Z. Cliffe Schreuders
|
5aa32d5907
|
fix literal new line
|
2017-02-22 16:16:37 +00:00 |
|
Z. Cliffe Schreuders
|
ad55210ddf
|
initial c_code example
|
2017-02-22 15:26:56 +00:00 |
|
thomashaw
|
e8f8dcece4
|
Team project work squashed + removed dead code
|
2017-02-17 14:59:07 +00:00 |
|
Z. Cliffe Schreuders
|
9466f26f8e
|
security audit remit generator
|
2017-02-08 00:41:14 +00:00 |
|
Z. Cliffe Schreuders
|
1f3f0c211d
|
Merge branch 'access_datastore_elements'
|
2017-01-18 21:49:52 +00:00 |
|
Z. Cliffe Schreuders
|
655684e3d4
|
datastore iteration and element access
|
2017-01-18 21:44:16 +00:00 |
|
Z. Cliffe Schreuders
|
f30f62bbd5
|
readme update
|
2017-01-17 20:45:32 +00:00 |
|
Tom
|
24c38cbe46
|
Merge pull request #87 from thomashaw/cleanup_rebse
Cleanup Module
|
2017-01-17 16:28:12 +00:00 |
|
thomashaw
|
43c02f220f
|
Updated for post-parameterisation
|
2017-01-17 16:27:18 +00:00 |
|
thomashaw
|
f8a97b2842
|
Parameterised Cleanup Module
|
2017-01-17 16:11:50 +00:00 |
|
thomashaw
|
16e3107838
|
Quick fix for the system_number method from last commit.
|
2017-01-17 15:59:29 +00:00 |
|
thomashaw
|
1522fd3ac9
|
Enable static IP address network IP address resolution & a fix for the duplicate modules being output when using multiple systems in Vagrantfile bug
|
2017-01-17 14:49:24 +00:00 |
|
thomashaw
|
373b0bc5dc
|
Parameterised Website using datastores. Loads of generators and encoders. Check out the example scenarios.
|
2017-01-15 19:56:13 +00:00 |
|
Z. Cliffe Schreuders
|
c6780f4a9e
|
flag{generated_flag} format for flags
|
2017-01-15 16:12:08 +00:00 |
|
Z. Cliffe Schreuders
|
fcc4630187
|
desktop xfce
|
2017-01-08 01:20:04 +00:00 |
|
Z. Cliffe Schreuders
|
0548606f70
|
minor cleanup and directory restructuring
|
2017-01-07 21:55:26 +00:00 |
|
Z. Cliffe Schreuders
|
f8ba19ad75
|
datastores for storing and reusing calculated values
|
2017-01-07 21:21:17 +00:00 |
|
Z. Cliffe Schreuders
|
ab8ff07201
|
fix parameterised module input into modules
|
2017-01-05 21:07:48 +00:00 |
|
thomashaw
|
4d6fb601b7
|
Revert: Updated puppetforge/apache to latest version
|
2016-12-30 01:10:33 +00:00 |
|
thomashaw
|
87e029fdd3
|
change [0] for .first
|
2016-12-22 20:23:44 +00:00 |
|
thomashaw
|
f78e2fc404
|
Updated puppetforge/apache to latest version
|
2016-12-21 17:57:52 +00:00 |
|
thomashaw
|
2be095be6c
|
Secure/patched version of chkrootkit vulnerability (utilities/unix/scanners/chkrootkit)
|
2016-12-20 16:09:06 +00:00 |
|
thomashaw
|
e7019afa86
|
Fixed shellshock
|
2016-12-20 15:26:21 +00:00 |
|
thomashaw
|
38b097cb4c
|
Removed link to old Developer VM
|
2016-12-20 14:56:39 +00:00 |
|
thomashaw
|
0d890ee535
|
Corrected proftpd_133c_backdoor as it gives you a root_rwx privilege, not user_rwx privilege, shell when exploiting this vulnerability.
|
2016-12-20 14:55:58 +00:00 |
|
thomashaw
|
ad49319447
|
Removed leftover comment
|
2016-12-14 13:50:49 +00:00 |
|
thomashaw
|
b09769c515
|
Adding read_fact to generators.
