bmantra
2b3654b1bb
Merge pull request #755 from bmantra/master
...
HP uCMDB CSRF add user module
2012-10-05 04:26:20 -07:00
bmantra
03da56fc7d
HP uCMDB CSRF add user module
2012-10-05 13:23:24 +02:00
bmantra
a0891dbccb
Merge pull request #754 from bmantra/master
...
For now disable the auto msfrpcd load by default
2012-10-04 11:55:54 -07:00
bmantra
d04461d8ff
disable auto msfrpcd
2012-10-04 20:50:51 +02:00
bmantra
f10f374a72
Merge pull request #753 from bmantra/master
...
Initial metasploit auto launch commit #96
2012-10-04 11:03:35 -07:00
Roos
480e797853
auto launch metasploit initial commit
2012-10-04 19:53:36 +02:00
Michele Orru
50df4f1e35
Merge pull request #752 from gallypette/master
...
New template for simple_hijacker social engineering module.
2012-10-01 08:40:13 -07:00
Jean-Louis Huynen
7e43e15838
modified config.yaml of simple_hijacker to activate chromecertbeggar2.js template
2012-10-01 16:11:18 +02:00
Jean-Louis Huynen
104f8189d3
added chromecertbeggar2.js
2012-10-01 16:06:45 +02:00
bcoles
ba20f17831
Ugh. Apparently target can't be null. Fixed.
2012-09-30 18:50:28 +09:30
bcoles
a135e9f51f
Update supported browsers for multiple modules
...
Pretty Theft module does not work in IE
Multiple exploit modules haven't been tested
2012-09-29 17:39:14 +09:30
Brendan Coles
256f63d28a
Merge pull request #748 from pwndizzle/master
...
Update to Pretty_Theft module
2012-09-23 00:18:49 -07:00
bcoles
95f5d78acc
Update supported browsers for lcamtuf download module
...
Opera blocks the `data:` URL popup by default.
Safari is no longer listed as either supported nor unsupported pending
further testing.
2012-09-23 16:04:25 +09:30
pwndizzle
483683ca78
Added Facebook and Linkedin popups, also some code/logic improvements
2012-09-22 18:38:09 +08:00
Michele Orru
fe87d382db
Merge pull request #747 from gallypette/master
...
Small change in Chromecertbeggar template of simple_hijacker module
2012-09-20 03:31:57 -07:00
Jean-Louis Huynen
68bfb46bc7
remplace setInterval by setTimeout in chromecerbeggar.js template
2012-09-20 11:26:27 +02:00
bmantra
edf99db187
Merge pull request #746 from bmantra/master
...
fix for jboss exploit
2012-09-18 12:01:44 -07:00
bmantra
9b62ae83dc
fix jboss exploit with forge_request
2012-09-18 20:59:54 +02:00
antisnatchor
9c7c81bd7f
Web_cloner: managed a corner case when html elements are uppercase (HEAD, FORM)
2012-09-17 12:54:10 +01:00
antisnatchor
e56b083ad5
Fixed typos in readme.txt for web_cloner
2012-09-17 11:03:13 +01:00
antisnatchor
074ca17e42
Added missing cloned_page directory to web_cloner. Added readme.txt on that directory. Enabled the social engineering extension by default. Enabled all the obfuscation techniques in the evasion extension config.
2012-09-17 10:58:07 +01:00
Wade Alcorn
87e3262bae
Tidied up splash
2012-09-14 21:36:50 +10:00
Wade Alcorn
c8b7b506fa
Tidied up splash
2012-09-14 21:24:10 +10:00
Wade Alcorn
921a9928ff
Added twitter account to stdout
2012-09-14 21:10:32 +10:00
Wade Alcorn
62768e1ea2
Changed update method in stdout
2012-09-14 21:08:47 +10:00
Brendan Coles
3b07e700a5
Merge pull request #744 from webstersprodigy/improved-clickjacking
...
