Monday, January 26, 2015

DevOoops: Revision Control (GitList)

More info from the DevOoops talk

Remote Code Execution in GitList

background blog post here:

P.S. if you don't read that blog, you should :-)

MSF module:

Read the blog post for the interesting details.

fun screenies

Manually checking if a site is vulnerable

Backdoor PHP using the python POC

Shell via the metasploit module

I didn't think anyone used this stuff, but its apparently pretty popular


current stable version 0.5.0 fixes the issue


No comments: