Commit Graph

24 Commits

Author SHA1 Message Date
thomashaw
0a06435dc9 big_merge 2021-11-22 16:26:34 +00:00
Z. Cliffe Schreuders
4b1572714c lab updates 2019-11-08 14:52:25 +00:00
ts
df77d931f3 reintroduce dirtycow as the apt-upgrade module works on oVirt with the puppet-agent package held 2019-02-15 18:00:26 +00:00
thomashaw
3e4123642c reverting dirtycow for now, need to exclude the puppet package from apt-get upgrade before inclusion 2019-02-07 12:57:18 +00:00
ts
341cd0bdf6 vulnerabilities/unix/local/dirtycow 2019-02-05 17:28:15 +00:00
ts
9574ba5601 Tests: local software modules (chkrootkit / nmap) 2019-02-05 11:46:14 +00:00
ts
055ef5b77b explicitly set file permissions for flags leaked by ::secgen_functions::leak_file 2019-01-24 12:25:34 +00:00
thomashaw
b9f56bbe10 Difficulty cont. 2018-11-16 10:19:08 +00:00
ts
fdeb28e246 Stretch update merge: mysql & php for stretch, module conflicts and general cleanup 2018-10-19 13:46:50 +01:00
ts
f0bb2a26e1 Testing script, stretch fixes + code review 2018-10-19 13:46:49 +01:00
thomashaw
6e56a25be9 network changes cleanup - no need for <network/> changes 2017-10-18 15:03:26 +01:00
Z. Cliffe Schreuders
ce502abcdb Hackerbot, labs, and associated changes 2017-09-28 16:35:28 +01:00
thomashaw
0155018879 access control misconfiguration: readable /etc/shadow file 2017-05-22 12:45:45 +01:00
thomashaw
75056b8bc8 Adding images_to_leak to appropriate modules. Use ::secgen_functions::leak_files to leak one or more images. Updated parameterised_website to leak multiple images. Updated gitlist to create a git repo with leaked strings and images. 2017-03-23 20:58:35 +00:00
thomashaw
3028e076d9 parameterise local root level vulnerabilities -- added strings_to_leak 2017-03-16 13:20:32 +00:00
thomashaw
32091ed0fe Special Character work + generator/encoder superclass refactor.
The full Vagrantfile facter string has been encoded in b64 for now, would be nice to b64 the individual arguments rather than the whole string.
2017-03-01 19:19:54 +00:00
thomashaw
7d7d2e2677 Rework: Moved hello_world to messages. Changed write_fact to output_type. Updated PATH constants to DIR. Changed string generators to more specific message_generator in strings_to_leak. 2016-12-05 17:15:55 +00:00
thomashaw
733c871072 Additional parameterisation. New modules: parameterised_accounts, generators and an account_encoder. Added plenty of parameters/default_inputs to currently existing vulnerability modules. 2016-11-30 18:09:22 +00:00
thomashaw
f724415cdf Privilege changes: More specific privilege levels. r, rw, rwx for root & user. 2016-11-14 14:34:04 +00:00
thomashaw
b1ba6700d4 Vulnerability: chkrootkit 0.49 local privilege escalation 2016-11-13 22:48:21 +00:00
thomashaw
4528467f04 Vulnerability: Nmap setuid local privilege escalation 2016-09-06 15:34:12 +01:00
thomashaw
e9f1b87774 Removed testing comments 2016-07-30 11:45:06 +01:00
Z. Cliffe Schreuders
6e6df008b9 Module dependencies 2016-07-27 09:51:13 +01:00
Z. Cliffe Schreuders
b5b19fe1c5 Major overhaul of code base! 2016-06-09 00:03:04 +01:00