Commit Graph

313 Commits

Author SHA1 Message Date
Cage cf3d82cb28 Merge branch 'master' of gitee.com:openkylin/genmai into master
Signed-off-by: Cage <wangjiaming2022@buaa.edu.cn>
2023-03-09 07:51:35 +00:00
shawnlin529 8f788f3fb1 Merge branch 'master' of gitee.com:openkylin/genmai into master
Signed-off-by: shawnlin529 <linqx529@buaa.edu.cn>
2023-03-09 07:50:22 +00:00
Alex 36a6d50027 Merge branch 'master' of gitee.com:openkylin/genmai into master
Signed-off-by: Alex <zy666@buaa.edu.cn>
2023-03-09 07:44:29 +00:00
Re3et 1de354318a
!192 添加漏洞CVE-2021-4204
Merge pull request !192 from 朱永清/master
2023-03-09 07:44:21 +00:00
fengshw 754db1bf8a
更改yaml文件Inter字段
Signed-off-by: fengshw <fengshw@buaa.edu.cn>
2023-03-09 07:36:39 +00:00
Alex 9756e3260e Merge branch 'master' of gitee.com:openkylin/genmai into master
Signed-off-by: Alex <zy666@buaa.edu.cn>
2023-03-09 07:34:30 +00:00
Alex 97a3d42b8b cve-2021-41773 2023-03-09 15:29:43 +08:00
fengshw 7054007219
更改yaml文件Inter字段
Signed-off-by: fengshw <fengshw@buaa.edu.cn>
2023-03-09 07:26:34 +00:00
刘千歌 d631ceeb72 Merge branch 'master' of gitee.com:openkylin/genmai into feat_CVE_2022_25636
Signed-off-by: 刘千歌 <by2139121@buaa.edu.cn>
2023-03-09 07:26:09 +00:00
刘千歌 c1afc5f97e
辅助文件
Signed-off-by: 刘千歌 <by2139121@buaa.edu.cn>
2023-03-09 07:22:46 +00:00
刘千歌 d6447a6256
漏洞利用可执行文件
Signed-off-by: 刘千歌 <by2139121@buaa.edu.cn>
2023-03-09 07:21:48 +00:00
刘千歌 2018568e41
添加CVE-2022-25636漏洞说明
Signed-off-by: 刘千歌 <by2139121@buaa.edu.cn>
2023-03-09 07:20:44 +00:00
Alex b84ae0d42b cve-2021-41773 2023-03-09 15:06:24 +08:00
朱永清 2352e4e8b7 Merge branch 'master' of gitee.com:openkylin/genmai into master
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-09 07:04:55 +00:00
朱永清 09fb95ecad
更新kernelpocs.yaml
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-09 06:58:34 +00:00
fengshw fb54917ad4
添加CVE-2022-0847.yaml
Signed-off-by: fengshw <fengshw@buaa.edu.cn>
2023-03-09 06:58:32 +00:00
朱永清 b89bfe05fc
删除文件 data/KernelPocs/KernelPocs.yaml 2023-03-09 06:55:05 +00:00
朱永清 fa5167f11b
update data/KernelPocs/CVE-2021-4204/CVE-2021-4204.yaml.
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-09 06:51:22 +00:00
朱永清 dac6c175d3
更新了yaml及makefile
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-09 06:50:46 +00:00
朱永清 1aa7b7354a
删除文件 data/KernelPocs/KernelPocs.yaml 2023-03-09 06:50:25 +00:00
朱永清 766a96842e
删除文件 data/KernelPocs/CVE-2021-4204 2023-03-09 06:50:14 +00:00
shawnlin529 dd3c18b848 add pwn file and modifi yaml 2023-03-09 14:49:17 +08:00
朱永清 91b2ce9a5c
删除文件 data/KernelPocs/CVE-2021-4204/test 2023-03-09 06:47:16 +00:00
fengshw c3612ef1c1
添加CVE-2022-0847漏洞,攻击者可以利用此漏洞覆盖重写任意可读文件中的数据,从而可将普通权限的用户提升到特权 root。
Signed-off-by: fengshw <fengshw@buaa.edu.cn>
2023-03-09 06:43:08 +00:00
shawnlin529 1cb3935616 Merge branch 'master' of gitee.com:openkylin/genmai into master
Signed-off-by: shawnlin529 <linqx529@buaa.edu.cn>
2023-03-09 06:19:13 +00:00
Cage aaebc66f38
update data/KernelPocs/CVE-2023-0179/CVE-2023-0179.yaml.
