500 Commits

Author SHA1 Message Date
@xer0dayz
31df5dc44d * v9.0 - Added Fortinet FortiGate SSL VPN Panel Detected sc0pe template
* v9.0 - Added CVE-2020-17519 - Apache Flink Path Traversal sc0pe template
* v9.0 - Added RabbitMQ Management Interface Detected sc0pe template
* v9.0 - Added CVE-2020-29583 Zyxel SSH Hardcoded Credentials via BruteX
* v9.0 - Removed vulnscan NMap CSV updates/downloads to save space/bandwidth
* v9.0 - Added Nuclei sc0pe parser
* v9.0 - Added Nuclei vulnerability scanner
* v9.0 - Added Wordpress WPScan sc0pe vulnerability parser
* v9.0 - Fixed issue with wrong WPscan API key command
* v9.0 - Added CVE-2020-11738 - WordPress Duplicator plugin Directory Traversal sc0pe template
* v9.0 - Renamed AUTO_VULNSCAN setting to "VULNSCAN" in sniper.conf to perform vulnerability scans via 'normal' mode
v9.0
2021-01-08 09:31:56 -07:00
@xer0dayz
2dc57b5a5e Updated README 2021-01-05 13:57:25 -07:00
@xer0dayz
97086bc71f Updated README 2021-01-05 13:54:07 -07:00
@xer0dayz
7a7873b6e4 Updated README 2021-01-05 13:49:09 -07:00
@xer0dayz
c96bbc26b1 Updated README 2021-01-05 13:45:49 -07:00
@xer0dayz
fa67eefde2 * v9.0 - Updated sniper.conf to include NUCLEI setting 2021-01-05 08:00:31 -07:00
@xer0dayz
95fc0361b0 * v9.0 - Added RabbitMQ Management Interface Detected sc0pe template
* v9.0 - Added CVE-2020-29583 Zyxel SSH Hardcoded Credentials via BruteX
* v9.0 - Removed vulnscan NMap CSV updates/downloads to save space/bandwidth
* v9.0 - Added Nuclei sc0pe parser
* v9.0 - Added Nuclei vulnerability scanner
* v9.0 - Added Wordpress WPScan sc0pe vulnerability parser
* v9.0 - Fixed issue with wrong WPscan API key command
* v9.0 - Added CVE-2020-11738 - WordPress Duplicator plugin Directory Traversal sc0pe template
2021-01-04 09:15:06 -07:00
@xer0dayz
3aac6ec64e Updating README 2020-12-27 17:19:42 -07:00
@xer0dayz
ac61c093df Updating README 2020-12-27 17:16:00 -07:00
@xer0dayz
9f7628c1aa Updated WPScan API integration 2020-12-20 14:06:24 -07:00
@xer0dayz
c606e34151 * v8.9 - Tuned sniper.conf around performance for all scans and recon modes
* v8.9 - Added out of scope options to config
* v8.9 - Added automatic HTTP/HTTPS web scans and vulnerability scans to 'normal' mode
* v8.9 - Added SolarWinds Orion Panel Default Credentials sc0pe template
* v8.9 - Added SolarWinds Orion Panel sc0pe template
* v8.9 - Fixed issue with theHarvester not running on Kali 2020.4
* v8.9 - Added WPScan API support
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Config Password Disclosure sc0pe template
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Path Traversal sc0pe template
* v8.9 - Removed verbose error for chromium on Ubuntu
* v8.9 - Added CVE-2020-8209 - Citrix XenMobile Server Path Traversal sc0pe template
* v8.9 - Fixed F+ in CSP Not Enforced sc0pe template
* v8.9 - Added CVE-2020-14815 - Oracle Business Intelligence Enterprise DOM XSS sc0pe template
* v8.9 - Fixed issue with dnscan not working in Kali 2020.3
* v8.9 - Fixed issue with screenshots not working in Ubuntu 2020
* v8.9 - Added Frontpage Service Password Disclosure sc0pe template
* v8.9 - Removed Yasuo tool
v8.9
2020-12-18 11:34:08 -07:00
@xer0dayz
5020eec4e5 * v8.9 - Tuned sniper.conf around performance for all scans and recon modes
* v8.9 - Added out of scope options to config
* v8.9 - Added automatic HTTP/HTTPS web scans and vulnerability scans to 'normal' mode
* v8.9 - Added SolarWinds Orion Panel Default Credentials sc0pe template
* v8.9 - Added SolarWinds Orion Panel sc0pe template
* v8.9 - Fixed issue with theHarvester not running on Kali 2020.4
