David Maloney
|
5534599cfc
|
fix for jtr warnings
remmove include for Jtr mixin in deprecated jtr_unshadow module
remove deprecated postgres_crack module
|
2014-07-16 12:52:29 -05:00 |
David Maloney
|
52a29856b3
|
Merge branch 'master' into staging/electro-release
Conflicts:
Gemfile
Gemfile.lock
|
2014-07-16 09:38:44 -05:00 |
sinn3r
|
f8e47a5c61
|
Land #3524 - WPTouch fileupload exploit
|
2014-07-15 16:29:59 -05:00 |
Spencer McIntyre
|
e58100fe85
|
Land #3419, multi script delivery module by @jakxx
|
2014-07-15 17:07:51 -04:00 |
Spencer McIntyre
|
1a8d73fca8
|
Minor whitespace and grammar changes
|
2014-07-15 17:00:28 -04:00 |
David Maloney
|
674447c891
|
final cleanup steps
|
2014-07-15 15:31:51 -05:00 |
David Maloney
|
7ac6640cfd
|
Merge branch 'staging/electro-release' into feature/MSP-10711/login-status
Conflicts:
Gemfile
Gemfile.lock
modules/auxiliary/scanner/smb/smb_login.rb
|
2014-07-15 15:12:33 -05:00 |
James Lee
|
51a9a763c0
|
Move error_name to InvalidPacket and check for nil
MSP-10713
|
2014-07-15 15:02:53 -05:00 |
David Maloney
|
34635ab968
|
module login status cleanup
cleanup several bruteforce module to
use the loginstatus constants for result status
|
2014-07-15 14:55:41 -05:00 |
sinn3r
|
57b1023592
|
Land #3522 - Multi Gather Dbvis Connections Settings
|
2014-07-15 11:34:02 -05:00 |
sinn3r
|
1d6f088eab
|
Pass msftidy
|
2014-07-15 11:31:37 -05:00 |
David Bloom
|
526538ecd6
|
Added dbvis version find and print
|
2014-07-15 15:04:46 +02:00 |
David Bloom
|
97dcc56225
|
Update dbvis_enum.rb
|
2014-07-15 14:23:40 +02:00 |
David Bloom
|
400b0f4276
|
parse url to report host in old config
|
2014-07-15 14:21:09 +02:00 |
David Bloom
|
f3d953f829
|
Old config file update
Added functions to parse old and new config files.
|
2014-07-15 14:00:29 +02:00 |
David Bloom
|
ac3d453002
|
Update dbvis_enum.rb
|
2014-07-15 12:33:07 +02:00 |
David Bloom
|
a53341f520
|
Added compatibility with dbvis <= 6
Checking for "config" folder existence if "config70" is not found.
|
2014-07-15 12:14:38 +02:00 |
Christian Mehlmauer
|
c1f612b82a
|
Use vprint_ instead of print_
|
2014-07-15 06:58:33 +02:00 |
James Lee
|
de22aeba41
|
Land #3481, meterpreter bins
|
2014-07-14 15:57:52 -05:00 |
sinn3r
|
cc1ba265cb
|
Change module name for consistency
|
2014-07-14 15:49:19 -05:00 |
sinn3r
|
4d7bffd713
|
Change header
|
2014-07-14 15:45:17 -05:00 |
sinn3r
|
5a821cea9d
|
Account for EOFError condition
|
2014-07-14 15:27:40 -05:00 |
sinn3r
|
89a877031f
|
I mean "unless", not "if"
|
2014-07-14 15:24:53 -05:00 |
sinn3r
|
bec32a01ab
|
For for missing an end
|
2014-07-14 15:17:54 -05:00 |
sinn3r
|
cecdcef2e2
|
+ not preferred
|
2014-07-14 15:14:54 -05:00 |
sinn3r
|
0737deb2a3
|
Remove the last exception handler
We're already checking the file path with file?(), so we don't need
to use exception handling for this task anymore.
|
2014-07-14 15:02:23 -05:00 |
sinn3r
|
8fe3f1a077
|
File should be checked for existence before reading
|
2014-07-14 15:01:03 -05:00 |
sinn3r
|
20e5803592
|
Author's Twitter handle should be a comment
msfconsole treats whatever is in <> as the author's email, not
twitter handle
|
2014-07-14 14:57:36 -05:00 |
sinn3r
|
3b6947c1d7
|
Use Rex to check IPv4 instead of using resolv
|
2014-07-14 14:56:38 -05:00 |
sinn3r
|
b5e556519b
|
Change = to ==
This is an if condition, not an assignment
|
2014-07-14 14:53:27 -05:00 |
sinn3r
|
8f51fd0e45
|
Retabbed and reformatted
|
2014-07-14 14:39:34 -05:00 |
Christian Mehlmauer
|
144c6aecba
|
Added WPTouch fileupload exploit
|
2014-07-14 21:35:18 +02:00 |
Tod Beardsley
|
6c595f28d7
|
Set up a proper peer method
|
2014-07-14 13:29:07 -05:00 |
dmaloney-r7
|
7184d2ed5e
|
Merge pull request #107 from rapid7/feature/MSP-9704/pop3-module-refactor
Refactor pop3_login
|
2014-07-14 13:27:11 -05:00 |
David Bloom
|
72d9587a50
|
DbVisualizer stores the user database configuration in dbvis.xml
This module retrieves the connections settings from this file
|
2014-07-14 20:08:48 +02:00 |
David Bloom
|
667b1363f3
|
Delete dbvis_enum.rb
|
2014-07-14 10:57:53 +02:00 |
David Bloom
|
0ef0f6aae1
|
Update dbvis_enum.rb
|
2014-07-14 10:54:43 +02:00 |
David Bloom
|
bcbb0b4fde
|
dbvis connections gathering
DbVisualizer stores the user database configuration in dbvis.xml.
