements 2018-10-24 16:53:11 -05:00
Brent Cook c7ad4a47eb
Land #10851, add ndkstager to data/exploits 2018-10-23 14:48:43 -07:00
Brent Cook 2c347d51b1
Land #10855, Enable non-session command output for SSH modules 2018-10-23 16:44:03 -05:00
asoto-r7 2a0deefddd
Land #10450, Implementation of CTRL+Z in reverse shell session
Additionally, a check was added to disable this new functionality on
Windows command shell payloads.
2018-10-22 14:19:45 -07:00
Metasploit d4ababdc9b
Bump version of framework to 4.17.20 2018-10-19 12:10:53 -07:00
Brent Cook f88790c2c0
Land #10820, Add libssh authentication bypass scanner/"exploit" 2018-10-19 12:03:28 -07:00
William Vu b9dc8b81aa
Land #10833, Net::SSH::CommandStream fixes 2018-10-18 21:02:13 -07:00
Metasploit 6fe8936e06
Bump version of framework to 4.17.19 2018-10-18 10:06:10 -07:00
Brent Cook ce30fcabaf
Land #10824, add PTY option to Net::SSH::CommandStream 2018-10-17 13:52:11 -07:00
Brendan Coles a4d2bf30c1
Land #10816, Add a `bg` alias for `background` command 2018-10-16 09:59:08 -07:00
Brent Cook 5e27bdec14
Land #10790, don't log peer if it represents > 1 target 2018-10-12 00:23:18 -07:00
Metasploit 82512a1558
Bump version of framework to 4.17.18 2018-10-11 10:06:59 -07:00
Brent Cook db19d8e6c0
Land #10787, Remove unused 'unknown' author mapping in author.rb 2018-10-10 11:06:12 -07:00
Brent Cook 285a183f27
Land #10781, Fix error in rpc_shell_read RPC method. 2018-10-10 07:05:18 -07:00
Brent Cook 4097c620a1
Land #10770, show full path for webcam_stream file 2018-10-09 03:35:09 -07:00
William Vu 7bc018bfcc
Land #10773, session.platform TypeError fix
This also adds an "unknown" platform class.
2018-10-08 12:39:56 -07:00
Brent Cook 342f3b9637
Land #10755, 50, it's a magic number (sorry 2) 2018-10-05 13:10:05 -07:00
William Vu 736a2dfdb7
Land #10747, apktool output on failed injection 2018-10-05 01:24:46 -07:00
Metasploit ad22d961a4
Bump version of framework to 4.17.17 2018-10-04 10:06:57 -07:00
Brent Cook 7142c29de1
Land #10686, ARGS, TIMEOUT, and output to upload_exec module
Merge remote-tracking branch 'upstream/pr/10686' into upstream-master
2018-10-04 02:31:30 -07:00
Brent Cook af9cf4380b
Land #10699, Avoid double-closing meterpreter channels 2018-10-02 11:46:31 -07:00
Brent Cook 3ad5bd429a
Land #10732, add api key for android wlan_geolocate 2018-10-02 11:46:30 -07:00
Jacob Robles 918e04bace
Land #10718, fix typo in route command examples 2018-10-02 11:46:29 -07:00
bwatters-r7 c49402b506
Land #10703, Update payloads to include the new Kiwi release 2018-10-02 13:42:12 -05:00
William Vu c87b6bba0b
Land #10711, help on empty args for reload_lib 2018-09-27 21:27:11 -07:00
William Vu b94958234a
Land #10705, reload_lib -a/--all options 2018-09-27 20:17:00 -07:00
Metasploit f56194516e
Bump version of framework to 4.17.16 2018-09-27 10:03:14 -07:00
Brent Cook 92cd40c8db
Land #10594, Fix hashdump and user enumeration on new macOS versions 2018-09-24 20:20:38 -07:00
Green-m 0c88820fce
Land #10687, add pry command to meterpreter. 2018-09-24 10:48:42 -07:00
William Vu 456f7613cf
Land #10684, stray quote fix for writable? raise 2018-09-24 10:48:41 -07:00
William Vu c3f5d5c168
