Caleb Stewart
|
ac948183a3
|
Added ssh privesc capability through file read and/or file write
|
2020-05-13 15:27:01 -04:00 |
|
John Hammond
|
96c708a169
|
Added requests module into requrements. Should fix #9
|
2020-05-13 10:43:45 -04:00 |
|
John Hammond
|
d797eed718
|
Adding a comment for clarity on sleeping
|
2020-05-13 00:21:53 -04:00 |
|
John Hammond
|
cd54ffb2fc
|
Corrected some nonsense while accidentially reading command echoes
|
2020-05-13 00:20:51 -04:00 |
|
Caleb Stewart
|
fa1d07d797
|
Fixed privesc.read_file and privesc.write_file
|
2020-05-12 23:31:25 -04:00 |
|
Caleb Stewart
|
e6d4e955dc
|
Merge branch 'master' of github.com:calebstewart/pwncat
|
2020-05-12 20:45:57 -04:00 |
|
Caleb Stewart
|
d656849fbd
|
Reworking privesc framework to better allow other methods (e.g. ssh key clobbering)
|
2020-05-12 20:45:52 -04:00 |
|
John Hammond
|
445e47731e
|
Added new requirements into requirements.txt
|
2020-05-12 20:17:17 -04:00 |
|
Caleb Stewart
|
e661d0225d
|
Fixed cat typo in gtfobins.json
|
2020-05-12 14:13:17 -04:00 |
|
Caleb Stewart
|
177f1bd9ba
|
Added GTFObins downloader and uploader and an asciinema cast
|
2020-05-12 13:53:28 -04:00 |
|
Caleb Stewart
|
935549fac1
|
Merge pull request #8 from calebstewart/gtfobins-update
Gtfobins update
|
2020-05-12 03:16:48 -04:00 |
|
Caleb Stewart
|
09d78cac67
|
Vast gtfobins improvements. Added new method 'open' to PtyHandler which allows generically opening a remote file as a file-like object (read/write) via new gtfobins module
|
2020-05-12 03:12:34 -04:00 |
|
Caleb Stewart
|
425a3c99cd
|
Doesn't work yet
|
2020-05-11 15:27:49 -04:00 |
|
John Hammond
|
983f37e6d6
|
Added vim as a GTFOBin. Testing resolved a clusterfuck
|
2020-05-10 23:17:03 -04:00 |
|
John Hammond
|
2a4ab160d3
|
Merge branch 'master' of https://github.com/calebstewart/pwncat
|
2020-05-10 19:57:32 -04:00 |
|
John Hammond
|
27fe9288c4
|
Added some GTFOBins
|
2020-05-10 19:55:47 -04:00 |
|
Caleb Stewart
|
f173e22d16
|
Added ability for bidirectional binary IO w/ remote process
|
2020-05-10 19:55:20 -04:00 |
|
Caleb Stewart
|
a2195d6575
|
Merge branch 'master' of github.com:calebstewart/pwncat
|
2020-05-10 16:12:24 -04:00 |
|
Caleb Stewart
|
96bdb89336
|
Added busybox staging. Still need to fix all the references to the new which method.
|
2020-05-10 16:12:20 -04:00 |
|
John Hammond
|
d48aaa0eb1
|
Updated README
|
2020-05-10 16:08:50 -04:00 |
|
John Hammond
|
f715bbd9a3
|
Merge pull request #7 from spwx/master
Installation instructions
|
2020-05-10 15:05:14 -04:00 |
|
Sean
|
e0e75f1071
|
Install pwncat into its virtualenv
|
2020-05-10 11:19:43 -04:00 |
|
Sean
|
1cff5653dd
|
Add installation instructions
'netifaces' requires the python headers to install. I added the Debian
instructions to install them.
|
2020-05-10 10:59:19 -04:00 |
|
Sean
|
53cf6a855c
|
Add dependencies
|
2020-05-10 10:22:11 -04:00 |
|
John Hammond
|
18e28be292
|
Added dirtycow (still untested) and added screen4.5.0 privesc... THAT WORKS!