This module retrieves the connections settings from this file.
|
2014-07-14 10:49:20 +02:00 |
Michael Messner
|
1b7008dafa
|
typo in name
|
2014-07-13 13:24:54 +02:00 |
James Lee
|
e68dcdbb06
|
Refactor pop3_login
Also adjusts timeout in the scanner class to account for Dovecot's
default "Authentication Penalty" delay.
See http://wiki2.dovecot.org/Authentication/Penalty
|
2014-07-11 17:26:49 -05:00 |
William Vu
|
2fd7bcf8bf
|
Land #3514, report_note for scraper
|
2014-07-11 17:17:10 -05:00 |
nodeofgithub
|
5d833cbb16
|
http_header report_note remove to_s
|
2014-07-11 17:14:45 -05:00 |
nodeofgithub
|
7e9eb84531
|
http_header report_note remove brackets, move rport
|
2014-07-11 17:14:45 -05:00 |
nodeofgithub
|
a8ec733a3a
|
Interpolate all the things!
|
2014-07-11 17:14:09 -05:00 |
nodeofgithub
|
4abe856fc1
|
Rescue http_header notes from getting truncated
Seems that only one header line gets added to host notes, and the rest are thrown away. This adds the counter number to the type string, so that each header line entry is unique and correctly saved. I also added port in case you want headers from several ports on one host without the previous getting overwritten.
(scanning shodanhq.com)
----BEFORE----
msf auxiliary(http_header) > run -j
[*] Auxiliary module running as background job
msf auxiliary(http_header) >
[*] 162.159.245.38:80: requesting / via HEAD
[*] 162.159.245.38:80: deleted header Expires
[*] 162.159.245.38:80: CF-RAY: 1485d013ca880773-EWR
[*] 162.159.245.38:80: CACHE-CONTROL: max-age=15
[*] 162.159.245.38:80: CONNECTION: keep-alive
[*] 162.159.245.38:80: CONTENT-TYPE: text/html; charset=UTF-8
[*] 162.159.245.38:80: DATE: Fri, 11 Jul 2014 14:50:20 GMT
[*] 162.159.245.38:80: SERVER: cloudflare-nginx
[*] 162.159.245.38:80: SET-COOKIE: __cfduid=d3914e07fc681306bb53129adb3e6b1d41405090220122; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; HttpOnly
[+] 162.159.245.38:80: detected 7 headers
[*] Scanned 1 of 1 hosts (100% complete)
msf auxiliary(http_header) > notes
[*] Time: 2014-07-11 14:50:19 UTC Note: host=162.159.245.38 type=HTTP header data="SET-COOKIE: __cfduid=d3914e07fc681306bb53129adb3e6b1d41405090220122; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; HttpOnly"
msf auxiliary(http_header) >
----AFTER----
msf auxiliary(http_header) > run -j
[*] Auxiliary module running as background job
msf auxiliary(http_header) >
[*] 162.159.245.38:80: requesting / via HEAD
[*] 162.159.245.38:80: CF-RAY: 14869ad5c0970f57-FRA
[*] 162.159.245.38:80: CACHE-CONTROL: max-age=15
[*] 162.159.245.38:80: CONNECTION: keep-alive
[*] 162.159.245.38:80: CONTENT-TYPE: text/html; charset=UTF-8
[*] 162.159.245.38:80: DATE: Fri, 11 Jul 2014 17:08:45 GMT
[*] 162.159.245.38:80: EXPIRES: Fri, 11 Jul 2014 17:09:00 GMT
[*] 162.159.245.38:80: SERVER: cloudflare-nginx
[*] 162.159.245.38:80: SET-COOKIE: __cfduid=db2918126c4b49780b4669e88b72580521405098525082; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; HttpOnly
[+] 162.159.245.38:80: detected 8 headers
[*] Scanned 1 of 1 hosts (100% complete)
msf auxiliary(http_header) > notes
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.0 data="CF-RAY: 14869ad5c0970f57-FRA"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.1 data="CACHE-CONTROL: max-age=15"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.2 data="CONNECTION: keep-alive"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.3 data="CONTENT-TYPE: text/html; charset=UTF-8"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.4 data="DATE: Fri, 11 Jul 2014 17:08:45 GMT"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.5 data="EXPIRES: Fri, 11 Jul 2014 17:09:00 GMT"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.6 data="SERVER: cloudflare-nginx"
[*] Time: 2014-07-11 17:08:44 UTC Note: host=162.159.245.38 type=http.80.header.7 data="SET-COOKIE: __cfduid=db2918126c4b49780b4669e88b72580521405098525082; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; HttpOnly"
msf auxiliary(http_header) >
|
2014-07-11 17:14:09 -05:00 |
nodeofgithub
|
6ef69b4014
|
scraper report_note, remove eol whitespace
|
2014-07-11 21:21:56 +02:00 |
nodeofgithub
|
ad46c37988
|
scraper report_note, remove unnecessary to_s
|
2014-07-11 21:08:35 +02:00 |
nodeofgithub
|
7a7d149dc5
|
scraper report_note, change note type string
|
2014-07-11 21:01:20 +02:00 |
Tod Beardsley
|
e5d7dae016
|
Land #3513, Author name fixups from @jvazquez-r7
|
2014-07-11 13:58:38 -05:00 |
Tod Beardsley
|
b09fab13f0
|
Fix one flubbed author address
|
2014-07-11 13:50:37 -05:00 |