@xer0dayz
|
31df5dc44d
|
* v9.0 - Added Fortinet FortiGate SSL VPN Panel Detected sc0pe template
* v9.0 - Added CVE-2020-17519 - Apache Flink Path Traversal sc0pe template
* v9.0 - Added RabbitMQ Management Interface Detected sc0pe template
* v9.0 - Added CVE-2020-29583 Zyxel SSH Hardcoded Credentials via BruteX
* v9.0 - Removed vulnscan NMap CSV updates/downloads to save space/bandwidth
* v9.0 - Added Nuclei sc0pe parser
* v9.0 - Added Nuclei vulnerability scanner
* v9.0 - Added Wordpress WPScan sc0pe vulnerability parser
* v9.0 - Fixed issue with wrong WPscan API key command
* v9.0 - Added CVE-2020-11738 - WordPress Duplicator plugin Directory Traversal sc0pe template
* v9.0 - Renamed AUTO_VULNSCAN setting to "VULNSCAN" in sniper.conf to perform vulnerability scans via 'normal' mode
v9.0
|
2021-01-08 09:31:56 -07:00 |
|
@xer0dayz
|
2dc57b5a5e
|
Updated README
|
2021-01-05 13:57:25 -07:00 |
|
@xer0dayz
|
97086bc71f
|
Updated README
|
2021-01-05 13:54:07 -07:00 |
|
@xer0dayz
|
7a7873b6e4
|
Updated README
|
2021-01-05 13:49:09 -07:00 |
|
@xer0dayz
|
c96bbc26b1
|
Updated README
|
2021-01-05 13:45:49 -07:00 |
|
@xer0dayz
|
fa67eefde2
|
* v9.0 - Updated sniper.conf to include NUCLEI setting
|
2021-01-05 08:00:31 -07:00 |
|
@xer0dayz
|
95fc0361b0
|
* v9.0 - Added RabbitMQ Management Interface Detected sc0pe template
* v9.0 - Added CVE-2020-29583 Zyxel SSH Hardcoded Credentials via BruteX
* v9.0 - Removed vulnscan NMap CSV updates/downloads to save space/bandwidth
* v9.0 - Added Nuclei sc0pe parser
* v9.0 - Added Nuclei vulnerability scanner
* v9.0 - Added Wordpress WPScan sc0pe vulnerability parser
* v9.0 - Fixed issue with wrong WPscan API key command
* v9.0 - Added CVE-2020-11738 - WordPress Duplicator plugin Directory Traversal sc0pe template
|
2021-01-04 09:15:06 -07:00 |
|
@xer0dayz
|
3aac6ec64e
|
Updating README
|
2020-12-27 17:19:42 -07:00 |
|
@xer0dayz
|
ac61c093df
|
Updating README
|
2020-12-27 17:16:00 -07:00 |
|
@xer0dayz
|
9f7628c1aa
|
Updated WPScan API integration
|
2020-12-20 14:06:24 -07:00 |
|
@xer0dayz
|
c606e34151
|
* v8.9 - Tuned sniper.conf around performance for all scans and recon modes
* v8.9 - Added out of scope options to config
* v8.9 - Added automatic HTTP/HTTPS web scans and vulnerability scans to 'normal' mode
* v8.9 - Added SolarWinds Orion Panel Default Credentials sc0pe template
* v8.9 - Added SolarWinds Orion Panel sc0pe template
* v8.9 - Fixed issue with theHarvester not running on Kali 2020.4
* v8.9 - Added WPScan API support
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Config Password Disclosure sc0pe template
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Path Traversal sc0pe template
* v8.9 - Removed verbose error for chromium on Ubuntu
* v8.9 - Added CVE-2020-8209 - Citrix XenMobile Server Path Traversal sc0pe template
* v8.9 - Fixed F+ in CSP Not Enforced sc0pe template
* v8.9 - Added CVE-2020-14815 - Oracle Business Intelligence Enterprise DOM XSS sc0pe template
* v8.9 - Fixed issue with dnscan not working in Kali 2020.3
* v8.9 - Fixed issue with screenshots not working in Ubuntu 2020
* v8.9 - Added Frontpage Service Password Disclosure sc0pe template
* v8.9 - Removed Yasuo tool
v8.9
|
2020-12-18 11:34:08 -07:00 |
|
@xer0dayz
|
5020eec4e5
|
* v8.9 - Tuned sniper.conf around performance for all scans and recon modes
* v8.9 - Added out of scope options to config
* v8.9 - Added automatic HTTP/HTTPS web scans and vulnerability scans to 'normal' mode
* v8.9 - Added SolarWinds Orion Panel Default Credentials sc0pe template
* v8.9 - Added SolarWinds Orion Panel sc0pe template
* v8.9 - Fixed issue with theHarvester not running on Kali 2020.4
* v8.9 - Added WPScan API support
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Config Password Disclosure sc0pe template