Land #10685, NameError fix for cmd_shell 2018-09-24 10:48:41 -07:00
bwatters-r7 6157ad76fe
Land #10575, add meterpreter chmod command
Merge branch 'land-10575' into upstream-master
2018-09-24 12:44:42 -05:00
William Vu 058eabbd24
Land #10625, repeat command to repeat commands 2018-09-20 13:27:24 -07:00
Metasploit 8fbbff30db
Bump version of framework to 4.17.15 2018-09-20 10:03:08 -07:00
Adam Cammack 228c08bb4d
Land #10659, Minor code cleanups 2018-09-19 12:58:09 -07:00
William Vu 2f515318e7
Land #10666, compatible_sessions NoMethodError fix 2018-09-19 01:48:19 -07:00
Brendan Coles 9b466d93bf
Land #10665, print error msg when killing an invalid job ID - Fix #10655 2018-09-18 02:35:17 -07:00
h00die 001b576fa4
Land #10653 additional gcc paths for solaris libs 2018-09-17 15:24:56 -07:00
William Vu 1c21ec588a
Land #10645, writable? method for Msf::Post::File 2018-09-15 15:29:16 -07:00
Brendan Coles 057228c60b
Land #10638, Warn when listing inactive sessions without DB connection
Replaces confusing message and stack trace with a warning message,
when the `sessions -d` command is used to list inactive sessions
when no database is connected.
2018-09-14 22:36:35 -07:00
William Vu 3ff9b3b0c9
Land #10389, PTY support for Meterpreter "shell" 2018-09-14 09:18:34 -07:00
Metasploit 41068c6ccb
Bump version of framework to 4.17.14 2018-09-13 14:20:42 -07:00
William Vu dddc634f78
Land #10639, self.prompt initialization fix 2018-09-13 13:59:29 -07:00
William Vu f3e94c6d20
Land #10637, exploit.rb autofilter doc fixes 2018-09-13 12:26:17 -07:00
h00die 2b44f16310
Land #10633 fix for solaris pidof for more versions 2018-09-13 10:12:22 -07:00
Metasploit d3bf71fc35
Bump version of framework to 4.17.13 2018-09-13 10:03:01 -07:00
h00die dbb48fed9f
Land #10634 fix a bug in is_root? on sol/lin 2018-09-13 08:24:13 -07:00
William Vu 0f7b8a2453
Land #10477, console prompt fixes and refactor 2018-09-12 16:06:16 -07:00
William Vu 90c31b96a7
Land #10631, warning message fix for #10619 2018-09-12 15:38:01 -07:00
William Vu 2cde5641ad
Land #10619, mimikatz/kiwi warning per OS version 2018-09-12 15:13:18 -07:00
Brendan Coles dc0ee43117
Land #10621, Update Msf::Post::Solaris::System has_gcc? method
Updated the Msf::Post::Solaris::System has_gcc? method to also check the
default path for gcc on Solaris: /usr/sfw/bin/gcc
2018-09-11 02:46:43 -07:00
William Vu 83c01e3de7
Land #10617, sessions -x fix for when LURI is used 2018-09-11 01:02:31 -07:00
OJ f5b83943ba
Land #10618 - Fix Msf::Post::Solaris::Kernel class name 2018-09-11 00:24:24 -07:00
Brent Cook bd8dea2c21
Land #9897, Fix #8404 ListenerComm Support For Exploit::Remote::TcpServer 2018-09-10 14:27:34 -07:00
Brent Cook 42784dceb1
Land #10593, Refactor SSH mixins and update modules 2018-09-10 13:43:30 -07:00
Metasploit 60578a21c3
Bump version of framework to 4.17.12 2018-09-07 10:16:30 -07:00
Adam Cammack 9e3f4744f7
Land #10602, Fix windows/shell/reverse_ord_tcp doc 2018-09-07 10:08:28 -07:00
Metasploit 3b2d5b0c15
Bump version of framework to 4.17.11 2018-09-06 10:02:54 -07:00
Brent Cook 1c05bb6ef3
Land #10584, fix session upgrade HANDLE_TIMEOUT and upgrading osx shells 2018-09-06 03:54:18 -07:00
