Skip to content

v1.5.27

Compare
Choose a tag to compare
@github-actions github-actions released this 21 Sep 00:43
· 1856 commits to master since this release
v1.5.27
1194920

Commits

  • 01b6a3c: Updated gorm and db drivers (moloch--) #849
  • 82d1728: Updated gorm and db drivers (moloch--) #849
  • 891bb49: Make TAGS overridable in Makefile (moloch--) #849
  • 9c5aa26: Strip query parameters from URLs for incoming HTTP(s) websites (James Golovich) #850
  • eb95065: Handle err condition (James Golovich) #850
  • 56d143b: Catch error on 'loot remote' if file doesn't exist (James Golovich) #851
  • b1db1ab: improvements to the audit log (moloch--) #853
  • b68f4bf: Add additional known security tools (Chris Shields) #854
  • e4793cf: Add trend micro processes (Faisal Fs) #855
  • 59781d4: Update ps.go (Faisal Fs) #855
  • be47791: Add locale to implants Sessions and Beacons (James Golovich) #856
  • ca33777: Add Locale to protobuf definitions (James Golovich) #856
  • 18871a8: Add generated protobuf code (James Golovich) #856
  • 88abea2: Add sysmon + sysmon64 (cmprmsd) #857
  • e31cafa: Fix low entropy x509 subjects (moloch--) #859
  • 3cc7be8: Random cleanups and improvements (moloch--) #860
  • 4ed9537: Bump github.com/spf13/cobra from 1.1.1 to 1.5.0 (dependabot[bot]) #861
  • 3035d75: Bump github.com/sirupsen/logrus from 1.8.1 to 1.9.0 (dependabot[bot]) #863
  • ade96fa: Bump github.com/cheggaaa/pb/v3 from 3.0.5 to 3.1.0 (dependabot[bot]) #864
  • 9e6412c: Bump github.com/gofrs/uuid from 4.0.0+incompatible to 4.3.0+incompatible (dependabot[bot]) #865
  • fb5c6c0: Merge branch 'master' into a7aadependabot/go_modules/github.com/sirupsen/logrus-1.9.0 (Joe) #863
  • 76fb9df: Bump github.com/AlecAivazis/survey/v2 from 2.2.2 to 2.3.6 (dependabot[bot]) #862
  • 25a2205: Merge branch 'master' into a7aadependabot/go_modules/github.com/sirupsen/logrus-1.9.0 (Joe) #863
  • 4917c31: Stop excessive build logging if there are no canaries (James Golovich) #866
  • 187f9e9: Refactor c2 url handling (moloch--) #869
  • 100b26a: Trap failed build when running 'go generate' on the implant (James Golovich) #867
  • cda6aea: Remove un-needed pointers (moloch--) #869
  • 394ba43: Add lic (moloch--) #869
  • ba3ec02: Add lic (moloch--) #869
  • 11959d5: Separate generic and os specific locale functions (James Golovich) #856
  • 097866d: Include github.com/cubiest/jibberjabber files (James Golovich) #856
  • da45b2d: Remove processor constraints for build (James Golovich) #856
  • a2673f7: Add option to log TLS info so packets can be decoded with wireshark (James Golovich) #872
  • acc4e39: Switch to using SSLKEYLOGFILE env var instead of config var (James Golovich) #872
  • 68d624f: Add option for TLS key logging to implant when in debug mode (James Golovich) #872
  • f7a4aac: Change log entries to Debug (James Golovich) #874
  • 4748f61: Sleep before shutting down beacon instead of after (James Golovich) #875
  • 18f8a8c: Delay closing to all coroutines to complete (James Golovich) #875
  • 8bc85b2: added reverse port forwarding (MrAle98) #877
  • b036574: minor fix (MrAle98) #877
  • 0c601bd: Tweak rportfwd implementation (moloch--) #877
  • 754b9f6: Merge master (moloch--) #877
  • 7a9f216: Only include log code when debug mode is enabled (moloch--) #877
  • 5332d0c: Ensure Wireguard keyPort persists (James Golovich) #878
  • 5baf9d3: Improved rportfwd ux (moloch--) #877
  • 62748ed: Align rportfwd and portfwd bind parsing (moloch--) #877
  • 82e58c7: Update sessions.go (Chris Smith) #877
  • e1516ff: Update sessions.go (Chris Smith) #877
  • f8db5d4: Track HTTP time difference in case the implant clock is wrong (James Golovich) #881
  • 5628197: renamed add/rm operations to start/stop. stop returns more information (MrAle98) #883
  • fa11691: client minor fix (MrAle98) #883
  • 8a5855f: fix rportfwd handlers map (MrAle98) #883
  • 7b3739b: rportfwd error handling (MrAle98) #883
  • 03a6f5f: minor fix (MrAle98) #883
  • c894e62: start/stop commands renamed to add/rm (MrAle98) #883
  • f12a605: Outline external build api (moloch--) #884
  • e0b756a: Implement the rest of the external build api (moloch--) #884
  • f042dee: Improved err handling (moloch--) #884
  • bdf0c7b: Improved comments (moloch--) #884
  • b013d55: Add events api (moloch--) #884
  • d469d33: Bump github.com/jedib0t/go-pretty/v6 from 6.2.4 to 6.3.8 (dependabot[bot]) #885
  • 071a0cb: Bump gorm.io/gorm from 1.23.8 to 1.23.9 (dependabot[bot]) #887
  • 85e6121: Print console message when TLS key logging enabled (James Golovich) #872
  • d011b57: Bump github.com/grpc-ecosystem/go-grpc-middleware from 1.2.2 to 1.3.0 (dependabot[bot]) #888
  • c3df9ac: Bump github.com/shirou/gopsutil/v3 from 3.21.10 to 3.22.8 (dependabot[bot]) #886
  • 653f3c7: Reworked staging (rkervella) #889
  • 94a55f0: Remove comments (rkervella) #889
  • 8c144e3: Fix help (moloch--) #890
  • afd0b08: Optionally randomize server JARM fingerprint (moloch--) #891
  • 9c109bd: Merge branch 'master' into jarmy (Joe) #891
  • 620bdd7: Always use min tls 1.2 or lower to ensure compatibility (moloch--) #891
  • 15b7059: always select at least 4 ciphers (moloch--) #891
  • d37de4f: always select at least 4 ciphers (moloch--) #891
  • a0c0657: Add comments (moloch--) #891
  • 9a450d9: Fix max n for min tls (moloch--) #891
  • b6a4992: Remove rc4 ciphers, bump min n (moloch--) #891
  • a6d4e4f: Save implant Wireguard session keys (James Golovich) #893
  • 6b876d5: Fix typo (moloch--) #890
  • d41833c: Allow Wireguard implant to retrieve new keys after 3 connect failures (James Golovich) #893