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Path Traversal sc0pe template
* v8.9 - Removed verbose error for chromium on Ubuntu
* v8.9 - Added CVE-2020-8209 - Citrix XenMobile Server Path Traversal sc0pe template
* v8.9 - Fixed F+ in CSP Not Enforced sc0pe template
* v8.9 - Added CVE-2020-14815 - Oracle Business Intelligence Enterprise DOM XSS sc0pe template
* v8.9 - Fixed issue with dnscan not working in Kali 2020.3
* v8.9 - Fixed issue with screenshots not working in Ubuntu 2020
* v8.9 - Added Frontpage Service Password Disclosure sc0pe template
* v8.9 - Removed Yasuo tool
|
2020-12-18 11:20:16 -07:00 |
|
xer0dayz
|
c37746b16c
|
Merge branch 'master' of https://github.com/1N3/Sn1per
|
2020-12-18 10:08:37 -07:00 |
|
@xer0dayz
|
d06a47fe62
|
* v8.9 - Tuned sniper.conf around performance for all scans and recon modes
* v8.9 - Added out of scope options to config
* v8.9 - Added automatic HTTP/HTTPS web scans and vulnerability scans to 'normal' mode
* v8.9 - Added SolarWinds Orion Panel Default Credentials sc0pe template
* v8.9 - Added SolarWinds Orion Panel sc0pe template
* v8.9 - Fixed issue with theHarvester not running on Kali 2020.4
* v8.9 - Added WPScan API support
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Config Password Disclosure sc0pe template
* v8.9 - Added CVE-2020-8209 - XenMobile-Citrix Endpoint Management Path Traversal sc0pe template
* v8.9 - Removed verbose error for chromium on Ubuntu
* v8.9 - Added CVE-2020-8209 - Citrix XenMobile Server Path Traversal sc0pe template
* v8.9 - Fixed F+ in CSP Not Enforced sc0pe template
* v8.9 - Added CVE-2020-14815 - Oracle Business Intelligence Enterprise DOM XSS sc0pe template
* v8.9 - Fixed issue with dnscan not working in Kali 2020.3
* v8.9 - Fixed issue with screenshots not working in Ubuntu 2020
* v8.9 - Added Frontpage Service Password Disclosure sc0pe template
* v8.9 - Removed Yasuo tool
|
2020-12-18 10:02:40 -07:00 |
|
xer0dayz
|
87242fb1fd
|
Update issue templates
|
2020-11-30 09:53:06 -07:00 |
|
@xer0dayz
|
1399d227ed
|
* v8.9 - Removed OpenVAS installation
* v8.9 - Fixed Chromium issue in Ubuntu 2020.4
|
2020-11-25 19:25:25 -07:00 |
|
@xer0dayz
|
d536751f66
|
* v8.9 Fixed issue with Smuggler.py not being installed
|
2020-11-24 03:51:37 -07:00 |
|
@xer0dayz
|
0fc6ab630c
|
* v8.9 - Removed OpenVAS installation
* v8.9 - Fixed Chromium issue in Ubuntu 2020.4
|
2020-11-20 05:32:58 -07:00 |
|
@xer0dayz
|
f29caa4e33
|
* v8.8 - Fixed issue with webscreenshot on Kali 2020.3+
|
2020-10-21 13:12:40 -07:00 |
|
@xer0dayz
|
4907e39cce
|
* v8.9 - Fixed error in install.sh for theharvester sym link
* v8.9 - Fixed issue with flyover mode not capturing web screenshots
|
2020-10-20 15:55:05 -07:00 |
|
@xer0dayz
|
0c3e75b2ec
|
Finalizing changes for v8.8
v8.8
|
2020-10-20 14:38:12 -07:00 |
|
@xer0dayz
|
04cb1e114d
|
Finalizing changes for v8.8
|
2020-10-20 08:50:49 -07:00 |
|
@xer0dayz
|
dae095c78c
|
Fixed auto-update code
|
2020-10-19 13:52:53 -07:00 |
|
@xer0dayz
|
e85907bb26
|
Fixed auto-update code
|
2020-09-27 14:44:21 -07:00 |
|
@xer0dayz
|
05c60b4a09
|
Finalized changes for v8.7
Added CVE-2020-15129 - Open Redirect In Traefik sc0pe template
v8.7
|
2020-09-15 08:13:14 -07:00 |
|
@xer0dayz
|
8d7c2bda16
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 13:54:36 -07:00 |
|
@xer0dayz
|
eaadde00dc
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 12:36:54 -07:00 |
|
@xer0dayz
|
7b23ed4902
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 09:39:50 -07:00 |
|
@xer0dayz
|
2ce7c2c6aa
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 09:31:09 -07:00 |
|
@xer0dayz
|
3d76ffa9fc
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 09:00:40 -07:00 |
|
@xer0dayz
|
0463dbf29e