Wei Chen 85475507b9
Land #10591, Fix target DisableNops not being passed to payload 2018-09-05 18:58:39 -07:00
Tim W 3ab5b58a6b
Land #10585, fix #10577, fix "Exploit failed: TypeError no implicit conversion of Array into Integer" 2018-09-04 11:56:04 -07:00
Tim W 12ef780bc2
Land #10437, sync some linux local libraries to solaris 2018-09-03 07:49:38 -07:00
Brent Cook 035e790fd5
Land #10567, Bump kiwi version 2018-08-31 13:27:10 -07:00
Metasploit cb1b0b92ef
Bump version of framework to 4.17.10 2018-08-30 10:03:04 -07:00
bwatters-r7 631e8bf110
Land #8983, Add peinjector post module
Merge branch 'land-8983' into upstream-master
2018-08-28 16:55:01 -07:00
William Vu 0564b0be09
Land #10507, GPP creds for db_import 2018-08-28 16:55:01 -07:00
Brent Cook 0294d7eed1
Land #10516, Add brace expansion encoder and update ${IFS} encoder 2018-08-27 08:49:42 -07:00
Brent Cook 4e967d45ab
Land #10520, Only allow setting persistence on payload jobs 2018-08-27 08:49:42 -07:00
William Vu f9c7de978e
Land #10379, tab completion for multiple commands 2018-08-27 08:49:41 -07:00
William Vu 415379e7ee
Land #9364, HP PJL/SNMP CVE-2017-2741 exploit
Finally!
2018-08-23 20:50:23 -07:00
Metasploit 53de99a8b4
Bump version of framework to 4.17.9 2018-08-23 10:07:01 -07:00
William Vu 9696adb09c
Land #10500, stack trace fix for jobs -K 2018-08-21 09:05:07 -07:00
asoto-r7 36642d3071
Land #10449, Implementation of download/upload file in reverse shell 2018-08-21 09:05:07 -07:00
asoto-r7 8ce1329e74
Land #10448, Implementation of CTRL+C to send SIGINT signal 2018-08-21 09:05:06 -07:00
Brent Cook 8c29a3b5da
Land #10471, Import target DefaultOptions into the datastore 2018-08-21 09:05:06 -07:00
Brent Cook fb042469df
Land #10493, update help for show and search commands 2018-08-21 11:02:41 -05:00
Metasploit 83384269c9
Bump version of framework to 4.17.8 2018-08-16 14:19:47 -07:00
Jeffrey Martin ce1fe7fe77
Land #10203, Add command for persistent job handler when msf restart 2018-08-16 13:43:26 -07:00
William Vu 5094040242
Land #10469, bug fixes for shell's prompt_yesno 2018-08-16 13:43:26 -07:00
William Vu bf7c530f7e
Land #10456, known_hosts fix for SSH modules 2018-08-16 13:43:26 -07:00
William Vu e11266f0a0
Land #10464, prompt to use plain module name 2018-08-16 13:43:25 -07:00
Metasploit 902d2bca96
Bump version of framework to 4.17.7 2018-08-16 10:02:42 -07:00
Adam Cammack 09c0947aa7
Land #10459, Fix PMA scanner vs. non-PMA hosts 2018-08-15 12:46:56 -07:00
Erin Bleiweiss aacbc43c1c
Land #10451, Add 'payload' to module search command help documentation 2018-08-15 13:45:50 -05:00
William Vu e2b91bdfc1
Land #10433, pry and irb in developer dispatcher 2018-08-15 11:40:29 -07:00
Tim W 22b1bb03e7
Land #10440, fix apk injection on windows 2018-08-12 10:16:45 -07:00
Metasploit b09fa1caf8
Bump version of framework to 4.17.6 2018-08-09 10:02:53 -07:00
William Vu 1949cade78
Land #10430, history clearing and bug fixes 2018-08-07 15:18:03 -07:00
William Vu 807baacc2c
Land #10424, history deduplication on save 2018-08-07 09:28:00 -07:00
William Vu 6b6191a534
Land #10423, history deduplication on add
Also removes history -u deduplication on print.
