David Rude
|
c5fe6ed503
|
Reset the target to allow for multiple client connections
git-svn-id: file:///home/svn/framework3/trunk@13669 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-30 22:29:14 +00:00 |
David Rude
|
70dffd6afb
|
Adds Citrix Gateway ActiveX Stack Based Buffer Overflow module
git-svn-id: file:///home/svn/framework3/trunk@13666 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-30 22:22:32 +00:00 |
David Rude
|
b331073851
|
cleaned up some column width issues, added on_new_session clean up code to remove files
git-svn-id: file:///home/svn/framework3/trunk@13599 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-20 17:47:03 +00:00 |
Wei Chen
|
6723c7fb3e
|
Minor metadata format fix
git-svn-id: file:///home/svn/framework3/trunk@13593 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-20 00:11:22 +00:00 |
Wei Chen
|
8fbd81a0f0
|
Add HP Easy Printer xmlsimpleaccessor exploit
git-svn-id: file:///home/svn/framework3/trunk@13592 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-19 23:49:45 +00:00 |
Wei Chen
|
fe53151324
|
fix tabs
git-svn-id: file:///home/svn/framework3/trunk@13590 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-19 16:58:50 +00:00 |
Wei Chen
|
056adf7063
|
Add Win 7 target
git-svn-id: file:///home/svn/framework3/trunk@13589 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-19 16:57:19 +00:00 |
Wei Chen
|
6c58dad979
|
ugh, why the extra spaces
git-svn-id: file:///home/svn/framework3/trunk@13566 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-15 15:34:49 +00:00 |
Wei Chen
|
eaa5cf6b5d
|
Use heaplib on IE 8, allow obfuscation as an option
git-svn-id: file:///home/svn/framework3/trunk@13565 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-15 15:32:17 +00:00 |
Wei Chen
|
55d60a1af2
|
Allow JavaScript obfuscation as an option
git-svn-id: file:///home/svn/framework3/trunk@13556 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-13 02:28:49 +00:00 |
Wei Chen
|
c29a4d5ea3
|
Specify UUID offset for the custom .Net binary
git-svn-id: file:///home/svn/framework3/trunk@13555 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-13 02:15:05 +00:00 |
Wei Chen
|
f8bf910fbb
|
missing var
git-svn-id: file:///home/svn/framework3/trunk@13554 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-13 02:05:08 +00:00 |
Wei Chen
|
8bf7a9990b
|
Improve javascript obfuscation, and allow it as an option
git-svn-id: file:///home/svn/framework3/trunk@13553 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-12 23:03:11 +00:00 |
Wei Chen
|
20f4280d9f
|
Exploit is much more reliable than before, it gets a promotion
git-svn-id: file:///home/svn/framework3/trunk@13549 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-12 19:17:23 +00:00 |
Wei Chen
|
bfc59e4c62
|
Add MS10-026 exploit
git-svn-id: file:///home/svn/framework3/trunk@13547 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-12 19:04:25 +00:00 |
Wei Chen
|
3b04e7bd9e
|
Add routine to check target before exploiting it
git-svn-id: file:///home/svn/framework3/trunk@13535 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 23:05:45 +00:00 |
Wei Chen
|
0d9908435a
|
Allow JavaScript obfuscation as an option
git-svn-id: file:///home/svn/framework3/trunk@13533 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 22:18:25 +00:00 |
Wei Chen
|
456aeeb90b
|
Allow JavaScript obfuscation as an option
git-svn-id: file:///home/svn/framework3/trunk@13530 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 18:47:21 +00:00 |
Wei Chen
|
4ac431948a
|
Allow JavaScript obfuscation as an option
git-svn-id: file:///home/svn/framework3/trunk@13524 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 15:50:43 +00:00 |
Wei Chen
|
a1526e86b8
|
Use heaplib to spray, and use obfuscation as an option
git-svn-id: file:///home/svn/framework3/trunk@13523 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 15:25:14 +00:00 |
Steve Tornio
|
a6a444930e
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@13522 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 11:17:30 +00:00 |
Wei Chen
|
6a89cf5859
|
Add TeeChart Professional ActiveX exploit
git-svn-id: file:///home/svn/framework3/trunk@13520 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-11 08:41:30 +00:00 |
Wei Chen
|
58198f37ba
|
Fix reference link
git-svn-id: file:///home/svn/framework3/trunk@13513 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-10 18:58:20 +00:00 |
Wei Chen
|
8dc4228ee0
|
Fix very minor typo
git-svn-id: file:///home/svn/framework3/trunk@13508 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-10 17:05:49 +00:00 |
Wei Chen
|
3b1769d621
|
Add Mozilla Firefox 3.6.16 mChannel Use After Free exploit by Rh0
git-svn-id: file:///home/svn/framework3/trunk@13507 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-10 05:58:02 +00:00 |
Wei Chen
|
6bf90f884e
|
Fix debug mode and some extra tabs in JS
git-svn-id: file:///home/svn/framework3/trunk@13325 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-24 00:22:29 +00:00 |