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 08:54:19 -07:00 |
|
@xer0dayz
|
1a96b105db
|
* v8.7 - Updated web file bruteforce lists
* v8.7 - Added updated Slack API integration/notifications
* v8.7 - Added Arachni, Nikto, Nessus, NMap + 20 passive sc0pe vulnerability parsers
|
2020-09-14 08:25:38 -07:00 |
|
@xer0dayz
|
7adb5b3998
|
New sc0pe templates, updated Slack API integration, updated wordlists and misc changes for v8.7
|
2020-09-13 18:08:30 -07:00 |
|
@xer0dayz
|
c236a48aa8
|
Added browser fix for Kali Linux 2020.3+
|
2020-09-07 09:57:47 -07:00 |
|
@xer0dayz
|
7c7b8a3a6b
|
Fixed/added Nessus integration (Pro only)
|
2020-08-26 08:51:01 -07:00 |
|
@xer0dayz
|
4adbb24a48
|
* v8.7 - Fixed logic error in stealth mode recon scans not running
* v8.7 - Added CVE-2020-7048 - WP Database Reset 3.15 Unauthenticated Database Reset
* v8.7 - Fixed F- detection in Wordpress Sc0pe templates
* v8.7 - Added CVE-2020-11530 - Wordpress Chop Slider 3 Plugin SQL Injection
* v8.7 - Added CVE-2019-11580 - Atlassian Crowd Data Center Unauthenticated RCE
|
2020-08-23 16:48:13 -07:00 |
|
@xer0dayz
|
439db5e98f
|
Updated installer
|
2020-08-21 10:26:50 -07:00 |
|
xer0dayz
|
725143b79a
|
Merge https://github.com/1N3/Sn1per
|
2020-08-21 10:25:57 -07:00 |
|
@xer0dayz
|
21e0bb4160
|
Updated installer
|
2020-08-21 10:23:48 -07:00 |
|
xer0dayz
|
47ddf9a59e
|
Update install.sh
Fixed conditional statement
|
2020-08-19 10:19:33 -07:00 |
|
xer0dayz
|
6e6481c83a
|
Merge pull request #284 from gbiagomba/patch-2
Update install.sh
|
2020-08-19 10:10:05 -07:00 |
|
Mad Gray Hatter
|
ec4b6dd32f
|
Update install.sh
added a conditional to check to see if the app being installed is already present, if it isnt the install command will run if not, it will pass it
|
2020-08-19 11:38:47 -04:00 |
|
xer0dayz
|
118b7745cf
|
Merge pull request #283 from gbiagomba/patch-1
Updated install.sh
|
2020-08-18 15:26:11 -07:00 |
|
xer0dayz
|
e0a36c05eb
|
Update install.sh
Just made a small change to forward errors to /dev/null since some packages might not be available on Ubuntu by default.
|
2020-08-18 15:25:18 -07:00 |
|
Mad Gray Hatter
|
3b2d54956e
|
Update install.sh
I condensed the apt install commands
|
2020-08-18 16:42:32 -04:00 |
|
@xer0dayz
|
ef34b0e0f3
|
Updated README to include Nessus integration
|
2020-08-15 12:52:40 -07:00 |
|
@xer0dayz
|
e8e3e9ecbe
|
Added CVE-2019-16759 - vBulletin 5.x 0-Day Pre-Auth Remote Command Execution Bypass
|
2020-08-10 08:55:46 -07:00 |
|
@xer0dayz
|
dae1756f7f
|
Finalizing changes to v8.6
v8.6
|
2020-08-06 13:59:24 -07:00 |
|
@xer0dayz
|
6e13c6ffb9
|
* v8.6 - Added new Sn1per configuration flow that allows persistent user configurations and API key transfer
* v8.6 - Updated port lists to remove duplicate ports error and slim down list
* v8.6 - Updated PHP to 7.4
|
2020-08-06 12:37:07 -07:00 |
|
@xer0dayz
|
4c810f5ced
|
* v8.6 - Added CVE-2020-12720 - vBulletin Unauthenticaed SQLi
* v8.6 - Added CVE-2020-9757 - SEOmatic < 3.3.0 Server-Side Template Injection
* v8.6 - Added CVE-2020-1147 - Remote Code Execution in Microsoft SharePoint Server
* v8.6 - Added CVE-2020-3187 - Citrix Unauthenticated File Deletion
* v8.6 - Added CVE-2020-8193 - Citrix Unauthenticated LFI
* v8.6 - Added CVE-2020-8194 - Citrix ADC & NetScaler Gateway Reflected Code Injection
* v8.6 - Added CVE-2020-8982 - Citrix ShareFile StorageZones Unauthenticated Arbitrary File Read
* v8.6 - Added CVE-2020-9484 - Apache Tomcat RCE by deserialization
* v8.6 - Added Cisco VPN scanner template
* v8.6 - Added Tiki Wiki CMS scanner template
* v8.6 - Added Palo Alto PAN OS Portal scanner template
* v8.6 - Added SAP NetWeaver AS JAVA LM Configuration Wizard Detection
* v8.6 - Added delete task workspace function to remove running tasks
|
2020-08-02 16:51:11 -07:00 |
|