2018-08-05 12:31:35 -07:00
Rob Fuller a67938aab6
Land #10421, Let `use` have help too! 2018-08-04 13:54:56 -07:00
Brent Cook b95df100bb
Land #10419, Party like it's 2016 2018-08-04 05:27:09 -07:00
Metasploit acf88f50b6
Bump version of framework to 4.17.5 2018-08-02 10:05:07 -07:00
Adam Cammack f49f37f76d
Land #10406, Fix notes service, port, protocol 2018-08-01 12:42:35 -07:00
Brent Cook 39e13258c7
Land #10330, Add SMBv2 support to bind_named_pipe payloads 2018-08-01 11:01:36 -07:00
Metasploit 33dc83804d
Bump version of framework to 4.17.4 2018-07-26 10:07:53 -07:00
Wei Chen 4ec22c0ceb
Land #10376, Handle connection errors and fail_with in check 2018-07-26 09:28:58 -07:00
Brent Cook 8e5639a081
Land #10374, Net::SSH::CommandStream fixes 2018-07-25 16:23:47 -07:00
William Vu c3469b0c80
Land #10303, HttpClient Rex::ConnectionError fix 2018-07-25 16:04:21 -07:00
Wei Chen 3fbd4f8f2f
Land #10368, PhpMyAdmin Login Scanner Module 2018-07-24 21:27:32 -07:00
Jeffrey Martin 35edb48c48
Land #10367, Pass a framework instance to external module shims 2018-07-24 15:34:17 -05:00
William Vu 7713710591
Land #10345, OptionParser for console grep 2018-07-23 15:20:09 -07:00
asoto-r7 28bb518dbd
Land #10349, deconflict the method names in mix-ins 2018-07-23 11:40:49 -07:00
Metasploit fc4a5b9913
Bump version of framework to 4.17.3 2018-07-19 10:03:34 -07:00
Brent Cook 64201ad782
Land #10282, Add support for running external modules outside of msfconsole 2018-07-18 15:40:21 -07:00
Adam Cammack 9a72d0cbe7
Land #10334, Add grep -C 2018-07-18 12:48:35 -07:00
William Vu 0735113db2
Land #10332, fixes for SOUNDTRACK and LOGO refs 2018-07-18 11:05:32 -07:00
William Vu c362d668ab
Land #10283, SOUNDTRACK and LOGO refs
:'(
2018-07-18 11:05:32 -07:00
Brent Cook 184670f62c
Land #10329, Add command dispatcher for developer commands 2018-07-18 12:36:48 -05:00
William Vu fe13b00d84
Land #10309, PID check for self-migrate 2018-07-17 12:39:42 -07:00
Brent Cook 861097d246
Land #10267, defer bind payload connections until exploit has run 2018-07-13 15:38:39 -07:00
Brent Cook 0b38f6486d
Land #10304, add debug log viewer 2018-07-13 14:41:59 -07:00
Metasploit 58a88194eb
Bump version of framework to 4.17.2 2018-07-12 10:03:23 -07:00
Adam Cammack b44cccc368
Land #10287, Add advanced option to skip WP checks 2018-07-12 11:24:04 -05:00
Shelby Pace 5827fb5174
Land #10284, Inform the user about lack of CVE 2018-07-12 11:24:04 -05:00
asoto-r7 e4aa20ac47
Land #9356. Remove ring buffers from command dispatcher. 2018-07-06 11:14:14 -07:00
Brent Cook 2052584a31
Land #10241, don't call print_error from rex context, use elog instead 2018-07-05 15:30:08 -07:00
Metasploit 69830c0ff5
Bump version of framework to 4.17.1 2018-07-05 10:04:08 -07:00
Brent Cook b894f9b6e7
Land #10251, be more explicit what a bind handler is doing 2018-07-05 08:44:28 -07:00
Metasploit 59e0d7b8d2
Bump version of framework to 4.17.0 2018-07-03 20:31:47 -07:00
Brent Cook 4fedee604d
