
























This week, Metasploit contributor Dean Welch has added an SMB to Meterpreter session upgrade module. It uses PsExec to facilitate the upgrade. Users can load the module with use windows/manage/smb_to_meterpreter and specify the session number they wish to upgrade. This functionality is also available with the command sessions -u <session_id>. This work is part of an overarching effort to enable a variety of session types to be upgraded to Meterpreter when possible.
Author: tmrswrr
Type: Exploit
Pull request: #21491 contributed by capture0x
Path: windows/misc/peyara_remote_mouse_rce
Description: Adds an exploit module for Peyara Remote Mouse v1.0.1 unauthenticated RCE.
Authors: bcoles [email protected] and modexp
Type: Payload (Single)
Pull request: #21239 contributed by bcoles
Path: linux/loongarch64/exec
Description: Adds a new linux/loongarch64/exec command payload.
Author: Dean Welch
Type: Post
Pull request: #21581 contributed by dwelch-r7
Path: windows/manage/smb_to_meterpreter
Description: Adds the ability to upgrade authenticated SMB sessions to Meterpreter sessions using PsExec techniques.
You can find the latest Metasploit documentation on our docsite at docs.metasploit.com.
As always, you can update to the latest Metasploit Framework with msfupdate and you can get more details on the changes since the last blog post from GitHub:
If you are a git user, you can clone the Metasploit Framework repo (master branch) for the latest. To install fresh without using git, you can use the open-source-only Nightly Installers or the commercial edition Metasploit Pro
此内容由惯性聚合(RSS阅读器)自动聚合整理,仅供阅读参考。 原文来自 — 版权归原作者所有。