Signed-off-by: Cage <wangjiaming2022@buaa.edu.cn>
2023-03-09 05:52:44 +00:00
kascas 1586ae0bcf correct CVE-2021-4043 to CVE-2021-4034 2023-03-09 13:39:10 +08:00
Cage 84015ca130
update data/KernelPocs/KernelPocs.yaml.
Signed-off-by: Cage <wangjiaming2022@buaa.edu.cn>
2023-03-09 05:01:33 +00:00
Cage 28ffc1d681
add data/KernelPocs/CVE-2023-0179/CVE-2023-0179.yaml.
Signed-off-by: Cage <wangjiaming2022@buaa.edu.cn>
2023-03-09 04:26:32 +00:00
Cage 736cbe5297
update data/KernelPocs/CVE-2023-0179/README.md.
Signed-off-by: Cage <wangjiaming2022@buaa.edu.cn>
2023-03-09 04:02:57 +00:00
Cage 117fbe8780
添加了CVE-2023-0179
添加了CVE-2022-0179的说明及POC

Signed-off-by: Cage <wangjiaming2022@buaa.edu.cn>
2023-03-09 04:01:31 +00:00
DaweiX 906d1c1148
update data/SystemPocs/CVE-2023-25136/CVE-2023-25136.yaml.
Signed-off-by: DaweiX <daweix@buaa.edu.cn>
2023-03-09 04:00:11 +00:00
D1aoBoom 1ad986066f Merge branch 'master' of gitee.com:openkylin/genmai into Feat_Add_CVE_2022_2274
Signed-off-by: D1aoBoom <xionggaojian@buaa.edu.cn>
2023-03-09 03:54:40 +00:00
Cage 2257d0746e
新建 CVE-2023-0179 2023-03-09 03:52:13 +00:00
DaweiX 252945ab3c
update data/SystemPocs/CVE-2023-25136/CVE-2023-25136.py.
remove pyfiglit dependency. move to local host ip

Signed-off-by: DaweiX <daweix@buaa.edu.cn>
2023-03-09 03:51:15 +00:00
DaweiX fcd64c3efa
update data/SystemPocs/CVE-2023-25136/CVE-2023-25136.yaml.
fix yaml condition

Signed-off-by: DaweiX <daweix@buaa.edu.cn>
2023-03-09 03:46:04 +00:00
DaweiX 15095c5ef8 fix conflict
Signed-off-by: DaweiX <daweix@buaa.edu.cn>
2023-03-09 03:42:44 +00:00
yangjipeng 8b67eb3ba4 Update info for Kernel and System main Pocs yaml file. 2023-03-09 11:29:14 +08:00
Amon_S1eepy 8040010b7a 删除文件 data/KernelPocs/CVE-2022-0847/.keep 2023-03-09 03:22:57 +00:00
Amon_S1eepy c71baa94c9 add files
Signed-off-by: Amon_S1eepy <12577316+amon-s1eepy@user.noreply.gitee.com>
2023-03-09 03:22:57 +00:00
Amon_S1eepy e130301847 新建 CVE-2022-0847 2023-03-09 03:22:57 +00:00
D1aoBoom 080d117dd6 Merge branch 'master' of gitee.com:openkylin/genmai into Feat_Add_CVE_2022_2274
Signed-off-by: D1aoBoom <xionggaojian@buaa.edu.cn>
2023-03-09 02:14:53 +00:00
DaweiX 38c2388620 merge poc list file, solve confilct
Signed-off-by: DaweiX <daweix@buaa.edu.cn>
2023-03-09 02:12:07 +00:00
yangjipeng 9543c11f7f Update Systempoc main yaml. 2023-03-09 01:59:36 +00:00
xuwenhan 2d35b06f35 add CVE-2022-0543 2023-03-09 01:44:38 +00:00
yangjipeng 92c5af3d81 Update CVE-2023-22809 judge method. 2023-03-09 09:28:29 +08:00
pil10w 0dfc6e0959 Add CVE-2023-22809 check script 2023-03-09 01:24:23 +00:00
t1an5t 692cf38b4e update data/SystemPocs/CVE-2021-3156/CVE-2021-3156.yaml.