* v8.9 - Added WPScan API support
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Config Password Disclosure sc0pe template
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Path Traversal sc0pe template
* v8.9 - Removed verbose error for chromium on Ubuntu
* v8.9 - Added CVE-2020-8209 - Citrix XenMobile Server Path Traversal sc0pe template
* v8.9 - Fixed F+ in CSP Not Enforced sc0pe template
* v8.9 - Added CVE-2020-14815 - Oracle Business Intelligence Enterprise DOM XSS sc0pe template
* v8.9 - Fixed issue with dnscan not working in Kali 2020.3
* v8.9 - Fixed issue with screenshots not working in Ubuntu 2020
* v8.9 - Added Frontpage Service Password Disclosure sc0pe template
* v8.9 - Removed Yasuo tool
2020-12-18 11:20:16 -07:00
xer0dayz
c37746b16c Merge branch 'master' of https://github.com/1N3/Sn1per 2020-12-18 10:08:37 -07:00
@xer0dayz
d06a47fe62 * v8.9 - Tuned sniper.conf around performance for all scans and recon modes
* v8.9 - Added out of scope options to config
* v8.9 - Added automatic HTTP/HTTPS web scans and vulnerability scans to 'normal' mode
* v8.9 - Added SolarWinds Orion Panel Default Credentials sc0pe template
* v8.9 - Added SolarWinds Orion Panel sc0pe template
* v8.9 - Fixed issue with theHarvester not running on Kali 2020.4
* v8.9 - Added WPScan API support
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Config Password Disclosure sc0pe template
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Path Traversal sc0pe template
* v8.9 - Removed verbose error for chromium on Ubuntu
* v8.9 - Added CVE-2020-8209 - Citrix XenMobile Server Path Traversal sc0pe template
* v8.9 - Fixed F+ in CSP Not Enforced sc0pe template
* v8.9 - Added CVE-2020-14815 - Oracle Business Intelligence Enterprise DOM XSS sc0pe template
* v8.9 - Fixed issue with dnscan not working in Kali 2020.3
* v8.9 - Fixed issue with screenshots not working in Ubuntu 2020
* v8.9 - Added Frontpage Service Password Disclosure sc0pe template
* v8.9 - Removed Yasuo tool
2020-12-18 10:02:40 -07:00
xer0dayz
87242fb1fd Update issue templates 2020-11-30 09:53:06 -07:00
@xer0dayz
1399d227ed * v8.9 - Removed OpenVAS installation
* v8.9 - Fixed Chromium issue in Ubuntu 2020.4
2020-11-25 19:25:25 -07:00
@xer0dayz
d536751f66 * v8.9 Fixed issue with Smuggler.py not being installed 2020-11-24 03:51:37 -07:00
@xer0dayz
0fc6ab630c * v8.9 - Removed OpenVAS installation
* v8.9 - Fixed Chromium issue in Ubuntu 2020.4
2020-11-20 05:32:58 -07:00
@xer0dayz
f29caa4e33 * v8.8 - Fixed issue with webscreenshot on Kali 2020.3+ 2020-10-21 13:12:40 -07:00
@xer0dayz
4907e39cce * v8.9 - Fixed error in install.sh for theharvester sym link
* v8.9 - Fixed issue with flyover mode not capturing web screenshots
2020-10-20 15:55:05 -07:00
@xer0dayz
0c3e75b2ec Finalizing changes for v8.8 v8.8 2020-10-20 14:38:12 -07:00
@xer0dayz
04cb1e114d Finalizing changes for v8.8 2020-10-20 08:50:49 -07:00
@xer0dayz
dae095c78c Fixed auto-update code 2020-10-19 13:52:53 -07:00
@xer0dayz
e85907bb26 Fixed auto-update code 2020-09-27 14:44:21 -07:00
@xer0dayz
05c60b4a09 Finalized changes for v8.7
Added CVE-2020-15129 - Open Redirect In Traefik sc0pe template
v8.7
2020-09-15 08:13:14 -07:00
@xer0dayz
8d7c2bda16 * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 13:54:36 -07:00
@xer0dayz
eaadde00dc * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 12:36:54 -07:00
@xer0dayz
7b23ed4902 * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 09:39:50 -07:00
@xer0dayz
2ce7c2c6aa * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 09:31:09 -07:00
@xer0dayz
