Commit Graph

2803 Commits (3e81678f937b7313071ecf4e51d6b1d4a9326c18)

Author SHA1 Message Date
Mario Ceballos 525a13acb8 added exploit module mercury_cram_md5.rb.
git-svn-id: file:///home/svn/framework3/trunk@5192 4d416f70-5f16-0410-b530-b9f4589650da
2007-11-07 18:42:19 +00:00
Mario Ceballos a985158a88 added exploit module sonicwall_addrouteentry.rb
git-svn-id: file:///home/svn/framework3/trunk@5191 4d416f70-5f16-0410-b530-b9f4589650da
2007-11-01 23:15:34 +00:00
HD Moore 3b9f9240b5 Bug noted by gh0st
git-svn-id: file:///home/svn/framework3/trunk@5190 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-31 16:03:39 +00:00
Mario Ceballos e2835eec60 added exploit module gom_openurl.rb
git-svn-id: file:///home/svn/framework3/trunk@5189 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-30 21:48:56 +00:00
Patrick Webster d59235fe22 Fixed typo
git-svn-id: file:///home/svn/framework3/trunk@5188 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-30 13:32:59 +00:00
Patrick Webster 0ebb7c95bd Updated module by Matteo Cantoni
git-svn-id: file:///home/svn/framework3/trunk@5187 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-30 13:22:46 +00:00
HD Moore c6b9084a50 Remove the fork() prepend, since its now done properly in the shellcode
git-svn-id: file:///home/svn/framework3/trunk@5186 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-28 17:25:51 +00:00
Mario Ceballos 96c56ab760 added exploit module ibm_tsm_cad.rb
git-svn-id: file:///home/svn/framework3/trunk@5185 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-27 23:48:34 +00:00
HD Moore af8cce2c74 Thanks for noticing this diaul!
git-svn-id: file:///home/svn/framework3/trunk@5184 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-25 15:50:31 +00:00
HD Moore 599aaff600 Correct the module title
git-svn-id: file:///home/svn/framework3/trunk@5183 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-24 16:07:08 +00:00
HD Moore a7626884f6 New module from Trirat Puttaraksa
git-svn-id: file:///home/svn/framework3/trunk@5182 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-24 13:56:18 +00:00
HD Moore 8a88476c78 Support for embedded autorun commands
git-svn-id: file:///home/svn/framework3/trunk@5181 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-23 23:22:53 +00:00
HD Moore 0f5d0164a3 Adds auto-execute support (hex edit the binary and change the # * 8192 to a list of commands, separated by newlines, ending with a NULL byte, keeping the same buffer size).
git-svn-id: file:///home/svn/framework3/trunk@5180 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-23 23:22:27 +00:00
HD Moore b64f52a19d Adds the script command
git-svn-id: file:///home/svn/framework3/trunk@5179 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-23 22:23:57 +00:00
HD Moore 13426097eb Adds the 'script' command
git-svn-id: file:///home/svn/framework3/trunk@5178 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-23 22:23:34 +00:00
Matt Miller 55ddf3865a encoder changes for context key support from druid
git-svn-id: file:///home/svn/framework3/trunk@5177 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-23 20:07:55 +00:00
HD Moore 33ec424e2c Enable self-destruction by default.