|
2016-12-13 19:26:48 +00:00 |
|
Tom
|
e0bacae26b
|
Merge pull request #84 from thomashaw/multi_file_leak_rebase
Multiple leaked files
|
2016-12-13 19:08:18 +00:00 |
|
thomashaw
|
007863e05c
|
weak_password_generator <type> added to the weak and common pw gens, fixed typo in account_hash_builder
|
2016-12-08 10:54:21 +00:00 |
|
thomashaw
|
17f425b37f
|
Multiple leaked files, new secgen_functions module encapsulating the file_leak and overshare.erb logic. Updated old modules to use the new resource type.
|
2016-12-08 10:43:48 +00:00 |
|
thomashaw
|
2f58b35857
|
Temp fix: removed single quote from welcome_message generator
|
2016-12-06 18:56:45 +00:00 |
|
thomashaw
|
d197421c11
|
Vagrantfile removed encoders + generators as they don't need to be on the box
|
2016-12-06 16:52:53 +00:00 |
|
thomashaw
|
1595b4f3e3
|
NFS /etc/exports updated to allow all networks
|
2016-12-06 10:09:57 +00:00 |
|
Tom
|
76ac20da68
|
Merge pull request #83 from thomashaw/param_rebase
Additional parameterisation
|
2016-12-05 17:24:00 +00:00 |
|
thomashaw
|
7d7d2e2677
|
Rework: Moved hello_world to messages. Changed write_fact to output_type. Updated PATH constants to DIR. Changed string generators to more specific message_generator in strings_to_leak.
|
2016-12-05 17:15:55 +00:00 |
|
thomashaw
|
733c871072
|
Additional parameterisation. New modules: parameterised_accounts, generators and an account_encoder. Added plenty of parameters/default_inputs to currently existing vulnerability modules.
|
2016-11-30 18:09:22 +00:00 |
|
Tom
|
186b741c8f
|
Merge pull request #81 from thomashaw/privilege_changes
Privilege changes
|
2016-11-14 14:46:57 +00:00 |
|
thomashaw
|
f724415cdf
|
Privilege changes: More specific privilege levels. r, rw, rwx for root & user.
|
2016-11-14 14:34:04 +00:00 |
|
Tom
|
0920f6ef62
|
Merge pull request #79 from thomashaw/proftpd_service
Service: ProFTPd
|
2016-11-13 23:21:30 +00:00 |
|
thomashaw
|
0ff5f5ba04
|
Added a requirement for the accounts module.
|
2016-11-13 23:19:55 +00:00 |
|
thomashaw
|
9b797c7db2
|
Service: ProFTPd
WIP: Renamed
proftpd service module cont.
|
2016-11-13 22:53:21 +00:00 |
|
Tom
|
8f5a774eb8
|
Merge pull request #78 from thomashaw/chkrootkit
Vulnerability: chkrootkit 0.49 local privilege escalation
|
2016-11-13 22:51:38 +00:00 |
|
thomashaw
|
073483f91d
|
Moving scenario files
|
2016-11-13 22:49:41 +00:00 |
|
thomashaw
|
b1ba6700d4
|
Vulnerability: chkrootkit 0.49 local privilege escalation
|
2016-11-13 22:48:21 +00:00 |
|
Tom
|
87b195b9e2
|
Merge pull request #77 from thomashaw/gitlist_refactor
Vulnerability: Gitlist 0.4.0 webapp with RCE
|
2016-11-13 22:44:43 +00:00 |
|
thomashaw
|
2cf329eeef
|
Vulnerability: Gitlist 0.4.0 webapp with RCE
|
2016-11-13 22:43:47 +00:00 |
|
Z. Cliffe Schreuders
|
5558838005
|
Merge remote-tracking branch 'origin/master'
# Conflicts:
# README.md
|
2016-11-08 23:32:08 +00:00 |
|
Z. Cliffe Schreuders
|
03b739592b
|
README update and some code cleanup
|
2016-11-08 23:28:52 +00:00 |
|
Z. Cliffe Schreuders
|
a9f75721fe
|
README update and some code cleanup
|
2016-11-08 23:17:34 +00:00 |
|
Z. Cliffe Schreuders
|
9ff06fce7e
|
default values for parameters (modules and literal values)
|
2016-11-08 00:28:33 +00:00 |
|