Commit Graph

524 Commits

Author SHA1 Message Date
James Barnett
a9efef21c6 Fix bundle install and startup errors. 2017-07-12 17:16:17 -05:00
James Barnett
015bb7513e Add readme_app.
Also moved ruby installs out into its own recipe and included that in readme_app and sinatra recipes.
2017-07-12 17:16:17 -05:00
wchen-r7
7562be145a Update payroll_app 2017-07-12 17:16:01 -05:00
wchen-r7
fd962b47a9 Update payroll_app 2017-07-12 17:16:01 -05:00
wchen-r7
2f8d9ac233 Update chatbot.zip 2017-07-12 17:16:01 -05:00
James Barnett
7bf51a8640 Add vulnerable service cups. 2017-07-12 17:15:59 -05:00
wchen-r7
79d4207cd9 update chatbot.rb 2017-07-12 17:15:45 -05:00
wchen-r7
3b0866ee19 Add chatbot to Linux VM 2017-07-12 17:15:45 -05:00
James Barnett
9ae9c0a561 Enable WebDAV on Apache. 2017-07-12 17:15:29 -05:00
James Barnett
bc8fb88017 Add poc for sql injection. 2017-07-12 17:15:09 -05:00
James Barnett
dc8ffbcec6 Add php page vulnerable to sql injection. 2017-07-12 17:15:09 -05:00
James Barnett
abb0f3b972 Fix syntax in user config. 2017-07-12 17:14:45 -05:00
wchen-r7
848c23898e Add share from Linux 2017-07-12 17:14:45 -05:00
James Barnett
78ead4c361 Add unrealircd vulnerable service. 2017-07-12 17:14:26 -05:00
James Barnett
a731463315 Remove unused file. 2017-07-12 17:14:10 -05:00
wchen-r7
ebdb3eaa7f Add missing file 2017-07-12 17:13:45 -05:00
wchen-r7
adac2ae241 Update sinatra.rb 2017-07-12 17:13:45 -05:00
wchen-r7
9360d8376c Use upstart script 2017-07-12 17:13:45 -05:00
wchen-r7
08e194483b Add a comment explaining where the passwords are 2017-07-12 17:13:28 -05:00
wchen-r7
456a0dec9d Add Samba with vulnerable share
There is a samba share named "public". Cred to access:

chewbacca:rwaaaaawr5
2017-07-12 17:13:13 -05:00
wchen-r7
185c915655 Change port 2017-07-12 17:12:57 -05:00
wchen-r7
92d0e1bc45 Add Sinatra Leaked Secret Deserialization Vulnerability 2017-07-12 17:12:07 -05:00
wchen-r7
cdb7987c67 Embed 6 of Clubs in Sinatra service 2017-07-12 16:51:08 -05:00
wchen-r7
418d7f7ae3 Delete files that are not needed anymore 2017-07-12 14:58:29 -05:00
wchen-r7
3ac074ad7c Add server.rb that contains the flag 2017-07-12 14:16:44 -05:00
wchen-r7
f8339be7fb Add server.rb that contains the flag 2017-07-12 14:16:44 -05:00
wchen-r7
5ba1a36fd3 Add 6 of Clubs 2017-07-12 14:15:09 -05:00
wchen-r7
7050ac524d Add 6 of Clubs 2017-07-12 14:15:09 -05:00
wchen-r7
129119ac97 Update the 7 flags I made previously 2017-07-12 09:05:35 -05:00
wchen-r7
5af298e9c2 Update the 7 flags I made previously 2017-07-12 09:05:35 -05:00
James Barnett
ac6503f0c9 Merge branch 'master' of github.com:rapid7/metasploitable3 into HEAD 2017-07-11 16:21:05 -05:00
sinn3r
6cf3acc553 Merge pull request #1 from rapid7/ctf/port_knocking
Add 5 of Diamonds
2017-07-11 15:55:17 -05:00
wchen-r7
61c8130244 All the scripts needed to build and extract Linux flags 2017-07-07 11:58:46 -05:00
wchen-r7
e974b60adb All the scripts needed to build and extract Linux flags 2017-07-07 11:58:46 -05:00
Chan9390
36d99c45d3
Added IIS, psexec and winrm tests 2017-07-07 18:46:43 +05:30
Chan9390
e90d1b1163
Added port checking 2017-07-07 17:50:21 +05:30
James Barnett
6fd0a57fdf Configure iptables for other services. 2017-07-06 17:08:33 -05:00
James Barnett
fc336a5f1b Configure other services in iptables 2017-07-06 14:52:39 -05:00
Chan9390
b95eec973f
Initial test scripts 2017-07-06 08:55:40 +05:30
James Barnett
367d3fd6db Use actual flag name 2017-06-30 15:45:08 -05:00
James Barnett
5bbed5387e Add five_of_diamonds flag
This flag is hidden within a binary that runs a webservice on a given port.
The port is blocked until the correct port knocking sequence is initiated.
The default port sequence is all of the user's salary numbers.

The commit also moves a lot of values that were previously in recipes into
attributes files for easier maintaining going forward.
2017-06-30 14:47:30 -05:00
jbarnett-r7
262f34dd19 Merge pull request #156 from rapid7/glassfish-patch1
Increased the sleep time in glassfish script #155
2017-06-28 15:02:13 -05:00
Chan9390
6901e885f1
Increased the sleep time in glassfish script #155 2017-06-28 11:15:15 +05:30
Chandrapal
1ecef599ed Merge pull request #154 from brimstone/fix-typo
Fix typo in apache struct installer
2017-06-27 10:57:59 +05:30
Matt Robinson
550140e51f
Fix typo in script
This is windows, not unix :)
2017-06-26 21:01:04 -04:00
Chandrapal
e23c127bf9 Merge pull request #153 from busterb/patch-1
Update packer link
2017-06-26 20:37:39 +05:30
Brent Cook
0109b3fda9 Update packer link 2017-06-26 08:28:19 -05:00
Chandrapal
55d321ac6d Merge pull request #140 from rapid7/feature/build_with_packer
Move Building to Packer
2017-06-23 21:41:01 +05:30
Chan9390
3ff1bc8b45
Added winrm retry_limit and retry_delay 2017-06-22 06:12:30 +05:30
James Barnett
dfcdafe410
Convert users to use attributes file. 2017-06-21 17:15:42 -05:00