Signed-off-by: t1an5t <tianstcht@buaa.edu.cn>
2023-03-09 00:56:06 +00:00
d1aoboom 3c5bd09c4f Update_SystemPocs.yaml 2023-03-09 00:40:22 +08:00
d1aoboom 8b2860e5ca 添加CVE-2022-2274 2023-03-09 00:33:57 +08:00
shawnlin529 36a7d98af3
add kernal cve CVE-2021-1015
Signed-off-by: shawnlin529 <linqx529@buaa.edu.cn>
2023-03-08 13:33:43 +00:00
朱永清 6364492001
update data/KernelPocs/CVE-2021-4204/test.
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-08 11:54:52 +00:00
朱永清 894ad1ae87
add data/KernelPocs/CVE-2021-4204.
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-08 11:54:08 +00:00
Alex 1c9f712bdb add CVE-2022-0492 2023-03-08 19:52:05 +08:00
朱永清 8047e3c4f7
删除文件 data/KernelPocs/CVE-2021-4204/.keep 2023-03-08 11:37:58 +00:00
朱永清 66d52d1c13
添加CVE-2021-4204核心exploit程序
Signed-off-by: 朱永清 <zhuyongqing100@buaa.edu.cn>
2023-03-08 11:37:31 +00:00
朱永清 e641288592
新建 CVE-2021-4204 2023-03-08 11:36:52 +00:00
daweix b5ebdbb3b9 feat: add CVE-2023-25136 2023-03-08 18:02:04 +08:00
song e25660db90 添加一个poc;解决错误输出获取问题 2023-03-08 17:09:06 +08:00
song 90f00efca1 添加interArgs字段 2023-03-08 14:22:49 +08:00
song e8a4c34e77 添加poc 2023-03-07 16:20:52 +08:00
song 0cb52e8853 update poc 2023-03-07 10:59:30 +08:00
song 306a8fba78 编写genmai使用文档 2023-03-06 17:27:36 +08:00
song 37d54d81db update 2023-03-06 15:34:24 +08:00
song 18a4c42d2e update poc 2023-03-06 15:32:20 +08:00
song 32db062667 uodate system poc 2023-03-06 15:28:17 +08:00
song c63772da1c uodate poc 2023-03-06 15:03:23 +08:00
song 09b830d78e update fastscan 2023-03-06 14:19:03 +08:00
song a170230c41 添加inter字段,修改yaml格式 2023-02-23 11:20:51 +08:00
song ec8cfbd187 修改输出颜色 && 修改system poc 2023-02-20 15:33:12 +08:00
song a353d42037 修改system poc && 修改输出格式 2023-02-20 11:03:12 +08:00
song eceb538dff update system poc 2023-02-17 17:39:03 +08:00
song e818f667f9 启用system模块 2023-02-16 15:35:27 +08:00
song d242616e1b 将绝对路径修改为统一路径 2023-02-16 15:06:44 +08:00
song 5647a248a5 update baseline yaml 2023-01-04 16:35:44 +08:00
song 726f6d1f84 baseline 添加注释 2023-01-03 18:02:09 +08:00
song d798da70be 添加baseline文件 2023-01-03 17:54:48 +08:00
song 76c15e327f 完善baseline模块 2023-01-03 17:14:23 +08:00
song 44856cec87 update baseline 2022-12-30 11:25:49 +08:00
chenxinquan 0563686f85 增加POC——CVE-2022-2588,主要用于测试 2022-12-21 20:02:20 +08:00
chenxinquan 52bf90fbeb 增加扫描主机的信息,并生成报告 2022-12-21 19:28:58 +08:00
