bestspear/SharkOne

bugs feedback

Opened this issue · 0 comments

  1. After stageless selects the listener, click generate, but the generation window cannot pop up.
Exception in thread "dialog action: Generate" java.lang.NullPointerException: Cannot read the array length because "<parameter1>" is null
        at sleep.runtime.SleepUtils.getScalar(Unknown Source)
        at common.ScListener.A(ScListener.java:351)
        at common.ScListener.export(ScListener.java:273)
        at common.ScListener.export(ScListener.java:266)
        at aggressor.dialogs.WindowsExecutableStageDialog.dialogAction(WindowsExecutableStageDialog.java:44)
        at dialog.DialogManager$2$1.run(DialogManager.java:129)
        at java.base/java.lang.Thread.run(Thread.java:833)
  1. spawn cannot work
Exception in thread "AWT-EventQueue-0" java.lang.NullPointerException: Cannot read the array length because "<parameter1>" is null
        at sleep.runtime.SleepUtils.getScalar(Unknown Source)
        at common.ScListener.A(ScListener.java:351)
        at common.ScListener.exportLocal(ScListener.java:240)
        at common.ScListener.exportLocal(ScListener.java:230)
        at beacon.TaskBeacon.Spawn(TaskBeacon.java:1758)
        at beacon.TaskBeacon.Spawn(TaskBeacon.java:1771)
        at aggressor.windows.BeaconConsole.actionPerformed(BeaconConsole.java:1117)
        at java.desktop/javax.swing.JTextField.fireActionPerformed(JTextField.java:525)
        at java.desktop/javax.swing.JTextField.postActionEvent(JTextField.java:740)
        at java.desktop/javax.swing.JTextField$NotifyAction.actionPerformed(JTextField.java:856)
        at java.desktop/javax.swing.SwingUtilities.notifyAction(SwingUtilities.java:1810)
        at java.desktop/javax.swing.JComponent.processKeyBinding(JComponent.java:2947)
        at java.desktop/javax.swing.JComponent.processKeyBindings(JComponent.java:2995)
        at java.desktop/javax.swing.JComponent.processKeyEvent(JComponent.java:2909)
        at java.desktop/java.awt.Component.processEvent(Component.java:6403)
        at java.desktop/java.awt.Container.processEvent(Container.java:2266)
        at java.desktop/java.awt.Component.dispatchEventImpl(Component.java:5001)
        at java.desktop/java.awt.Container.dispatchEventImpl(Container.java:2324)
        at java.desktop/java.awt.Component.dispatchEvent(Component.java:4833)
        at java.desktop/java.awt.KeyboardFocusManager.redispatchEvent(KeyboardFocusManager.java:1952)
        at java.desktop/java.awt.DefaultKeyboardFocusManager.dispatchKeyEvent(DefaultKeyboardFocusManager.java:883)
        at java.desktop/java.awt.DefaultKeyboardFocusManager.preDispatchKeyEvent(DefaultKeyboardFocusManager.java:1150)
        at java.desktop/java.awt.DefaultKeyboardFocusManager.typeAheadAssertions(DefaultKeyboardFocusManager.java:1020)
        at java.desktop/java.awt.DefaultKeyboardFocusManager.dispatchEvent(DefaultKeyboardFocusManager.java:848)
        at java.desktop/java.awt.Component.dispatchEventImpl(Component.java:4882)
        at java.desktop/java.awt.Container.dispatchEventImpl(Container.java:2324)
        at java.desktop/java.awt.Window.dispatchEventImpl(Window.java:2780)
        at java.desktop/java.awt.Component.dispatchEvent(Component.java:4833)
        at java.desktop/java.awt.EventQueue.dispatchEventImpl(EventQueue.java:773)
        at java.desktop/java.awt.EventQueue$4.run(EventQueue.java:722)
        at java.desktop/java.awt.EventQueue$4.run(EventQueue.java:716)
        at java.base/java.security.AccessController.doPrivileged(AccessController.java:399)
        at java.base/java.security.ProtectionDomain$JavaSecurityAccessImpl.doIntersectionPrivilege(ProtectionDomain.java:86)
        at java.base/java.security.ProtectionDomain$JavaSecurityAccessImpl.doIntersectionPrivilege(ProtectionDomain.java:97)
        at java.desktop/java.awt.EventQueue$5.run(EventQueue.java:746)
        at java.desktop/java.awt.EventQueue$5.run(EventQueue.java:744)
        at java.base/java.security.AccessController.doPrivileged(AccessController.java:399)
        at java.base/java.security.ProtectionDomain$JavaSecurityAccessImpl.doIntersectionPrivilege(ProtectionDomain.java:86)
        at java.desktop/java.awt.EventQueue.dispatchEvent(EventQueue.java:743)
        at java.desktop/java.awt.EventDispatchThread.pumpOneEventForFilters(EventDispatchThread.java:203)
        at java.desktop/java.awt.EventDispatchThread.pumpEventsForFilter(EventDispatchThread.java:124)
        at java.desktop/java.awt.EventDispatchThread.pumpEventsForHierarchy(EventDispatchThread.java:113)
        at java.desktop/java.awt.EventDispatchThread.pumpEvents(EventDispatchThread.java:109)
        at java.desktop/java.awt.EventDispatchThread.pumpEvents(EventDispatchThread.java:101)
        at java.desktop/java.awt.EventDispatchThread.run(EventDispatchThread.java:90)
  1. For the generated stager exe program, I right-click to run it with administrator permission, and the online user does not add "*" in the interface of the control terminal, that is, there is no uac permission logo.
    So after I run getsystem, it prompts:
beacon> getsystem
[*] Tasked beacon to get SYSTEM
[+] host called home, sent: 2743 bytes
[-] un-implemented relocation type: 4
  1. The beacon running the cs plug-in returns no result, and the beacon exits.
[*] Tasked beacon to run: wmic process get caption,commandline,processid /value
[+] host called home, sent: 92 bytes
[+] beacon exit.

ENV:
Windows 10
java 17.0.7 2023-04-18 LTS
Java(TM) SE Runtime Environment (build 17.0.7+8-LTS-224)
Java HotSpot(TM) 64-Bit Server VM (build 17.0.7+8-LTS-224, mixed mode, sharing)
LLVM-15.0.5-win64.exe

Please fix those