Land #10250, Increase read depth for SMB pipes, fix Windows support 2018-07-03 15:06:34 -07:00
Brent Cook c5dce5edd7
Land #10217, keep bind_named_pipe with SMBv1 2018-07-02 12:56:00 -07:00
Brent Cook 709630e35c
Land #10185, add SMBv1/2 support in psexec 2018-06-29 15:51:50 -07:00
William Vu fd7ea515aa
Land #10218, MS17-010 Windows Embedded Standard 7 2018-06-28 14:14:42 -07:00
Metasploit 9486aadf64
Bump version of framework to 4.16.65 2018-06-28 10:04:27 -07:00
Jeffrey Martin 75d305eef0
Land #10221, Rescue RubySMB Error 2018-06-28 09:05:05 -07:00
Brent Cook 33a909939d
Land #10215, add support for payload estimation for IPv6-specific modules 2018-06-27 14:49:00 -07:00
William Vu 13f981f03f
Land #9998, customizable golden ticket duration 2018-06-27 13:53:30 -07:00
Brent Cook 21fc8108ac
Land #10155, Improve #sec_to_s in Rex::ExtTime 2018-06-21 14:47:02 -07:00
Metasploit 7b7f244164
Bump version of framework to 4.16.64 2018-06-21 13:46:51 -07:00
William Vu cddb0f2b4d
Land #10195, ms17_010_eternalblue_win8 bug fixes 2018-06-21 13:38:14 -07:00
Metasploit 07f2e664e7
Bump version of framework to 4.16.63 2018-06-21 10:06:28 -07:00
Brent Cook e6ca28100c
Land #10151, add robustness when stdapi is unavailable 2018-06-20 21:56:45 -07:00
Brent Cook 0bcbcab3d8
Land #10184, Add sleepya's ETERNALBLUE exploit for Win8+ 2018-06-19 15:44:55 -07:00
Shelby Pace 5998896b48
Land #10150, Fix typos and spacing 2018-06-18 09:17:27 -07:00
Aaron Soto 8cd65324c6
Land #10124, Add tab completion of values in `set` command 2018-06-14 14:18:34 -07:00
Aaron Soto 3a6401a420
Land #10141, background meta command in cmd shells 2018-06-14 13:35:24 -07:00
Metasploit 5323b40f60
Bump version of framework to 4.16.62 2018-06-14 10:07:09 -07:00
Tim W 972e89b2d7
Land #10162, tab completion for audio output 2018-06-13 23:58:24 -07:00
William Vu 7f372d178d
Land #10059, CVE-2018-1111 exploit 2018-06-12 13:04:36 -07:00
Tim W 08a6fd3b3b
Land #10066, implement AudioOutput api from channel 2018-06-11 14:41:44 -05:00
Metasploit 27ab8fdd01
Bump version of framework to 4.16.61 2018-06-07 10:04:41 -07:00
William Vu 40489fd1f1
Land #10029, msfvenom quality of life improvements 2018-06-04 17:26:26 -05:00
William Vu 30f2fe495b
Land #10095, tilde expansion for resource command 2018-06-01 10:29:02 -07:00
Aaron Soto 2a9399251c
Land #10102, SOCKS5 updates for BIND, parsing specs, refactoring 2018-06-01 07:03:23 -07:00
Adam Cammack d2523e03df
Land #9976, Store non-nil linux enum_network loot 2018-06-01 07:03:22 -07:00
Brent Cook 87c6befb45
Land #10094, Improve network interface support for LHOST 2018-06-01 07:03:22 -07:00
Brent Cook 122af6b143
Land #10083, Add Msf::Post::OSX::Priv mixin 2018-06-01 07:03:22 -07:00
Spencer McIntyre 9e9e129716
Land #10105, update the search command help menu 2018-06-01 07:03:22 -07:00
Brendan Coles b4e305862a
Land #10099, fix nil error in HttpTrace when HTTP response is nil
Fix #10098
2018-06-01 07:03:21 -07:00