cliffe / SecGen

Create randomly insecure VMs
GNU General Public License v3.0
2.62k stars 316 forks source link

Policykit updates #300

Closed JD2344 closed 5 months ago

JD2344 commented 7 months ago

Here are some updates to the Polkit exploit. Instead of using the archive repos etc which could cause slow downloads when provisioning, this uses the packages needed for the exploit itself.

These potentially could be moved else where largest package size is ~60kb, so not too pressing.

Updates the relevant software on the target machine just fine and deploys correctly. I have initially tested with mixed results. The Metasploit module relevant, i have had no success with, but verbose output seems to indicate that the correct version is installed on the system... I have been able to deploy a POC script on the machine which seemingly worked initially.

I will do more testing, and see if i can get the exploit to consistently give us results, but as is this deploys correctly.