Clickjacking Module Update: Better reliability in IE
2012-09-12 19:31:22 -07:00
Rich Lundeen
0b852dd308
Made namespaces consistent and expanded body
...
Adding feedback I missed earlier regarding namespaces. Also since
we're using body instead of window (for IE support), expanding the
body so that the mouse follows everywhere.
2012-09-11 23:17:50 -07:00
Rich Lundeen
2720a5a8b9
Better reliability in IE
2012-09-11 13:09:37 -07:00
Brendan Coles
1c1f2d1f1c
Merge pull request #743 from webstersprodigy/improved-clickjacking
...
Improved clickjacking
2012-09-10 23:02:14 -07:00
Rich Lundeen
bcf842587f
Fixed several minor bugs
2012-09-10 15:36:57 -07:00
Rich Lundeen
cef72c9518
Improved Clickjacking Module
...
Rewrite of bcole's module. Adds support for multiple clicks, Javascript
event feedback, some basic framebusting evasion, and IE support
2012-09-10 14:25:46 -07:00
Wade Alcorn
19b1baee43
Version updated
2012-09-10 21:19:41 +10:00
bcoles
9e47942d3f
Added FreeNAS remote reverse root shell CSRF module
...
For more information see: http://support.freenas.org/ticket/1788
2012-09-09 21:05:16 +09:30
antisnatchor
69c59bb427
Social Eng. extension: moved the extension config line in main config file.
beef-0.4.3.7
2012-09-07 17:21:17 +01:00
antisnatchor
4218f44203
Merge branch 'master' of https://github.com/beefproject/beef
2012-09-07 17:18:04 +01:00
bcoles
384fe7bcab
Fix issue #741
2012-09-07 23:00:24 +09:30
bcoles
8625452751
Add support for Firefox 15
2012-09-07 20:30:19 +09:30
antisnatchor
0dd06d6ecb
Merge branch 'master' of https://github.com/beefproject/beef
2012-09-07 08:41:13 +01:00
antisnatchor
5fc56a9dfa
Social Eng. extension: added stub for mass_mailer DB structure
2012-09-07 08:41:02 +01:00
antisnatchor
6ac074d2b0
Social Eng. extension: now the web_cloner can serve modified pages as well. This is needed when the page use custom logic to submit the form. Added an example of an Edf Energy modified page.
2012-09-06 12:37:26 +01:00
antisnatchor
b3ae5f1016
Social Eng. extension: added EDG Energy template configuration in config.yaml
2012-09-06 11:30:33 +01:00
antisnatchor
64ba4686f4
Social Eng. Extension: added EDF Energy phishing template :D
2012-09-06 11:27:12 +01:00
antisnatchor
2f5fc46a8e
Social Eng. Extension: fixed a bug in mass_mailer when choosing a different template.
2012-09-06 11:26:31 +01:00
Michele Orru
45b839d970
Merge pull request #740 from gallypette/master
...
Simple_hijacker module (Social engineering): Awesome, merging it straight away ;)
2012-09-06 02:07:42 -07:00
bcoles
085f2775f3
Added beef.browser.hasCors() function
2012-09-06 17:50:27 +09:30
Jean-Louis Huynen
716e7fe712
Change stupid code that made this module unusable with the API to something less stupid (i hope)
2012-09-05 15:16:21 +02:00
Jean-Louis Huynen
05d7fe3adf
Adding the Simple Hijacker module in social engineering (route clicks on some links to javascript code)
2012-09-04 17:47:59 +02:00
qswain2
931aeb6ee5
Fixed the module count in the ui to include sub modules (issue 708)
2012-09-03 09:46:03 -04:00
antisnatchor
31387a0aa6
Social Eng. extension: massmailer -> calling IO.popen in a secure way
2012-09-02 19:00:40 +01:00
antisnatchor
d881852216
Social Eng. extension: added notes about 'wget' and 'file' commands required for the extension.
2012-09-02 17:26:38 +01:00