Главная
Study mode:
on
1
Intro
2
Infrastructure and Process
3
Data Models Model Concern Credential
4
Code and Functionality
5
Credentials Refactor Credential:{Private Public Realm}
6
Mimikatz 1.x Works on 2000 & XP Golden Ticket LSA secrets
7
Incognito v2 Support for 2008+ Recognizes deny-only SIDS
8
ADSI adsi_computer_enum adsi_domain_query adsi_user_enum
9
Clipboard management clipboard_get_data clipboard_set_data
10
BrowserExploitServer Incorporates JSObfu and OS/app detection Simplifies browser exploits ROPDB
11
Javascript Detection Updates for Os detection Support for extensions
12
Firefox Post Exploitation post/firefox/gather cookies history passwords
13
AddJavascriptInterface android/browser/webview_addjavascriptinterface
14
AOSP Browser UXSS auxiliary/gather/android_stock_browser_uxss
15
Printer Job Language HP's thing for talking to printers
16
Reverse Hop HTTP(S) Drop small PHP script on an intermediate host
17
Future work Moar credentials!!1!!! SMB2
Description:
Explore new features and enhancements in the Metasploit Framework in this 43-minute conference talk. Dive into infrastructure improvements, data model updates, and credential handling refinements. Learn about Mimikatz 1.x compatibility, Incognito v2 support, and ADSI enhancements. Discover updates to the BrowserExploitServer, including JavaScript obfuscation and OS detection. Examine new post-exploitation modules for Firefox, Android exploits, and printer communication. Gain insights into reverse hop HTTP(S) techniques and future developments in credential handling and SMB2 support.

More New Shiny in the Metasploit Framework

Add to list