git-svn-id: file:///home/svn/framework3/trunk@5176 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-22 05:29:49 +00:00
HD Moore 39401d2638 Remove a typo
git-svn-id: file:///home/svn/framework3/trunk@5175 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-21 03:16:18 +00:00
HD Moore f38ed1f233 Woops, forgot to add cmd_net.c
git-svn-id: file:///home/svn/framework3/trunk@5174 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-21 03:12:24 +00:00
HD Moore d77158aaef Added the download command
git-svn-id: file:///home/svn/framework3/trunk@5173 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-21 03:11:30 +00:00
HD Moore ea3cebc3ed Added the download command
git-svn-id: file:///home/svn/framework3/trunk@5172 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-21 02:54:07 +00:00
HD Moore 4817525afe Updated
git-svn-id: file:///home/svn/framework3/trunk@5171 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 21:22:17 +00:00
HD Moore adbd594a5b The cp command now handles destination directory names and preserves permissions
git-svn-id: file:///home/svn/framework3/trunk@5170 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 20:40:41 +00:00
HD Moore 3ef7814e8e Adds the cp command
git-svn-id: file:///home/svn/framework3/trunk@5169 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 20:12:37 +00:00
HD Moore 492d286157 Adds the cp command
git-svn-id: file:///home/svn/framework3/trunk@5168 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 20:12:19 +00:00
HD Moore ca55f84b70 New build adds exec/system that will work on the iphone
git-svn-id: file:///home/svn/framework3/trunk@5167 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 19:57:22 +00:00
HD Moore 39ed1257d1 Replaces system/exec to use execve/waitpid
git-svn-id: file:///home/svn/framework3/trunk@5166 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 19:56:47 +00:00
HD Moore a3e365c2b5 Adding ipwn source/binary
git-svn-id: file:///home/svn/framework3/trunk@5165 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 18:27:09 +00:00
HD Moore 053165eb72 git-svn-id: file:///home/svn/framework3/trunk@5164 4d416f70-5f16-0410-b530-b9f4589650da 2007-10-20 17:32:46 +00:00
HD Moore 3a5a25c133 A new iphone/itouch stages which remounts the drive rwx, writes an exe, and executes it with stdio mapped to the socket
git-svn-id: file:///home/svn/framework3/trunk@5163 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 03:51:15 +00:00
HD Moore a927464cd8 8Mb > 32k :-)
git-svn-id: file:///home/svn/framework3/trunk@5162 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-20 02:08:42 +00:00
HD Moore 077bccbbe2 Patch from dustin
git-svn-id: file:///home/svn/framework3/trunk@5161 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-19 14:26:56 +00:00
HD Moore ad050b492d Adding the staged versions of the OS X payloads. One step closer to download + execute
git-svn-id: file:///home/svn/framework3/trunk@5160 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-19 07:53:23 +00:00
Matt Miller ddc3b15269 fix from bad commit
git-svn-id: file:///home/svn/framework3/trunk@5159 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-19 06:48:26 +00:00
HD Moore 83fdda022e Correct the euid to 0
git-svn-id: file:///home/svn/framework3/trunk@5158 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-19 06:39:10 +00:00
HD Moore 598568e079 New update from dustin
git-svn-id: file:///home/svn/framework3/trunk@5157 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-18 20:42:00 +00:00
HD Moore 53f7b946ac Update to the context dumper from dustin
git-svn-id: file:///home/svn/framework3/trunk@5156 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-18 20:26:24 +00:00
HD Moore 16a81d8c63 Switch to big endian byte order for context-map files
git-svn-id: file:///home/svn/framework3/trunk@5155 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-18 16:55:55 +00:00
HD Moore ec94968d82 Add support for context-map files to msfpescan (http://sourceforge.net/projects/smem-map/)
git-svn-id: file:///home/svn/framework3/trunk@5154 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-18 16:55:23 +00:00
Matt Miller d66b6fbc56 test/aggressive win32 server
git-svn-id: file:///home/svn/framework3/trunk@5153 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-17 03:16:04 +00:00
HD Moore cf58bec41b Typo
git-svn-id: file:///home/svn/framework3/trunk@5152 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-16 14:11:03 +00:00
HD Moore 3c1dab7715 Added a MobileMail version of the tiff exploit, adjusted stack size, made a new copy of the safari exploit
git-svn-id: file:///home/svn/framework3/trunk@5151 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-16 06:32:55 +00:00
HD Moore c70217b982 Cut down the payload space to support MobileMail
git-svn-id: file:///home/svn/framework3/trunk@5150 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-16 06:15:10 +00:00
HD Moore d3c96f0b45 hehe-ified.
git-svn-id: file:///home/svn/framework3/trunk@5149 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-16 05:40:36 +00:00
HD Moore 49a54dfb6f Total rewrite using a supah-sweet new return method.
git-svn-id: file:///home/svn/framework3/trunk@5148 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-16 05:29:13 +00:00
HD Moore 3050615029 Automatic targetting
git-svn-id: file:///home/svn/framework3/trunk@5147 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-15 21:00:10 +00:00
HD Moore ad4d4db792 Updated to support 1.1.1 correctly :-) Thanks again KF!
git-svn-id: file:///home/svn/framework3/trunk@5146 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-15 19:00:50 +00:00
HD Moore 8368e383de Add 1.1.1 target (thanks KF!)
git-svn-id: file:///home/svn/framework3/trunk@5145 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-15 03:15:21 +00:00
HD Moore 41088c3ea4 First version of the iPhone libtiff exploit
git-svn-id: file:///home/svn/framework3/trunk@5144 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-14 22:15:41 +00:00
HD Moore 21d971139b New HTTP NTLM code from Kurt Grutzmacher <grutz@jingojango.net>
git-svn-id: file:///home/svn/framework3/trunk@5143 4d416f70-5f16-0410-b530-b9f4589650da
2007-10-12 01:24:57 +00:00