|
2020-05-10 03:16:25 -04:00 |
|
John Hammond
|
199d58b546
|
Merge branch 'master' of https://github.com/calebstewart/pwncat
|
2020-05-10 01:21:36 -04:00 |
|
John Hammond
|
7a3c4f3bb4
|
Started the process for dirtcow
|
2020-05-10 01:21:27 -04:00 |
|
Caleb Stewart
|
622df66446
|
Added EUID backdoor privesc code
|
2020-05-10 01:21:07 -04:00 |
|
Caleb Stewart
|
09b9857698
|
Merge branch 'master' of github.com:calebstewart/pwncat
|
2020-05-10 00:39:21 -04:00 |
|
Caleb Stewart
|
02db34379c
|
Added add_backdor method to the privesc finder to fix EUID issues after SUID escalation
|
2020-05-10 00:39:14 -04:00 |
|
John Hammond
|
72ba1b093b
|
Added id properties carver
|
2020-05-10 00:37:50 -04:00 |
|
Caleb Stewart
|
ec2711a086
|
Fixed merge conflicts
|
2020-05-09 23:55:18 -04:00 |
|
Caleb Stewart
|
3c4b466e32
|
Improved output for privesc
|
2020-05-09 23:52:43 -04:00 |
|
John Hammond
|
ba359c024d
|
Added functionality to read and write files with sudo!
|
2020-05-09 23:51:55 -04:00 |
|
Caleb Stewart
|
7eff74efd5
|
Merge branch 'master' of github.com:calebstewart/pwncat
|
2020-05-09 22:08:08 -04:00 |
|
Caleb Stewart
|
0145a48357
|
Added privesc output
|
2020-05-09 22:08:05 -04:00 |
|
John Hammond
|
b6a926033d
|
Fixed errata from merge
|
2020-05-09 22:07:16 -04:00 |
|
John Hammond
|
ac568f271f
|
Fixed errata from merge
|
2020-05-09 22:06:45 -04:00 |
|
John Hammond
|
010d09d795
|
Merge branch 'master' of https://github.com/calebstewart/pwncat
|
2020-05-09 21:42:47 -04:00 |
|
John Hammond
|
a78c7926c0
|
Merge branch 'readwrite' of https://github.com/calebstewart/pwncat into readwrite
|
2020-05-09 21:41:41 -04:00 |
|
John Hammond
|
64fc44bdae
|
Added more gtfobins!
|
2020-05-09 21:40:37 -04:00 |
|
Caleb Stewart
|
b21761ff6f
|
Working /etc/passwd overwrite to root.
|
2020-05-09 21:38:24 -04:00 |
|
John Hammond
|
2d65544b77
|
Added new GTFObins entries
|
2020-05-09 19:00:15 -04:00 |
|
John Hammond
|
bebe20dcfb
|
Added "safe" property to gtfobins and started to add more GTFObins
|
2020-05-09 18:36:51 -04:00 |
|
Caleb Stewart
|
86e6397702
|
Possibly fixed readinto for RemoteFilePipe
|
2020-05-09 17:25:09 -04:00 |
|
Caleb Stewart
|
3692566a45
|
Added some improved setuid stuff
|
2020-05-09 17:19:14 -04:00 |
|
John Hammond
|
3b7bf075d5
|
Added privesc read capability! Only somewhat tested...
|
2020-05-09 17:05:18 -04:00 |
|
Caleb Stewart
|
068c55f868
|
Added sudo awareness to gtfobins and updated privesc/sudo to understand the new interface. Sudo now supports wildcard listings and can intelligently parse whether a privesc is possible.
|
2020-05-09 15:02:04 -04:00 |
|
John Hammond
|
1b54ade0fb
|
Added lots of dirty sudo privesc code. It works!
|
2020-05-09 03:28:58 -04:00 |
|
John Hammond
|
8e1971d3c1
|
Merge branch 'master' of https://github.com/calebstewart/pwncat
|
2020-05-09 01:37:23 -04:00 |
|