3d76ffa9fc * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 09:00:40 -07:00
@xer0dayz
0463dbf29e * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 08:54:19 -07:00
@xer0dayz
1a96b105db * v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
2020-09-14 08:25:38 -07:00
@xer0dayz
7adb5b3998 New sc0pe templates, updated Slack API integration, updated wordlists and misc changes for v8.7 2020-09-13 18:08:30 -07:00
@xer0dayz
c236a48aa8 Added browser fix for Kali Linux 2020.3+ 2020-09-07 09:57:47 -07:00
@xer0dayz
7c7b8a3a6b Fixed/added Nessus integration (Pro only) 2020-08-26 08:51:01 -07:00
@xer0dayz
4adbb24a48 * v8.7 - Fixed logic error in stealth mode recon scans not running
* v8.7 - Added CVE-2020-7048 - WP Database Reset 3.15 Unauthenticated Database Reset
* v8.7 - Fixed F- detection in Wordpress Sc0pe templates
* v8.7 - Added CVE-2020-11530 - Wordpress Chop Slider 3 Plugin SQL Injection
* v8.7 - Added CVE-2019-11580 - Atlassian Crowd Data Center Unauthenticated RCE
2020-08-23 16:48:13 -07:00
@xer0dayz
439db5e98f Updated installer 2020-08-21 10:26:50 -07:00
xer0dayz
725143b79a Merge https://github.com/1N3/Sn1per 2020-08-21 10:25:57 -07:00
@xer0dayz
21e0bb4160 Updated installer 2020-08-21 10:23:48 -07:00
xer0dayz
47ddf9a59e Update install.sh
Fixed conditional statement
2020-08-19 10:19:33 -07:00
xer0dayz
6e6481c83a Merge pull request #284 from gbiagomba/patch-2
Update install.sh
2020-08-19 10:10:05 -07:00
Mad Gray Hatter
ec4b6dd32f Update install.sh
added a conditional to check to see if the app being installed is already present, if it isnt the install command will run if not, it will pass it
2020-08-19 11:38:47 -04:00
xer0dayz
118b7745cf Merge pull request #283 from gbiagomba/patch-1
Updated install.sh
2020-08-18 15:26:11 -07:00
xer0dayz
e0a36c05eb Update install.sh
Just made a small change to forward errors to /dev/null since some packages might not be available on Ubuntu by default.
2020-08-18 15:25:18 -07:00
Mad Gray Hatter
3b2d54956e Update install.sh
I condensed the apt install commands
2020-08-18 16:42:32 -04:00
@xer0dayz
ef34b0e0f3 Updated README to include Nessus integration 2020-08-15 12:52:40 -07:00
@xer0dayz
e8e3e9ecbe Added CVE-2019-16759 - vBulletin 5.x 0-Day Pre-Auth Remote Command Execution Bypass 2020-08-10 08:55:46 -07:00
@xer0dayz
dae1756f7f Finalizing changes to v8.6 v8.6 2020-08-06 13:59:24 -07:00
@xer0dayz
6e13c6ffb9 * v8.6 - Added new Sn1per configuration flow that allows persistent user configurations and API key transfer
* v8.6 - Updated port lists to remove duplicate ports error and slim down list
* v8.6 - Updated PHP to 7.4
2020-08-06 12:37:07 -07:00
@xer0dayz
4c810f5ced * v8.6 - Added CVE-2020-12720 - vBulletin Unauthenticaed SQLi
* v8.6 - Added CVE-2020-9757 - SEOmatic < 3.3.0 Server-Side Template Injection
* v8.6 - Added CVE-2020-1147 - Remote Code Execution in Microsoft SharePoint Server
* v8.6 - Added CVE-2020-3187 - Citrix Unauthenticated File Deletion
* v8.6 - Added CVE-2020-8193 - Citrix Unauthenticated LFI
* v8.6 - Added CVE-2020-8194 - Citrix ADC & NetScaler Gateway Reflected Code Injection
* v8.6 - Added CVE-2020-8982 - Citrix ShareFile StorageZones Unauthenticated Arbitrary File Read
* v8.6 - Added CVE-2020-9484 - Apache Tomcat RCE by deserialization
* v8.6 - Added Cisco VPN scanner template
* v8.6 - Added Tiki Wiki CMS scanner template
* v8.6 - Added Palo Alto PAN OS Portal scanner template
* v8.6 - Added SAP NetWeaver AS JAVA LM Configuration Wizard Detection
* v8.6 - Added delete task workspace function to remove running tasks
2020-08-02 16:51:11 -07:00