1
0
mirror of https://github.com/calebstewart/pwncat.git synced 2024-11-30 12:24:14 +01:00
Commit Graph

265 Commits

Author SHA1 Message Date
Caleb Stewart
528088be77 Fixed password config and enumeration 2020-06-04 03:34:21 -04:00
Caleb Stewart
d3ac61c0f8 updated dirtycow to new API, but left disabled. DirtyCOW is expensive (time-wise) and unstable (cuases kernel panics). This is not a good candidate for automated exploitation. 2020-06-03 15:38:34 -04:00
Caleb Stewart
1a5825fd4a Updated readme 2020-06-02 22:49:53 -04:00
Caleb Stewart
7e04faa06a Removed dead code from uploader/downloader directories. Pruned unused references to legacy 'pty' interface from a few places. Added note on BSD to readme 2020-06-02 22:48:59 -04:00
Caleb Stewart
a2552b5439 Added status output while loading privesc methods 2020-06-02 22:26:34 -04:00
Caleb Stewart
74f7c11344 Correctly catch errors while probing init system. Should fix #16 2020-06-02 21:27:17 -04:00
Caleb Stewart
67e3744d5e Minor refactor in sudo 2020-06-02 21:25:39 -04:00
Caleb Stewart
e3583607ba Rewrote pam persistence and screen privesc to use new compile interface. Added screen enumeration module as well. 2020-06-02 21:09:11 -04:00
Caleb Stewart
ffa1059a43 Added documentation for new compile method 2020-06-02 19:03:05 -04:00
Caleb Stewart
668eadbaef Added generic pwncat.victim.compile method for compiling code to remote host 2020-06-02 17:35:11 -04:00
Caleb Stewart
ae2c28670c Stripped unneeded information out of ps output. 2020-06-01 21:10:12 -04:00
Caleb Stewart
124f90e16c Added sudo, fstab, and process enumerations 2020-06-01 20:53:32 -04:00
Caleb Stewart
5089fc2cc9 Added aslr, container, and selinux enumeration 2020-05-31 00:40:54 -04:00
Caleb Stewart
bb1a48d7ab Added sudoers enumeration module. Modified sudo privesc to utilize enumeration data. Added sudo method to pwncat.victim 2020-05-30 21:06:48 -04:00
Caleb Stewart
bb60c04560 Merge branch 'master' of github.com:calebstewart/pwncat 2020-05-30 03:06:25 -04:00
Caleb Stewart
19afdd7d8f Added crontab enumeration and a listdir method for pwncat.victim 2020-05-30 03:06:21 -04:00
John Hammond
81d43896ac GTFOBins are... theoretically... done??? 2020-05-30 02:32:15 -04:00
Caleb Stewart
725f47f387 Added ability to attempt enumerated passwords during privesc 2020-05-29 22:33:04 -04:00
Caleb Stewart
1f278bb5cc Added initial implementention of configuration searching for passwords. Also, sped up pwncat.victim.su using the timeout command. 2020-05-29 19:17:34 -04:00
Caleb Stewart
b46ec274a2 Moved gtfobins.json to the right location. 2020-05-29 04:32:31 -04:00
Caleb Stewart
140bf19935 Merge branch 'master' of github.com:calebstewart/pwncat 2020-05-29 04:28:30 -04:00
Caleb Stewart
c2da0f1106 Added extra check for weird bash behavior 2020-05-29 04:28:28 -04:00
John Hammond
9f21985e1b Added yum into gtfobins.json. THM machine Daily Bugle seemingly does not find it in sudo 2020-05-28 22:33:34 -04:00
Caleb Stewart
ff10fdaa1e Merge branch 'master' of github.com:calebstewart/pwncat 2020-05-28 21:33:32 -04:00
John Hammond
385251b70e Corrected getpeername() to just get zero-index, retrieve only IP address 2020-05-28 21:33:26 -04:00
Caleb Stewart
88330bc504 Added basic enum docs 2020-05-28 21:30:41 -04:00
Caleb Stewart
456a1505f4 Fixed dumb ssh argument handling. Sorry Trevor. 2020-05-28 20:18:24 -04:00
Caleb Stewart
980d015b16 Merge branch 'master' of github.com:calebstewart/pwncat 2020-05-28 19:10:31 -04:00
Caleb Stewart
80225ca7e0 Removed custom prompt_toolkit and fixed init enumerator bug 2020-05-28 19:10:27 -04:00
Caleb Stewart
591a1d1385 Added enumerator for writable entries in PATH 2020-05-28 17:57:30 -04:00
Caleb Stewart
3c381f5f1f Fixed requirements and setup.py for missing package 2020-05-28 01:26:45 -04:00
Caleb Stewart
9b0067a4ed Added gtfobins.json to the package data in setup.py as referenced in #14 2020-05-28 01:21:08 -04:00
Caleb Stewart
8461de7182 Organized the report from enum better. It's not more readable. 2020-05-28 00:09:53 -04:00
Caleb Stewart
da591f9a22 Added enumerators for capabilities, kernel exploits, and package managers 2020-05-27 17:15:52 -04:00
Caleb Stewart
8dea0b61e8 Added prompt command to fix your prompt in the event of a simple shell like dash 2020-05-27 01:20:19 -04:00
Caleb Stewart
d0e0179fda Added systemd enumeration, and privesc methods to utilize enumerated keys and passwords 2020-05-27 00:35:17 -04:00
Caleb Stewart
04cc435107 Brought privesc module up to speed w/ pkgutil
Privesc module now follows other auto-loading schemes as other modules
such as persist and enumerate. It will autoload the `Method` class of
any modules under pwncat/privesc.
2020-05-26 20:19:10 -04:00
Caleb Stewart
86d9ca6575 Added report generation capabilities to the enum command 2020-05-26 19:36:42 -04:00
John Hammond
4dddbb15de Added more GTFObins... almost done... 2020-05-25 19:21:04 -04:00
Caleb Stewart
8855e546fc Merge branch 'master' of github.com:calebstewart/pwncat 2020-05-25 03:08:23 -04:00
Caleb Stewart
31e82634cd Added ability to enumerate available private keys. 2020-05-25 03:08:18 -04:00
John Hammond
93f59a17c8 Added a crap ton of GTFObins... almost done... 2020-05-25 02:56:52 -04:00
John Hammond
305316f20a Merge branch 'master' of https://github.com/calebstewart/pwncat 2020-05-24 23:55:07 -04:00
John Hammond
b1dcb47c80 Added GTFObin files up to the letter r 2020-05-24 23:54:55 -04:00
Caleb Stewart
650927b5f7 Added new enumeration framework to handle generic fact gathering 2020-05-24 23:50:45 -04:00
John Hammond
5a4823c8d3 Corrected the issue where base64 stream GTFOBin file writes would not work with files larger than 4096 bytes.
We patched base64io to include newlines.
2020-05-24 03:49:45 -04:00
John Hammond
6ec22f1253 Merge branch 'master' of https://github.com/calebstewart/pwncat 2020-05-24 01:12:58 -04:00
John Hammond
a4e8767563 Added time as a GTFOBins 2020-05-24 01:12:51 -04:00
Caleb Stewart
77eea0f71e Merge branch 'master' of github.com:calebstewart/pwncat 2020-05-24 01:12:20 -04:00
Caleb Stewart
38f9fe295a Added cache command to allow viewing or flushing various pwncat caches 2020-05-24 01:12:15 -04:00