chenxinquan cfe465b7cd 增加多线程扫描功能 2022-12-21 18:40:19 +08:00
chenxinquan cf94da03aa 编写报告模板功能,方便以后报告格式的制定 2022-12-21 16:18:53 +08:00
chenxinquan e57e70540b 制造假的SystemPocs,方便测试System的诊脉功能 2022-12-21 03:16:03 +08:00
chenxinquan d2b9f24e08 修复漏洞数为零时会崩溃的bug;为了方便不同开发人员的调试,取消POC绝对路径,改为相对路径;微调POC的yaml文件解析 2022-12-21 00:09:44 +08:00
song db49f555d4 添加baseline 2022-12-19 17:51:56 +08:00
song 3504536417 修改baseline功能 2022-12-09 17:18:18 +08:00
song 4ac348aaba 修改dic 2022-12-08 17:10:27 +08:00
song da6c54b4b3 修改yaml文件格式 2022-12-08 16:36:12 +08:00
chenxinquan 84bdafd29f 修复RecvUtil的一个bug(分隔字符较长是会识别不出来) 2022-12-07 21:37:02 +08:00
chenxinquan 93f0533f87 调试增加的POC:CVE-2022-2639,修复POC交互的bug 2022-12-07 20:50:27 +08:00
songbangchengjin 0092dacc1e 新增POC: CVE-2022-2639 2022-12-07 16:07:19 +08:00
chenxinquan fe9f46216e 完成简单的漏洞报告功能 2022-12-07 15:17:34 +08:00
song 3a8df73a61 添加SSH爆破组件 2022-11-25 11:51:31 +08:00
song efe9f90b6e 添加tools弱密码生成 2022-11-23 15:52:05 +08:00
chenxinquan d70487a8c6 增加POC的参数功能,修改yaml格式并编写相应代码 2022-11-17 13:23:15 +08:00
chenxinquan fcd9c9366d 完成POC交互命令解析功能 2022-11-16 19:12:55 +08:00
chenxinquan ddc77197a3 修正添加配置文件字段 2022-11-16 18:48:19 +08:00
chenxinquan b83703255f 增加Sandbox的Utils功能和cmdGuard接口 2022-11-10 19:37:14 +08:00
chenxinquan 0283ceb6a4 改变了./data文件夹的结构,优化ConfigParserBase的接口名,添加文件后缀识别 2022-11-10 17:25:33 +08:00
chenxinquan 744f81d93a 增加先行路径功(prefix path 2022-11-08 21:29:45 +08:00
chenxinquan 0e3b4584b7 修改测试ExploresListConfig的JSON格式解析功能 2022-11-08 20:48:37 +08:00
chenxinquan 639d5713ee 添加ConfigFilePrifix功能 2022-11-08 20:29:45 +08:00
chenxinquan 1fe0b14a93 完成读取ExplorersListConfig功能,实现Doctor模块诊脉功能 2022-11-08 19:16:35 +08:00
chenxinquan 4c27733fa9 完成Doctor.PushExplorerKernel()和Doctor.Genmai()的编写并测试 2022-11-08 17:27:09 +08:00
chenxinquan f8ee054311 完成从文件读取POC并执行的功能 2022-11-08 14:23:41 +08:00
chenxinquan 85e41aa0a8 添加FormatVer字段,为以后方便升级配置文件的格式 2022-11-04 01:13:58 +08:00
chenxinquan cad98875d3 完成json格式解析功能 2022-11-02 16:26:03 +08:00
chenxinquan 35ce4f9b55 创建修改CVE-2021-3156.json样本,用于genmai的json解析功能 2022-11-02 12:39:38 +08:00
chenxinquan 1e0a682ccf 根绝yaml文件格式,添加修改json文件样本 2022-11-02 12:37:10 +08:00
chenxinquan 08a98d93ed 向./data中添加common,kernel,system,web的yaml模板,有些模板还需要进一步修改 2022-11-02 11:43:12 +08:00
chenxinquan 7d94f46944 编写ExploreKernel模块的解析头结构体 2022-11-02 01:55:15 +08:00
chenxinquan af277dd133 创建data文件夹,添加测试yaml样本文件 2022-11-01 22:58:40 +08:00