-
Notifications
You must be signed in to change notification settings - Fork 406
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Module] printerbug #163
[Module] printerbug #163
Conversation
@lodos2005 What did you test this against? The printerbug.py in dirkjanm's repo works for me, but the module you submitted does not coerce authentication (I'm running krbrelayx and specifying the LISTENER as my attacker IP). |
@Marshall-Hallenbeck You are right, I edited the trigger code now. Everything should be working properly now. |
Shouldn't we merge this into the spooler module as well as the printnightmare one. One module to rull them all :P |
I have reviewed the module and it is really great as it does both the check and the exploit. Love it. I'd rather have something saying "Spooler activated" or "Vulnerable" but I wouldn't mention krbrelayx since first, I don't use it, second there are others tools that can be used to relay :) |
Add MS-RPRN abuse (PrinterBug) Signed-off-by: Hakan Yavuz <lodos05@gmail.com>
Fix trigger Signed-off-by: Hakan Yavuz <lodos05@gmail.com>
Signed-off-by: Hakan Yavuz <lodos05@gmail.com>
Fix linter Signed-off-by: Hakan Yavuz <lodos05@gmail.com>
fix linter Signed-off-by: Hakan Yavuz <lodos05@gmail.com>
Hey, thanks for the PR and sorry for the late response! |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
I will have more beautiful changes for coerce but for now we can merge this. LGTM too |
Add MS-RPRN abuse (PrinterBug)
For exploit:
https://github.com/dirkjanm/krbrelayx/blob/master/printerbug.py