georgiaw / Smartphone-Pentest-Framework

Repository for the Smartphone Pentest Framework (SPF)
452 stars 190 forks source link

request #24

Closed ghost closed 9 years ago

ghost commented 10 years ago

i would post in your forum but its closed and i cant add a pull request. Can you guys add in more exploits?

ghost commented 9 years ago

well here's a couple CVE-2014-7911, CVE-2014-0160, CVE-2014-0160,and http://www.exploit-db.com/exploits/35282/ it would be nice to have them.

georgiaw commented 9 years ago

Ok. I'll work on it. Georgia

On Sun, Nov 30, 2014 at 9:54 AM, Zaxscdvf notifications@github.com wrote:

well here's a couple CVE-2014-7911, CVE-2014-0160, CVE-2014-0160 it would be nice to have them.

— Reply to this email directly or view it on GitHub https://github.com/georgiaw/Smartphone-Pentest-Framework/issues/24#issuecomment-64989505 .

ghost commented 9 years ago

Thank you.

ghost commented 9 years ago

When do you think you can make the update?

ghost commented 9 years ago

k

georgiaw commented 9 years ago

sorry, there's not really anything i can do about the spammer as far as i know. i'll try to get some updates in asap.

On Fri, Dec 12, 2014 at 4:05 PM, Zaxscdvf notifications@github.com wrote:

k

— Reply to this email directly or view it on GitHub https://github.com/georgiaw/Smartphone-Pentest-Framework/issues/24#issuecomment-66842674 .

ghost commented 9 years ago

hey,

I know you have a life and everyhting but hows it going with adding these exploits?

georgiaw commented 9 years ago

Just got some funding for this so I'll have more time and resources to work on this going forward. Sorry for the delay. Georgia On Feb 21, 2015 10:37 AM, "Zaxscdvf" notifications@github.com wrote:

hey,

I know you have a life and everyhting but hows it going with adding these exploits?

— Reply to this email directly or view it on GitHub https://github.com/georgiaw/Smartphone-Pentest-Framework/issues/24#issuecomment-75379517 .

ghost commented 9 years ago

@georgiaw sounds good.

ghost commented 9 years ago

don't mean to rush you or anything but do when do you think you can add these exploits? a couple weeks, months,years..

nazimboudeffa commented 9 years ago

Hi, feel free to look to this "pentest" https://github.com/boudeffa/Smartphone-Pentest-Framework/blob/master/exploits/Android/browser/CVE%3D2010-1759%20Webkit%20Vuln%20Android.py it can be put in server side, and just, send a link with a vector of your choice, to verifiy if the smarthpone is vulnerable, it could inspire to make others based on Android new technologies you surligned, that conatain #{exploit_js} section and a link to explanation, @georgiaw is more accurate to find it but it looks like CVE 2010 1759. And i don't want to make any perturbation in bulbsec cert learning process.

This is not a spam, it could just be suppressed, thank's in advance :8ball: geo

wolfshtein commented 9 years ago

NO ! This a spam ! Stop it ! Or ...

georgiaw commented 9 years ago

The free version here is not going to go back under development presently. The functionality that exists will stay free and I'll update the installer for new versions of the android sdk and Kali but any updates will be in the upcoming pro version (which will have free components). This menu based thing just doesn't really have a future.