thomashaw
|
0a06435dc9
|
big_merge
|
2021-11-22 16:26:34 +00:00 |
|
Z. Cliffe Schreuders
|
4b1572714c
|
lab updates
|
2019-11-08 14:52:25 +00:00 |
|
ts
|
df77d931f3
|
reintroduce dirtycow as the apt-upgrade module works on oVirt with the puppet-agent package held
|
2019-02-15 18:00:26 +00:00 |
|
thomashaw
|
3e4123642c
|
reverting dirtycow for now, need to exclude the puppet package from apt-get upgrade before inclusion
|
2019-02-07 12:57:18 +00:00 |
|
ts
|
341cd0bdf6
|
vulnerabilities/unix/local/dirtycow
|
2019-02-05 17:28:15 +00:00 |
|
ts
|
9574ba5601
|
Tests: local software modules (chkrootkit / nmap)
|
2019-02-05 11:46:14 +00:00 |
|
ts
|
055ef5b77b
|
explicitly set file permissions for flags leaked by ::secgen_functions::leak_file
|
2019-01-24 12:25:34 +00:00 |
|
thomashaw
|
b9f56bbe10
|
Difficulty cont.
|
2018-11-16 10:19:08 +00:00 |
|
ts
|
fdeb28e246
|
Stretch update merge: mysql & php for stretch, module conflicts and general cleanup
|
2018-10-19 13:46:50 +01:00 |
|
ts
|
f0bb2a26e1
|
Testing script, stretch fixes + code review
|
2018-10-19 13:46:49 +01:00 |
|
thomashaw
|
6e56a25be9
|
network changes cleanup - no need for <network/> changes
|
2017-10-18 15:03:26 +01:00 |
|
Z. Cliffe Schreuders
|
ce502abcdb
|
Hackerbot, labs, and associated changes
|
2017-09-28 16:35:28 +01:00 |
|
thomashaw
|
0155018879
|
access control misconfiguration: readable /etc/shadow file
|
2017-05-22 12:45:45 +01:00 |
|
thomashaw
|
75056b8bc8
|
Adding images_to_leak to appropriate modules. Use ::secgen_functions::leak_files to leak one or more images. Updated parameterised_website to leak multiple images. Updated gitlist to create a git repo with leaked strings and images.
|
2017-03-23 20:58:35 +00:00 |
|
thomashaw
|
3028e076d9
|
parameterise local root level vulnerabilities -- added strings_to_leak
|
2017-03-16 13:20:32 +00:00 |
|
thomashaw
|
32091ed0fe
|
Special Character work + generator/encoder superclass refactor.
The full Vagrantfile facter string has been encoded in b64 for now, would be nice to b64 the individual arguments rather than the whole string.
|
2017-03-01 19:19:54 +00:00 |
|
thomashaw
|
7d7d2e2677
|
Rework: Moved hello_world to messages. Changed write_fact to output_type. Updated PATH constants to DIR. Changed string generators to more specific message_generator in strings_to_leak.
|
2016-12-05 17:15:55 +00:00 |
|
thomashaw
|
733c871072
|
Additional parameterisation. New modules: parameterised_accounts, generators and an account_encoder. Added plenty of parameters/default_inputs to currently existing vulnerability modules.
|
2016-11-30 18:09:22 +00:00 |
|
thomashaw
|
f724415cdf
|
Privilege changes: More specific privilege levels. r, rw, rwx for root & user.
|
2016-11-14 14:34:04 +00:00 |
|
thomashaw
|
b1ba6700d4
|
Vulnerability: chkrootkit 0.49 local privilege escalation
|
2016-11-13 22:48:21 +00:00 |
|
thomashaw
|
4528467f04
|
Vulnerability: Nmap setuid local privilege escalation
|
2016-09-06 15:34:12 +01:00 |
|
thomashaw
|
e9f1b87774
|
Removed testing comments
|
2016-07-30 11:45:06 +01:00 |
|
Z. Cliffe Schreuders
|
6e6df008b9
|
Module dependencies
|
2016-07-27 09:51:13 +01:00 |
|
Z. Cliffe Schreuders
|
b5b19fe1c5
|
Major overhaul of code base!
|
2016-06-09 00:03:04 +01:00 |
|