Wei Chen
|
f47a2c7565
|
Format dictatorship round 2: Fix author e-mail format for all exploit modules
git-svn-id: file:///home/svn/framework3/trunk@13297 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-22 20:17:58 +00:00 |
Wei Chen
|
94aea207d3
|
Remove extra tabs and spaces
git-svn-id: file:///home/svn/framework3/trunk@13148 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 21:10:45 +00:00 |
Wei Chen
|
9892eb39eb
|
Syntax fix
git-svn-id: file:///home/svn/framework3/trunk@13147 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 20:50:52 +00:00 |
Wei Chen
|
32a7eb0000
|
svn propset
git-svn-id: file:///home/svn/framework3/trunk@13146 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 19:19:00 +00:00 |
David Rude
|
7958516549
|
Adds Xeros Firefox nstreerange exploit
git-svn-id: file:///home/svn/framework3/trunk@13143 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 17:12:53 +00:00 |
Wei Chen
|
6448daf571
|
MS10-018, y u no InitialAutoRunScript
git-svn-id: file:///home/svn/framework3/trunk@13141 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 07:02:38 +00:00 |
Wei Chen
|
1058948419
|
Updated ROP, no more hardcoded ntdll addresses
git-svn-id: file:///home/svn/framework3/trunk@13106 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-06 07:22:24 +00:00 |
Wei Chen
|
1223275330
|
Change ranking for now until we have a better solution for SP3
git-svn-id: file:///home/svn/framework3/trunk@13009 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-23 01:04:29 +00:00 |
Wei Chen
|
fdbc038bd0
|
Add BlackIce Cover Page ActiveX downloadimagefileurl exploit
git-svn-id: file:///home/svn/framework3/trunk@12992 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 02:51:39 +00:00 |
Steve Tornio
|
650762517f
|
update CVE and OSVDB to match what the author said
git-svn-id: file:///home/svn/framework3/trunk@12964 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-17 17:35:57 +00:00 |
Steve Tornio
|
7c47b48f5b
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12962 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-17 01:56:20 +00:00 |
Wei Chen
|
23cc89482b
|
CVE correction, thanks Kurt.
git-svn-id: file:///home/svn/framework3/trunk@12961 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-17 00:56:11 +00:00 |
Wei Chen
|
eae350b88b
|
CVE-2011-1260 seems to be the right one
git-svn-id: file:///home/svn/framework3/trunk@12959 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-16 22:27:10 +00:00 |
Wei Chen
|
0a04835138
|
Added MS11-050 by d0c_s4vage
git-svn-id: file:///home/svn/framework3/trunk@12956 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-16 21:19:12 +00:00 |
David Rude
|
b9e398c706
|
adds support for SSL
git-svn-id: file:///home/svn/framework3/trunk@12872 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 20:15:51 +00:00 |
David Rude
|
31a659e55a
|
Fixed this up to use the new JS obfuscation hotness thanks to egyp7s rkelly fu!
git-svn-id: file:///home/svn/framework3/trunk@12871 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 19:49:33 +00:00 |
Steve Tornio
|
377a18030a
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12869 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 19:06:18 +00:00 |
David Rude
|
3d7715ce60
|
Added Cisco AnyConnect VPN Client ActiveX download and execute exploit
git-svn-id: file:///home/svn/framework3/trunk@12868 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 18:52:26 +00:00 |
James Lee
|
bee19278d7
|
add a new javascript obfuscation engine using rkelly for parsing. use it in browser_autopwn and ms10_018_ie_behaviors. see #1003
git-svn-id: file:///home/svn/framework3/trunk@12839 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-03 00:36:26 +00:00 |
James Lee
|
36983436db
|
play a little nicer with browser autopwn by not spraying the heap if creating the vulnerable object failed
git-svn-id: file:///home/svn/framework3/trunk@12667 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-19 19:45:14 +00:00 |
James Lee
|
0b88468617
|
out with the new, in with the old. css_clip is pretty unreliable in my tests, go back to using ie_behaviors in browser autopwn
git-svn-id: file:///home/svn/framework3/trunk@12663 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-19 16:33:55 +00:00 |
Wei Chen
|
f9c49ef9ce
|
Comment update (this is still for the egghunter fix: bug #4552)
git-svn-id: file:///home/svn/framework3/trunk@12657 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-18 19:50:22 +00:00 |
Wei Chen
|
6345fec06c
|
checksum support for egghunter disabled, because not enough room for it. See r4552.
git-svn-id: file:///home/svn/framework3/trunk@12656 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-18 19:48:06 +00:00 |
Wei Chen
|
40894c3726
|
Moving Iconics webhmi activeX exploit from browser to scada directory
git-svn-id: file:///home/svn/framework3/trunk@12584 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-11 20:45:54 +00:00 |