antisnatchor
9c7c81bd7f
Web_cloner: managed a corner case when html elements are uppercase (HEAD, FORM)
2012-09-17 12:54:10 +01:00
antisnatchor
e56b083ad5
Fixed typos in readme.txt for web_cloner
2012-09-17 11:03:13 +01:00
antisnatchor
074ca17e42
Added missing cloned_page directory to web_cloner. Added readme.txt on that directory. Enabled the social engineering extension by default. Enabled all the obfuscation techniques in the evasion extension config.
2012-09-17 10:58:07 +01:00
Rich Lundeen
0b852dd308
Made namespaces consistent and expanded body
...
Adding feedback I missed earlier regarding namespaces. Also since
we're using body instead of window (for IE support), expanding the
body so that the mouse follows everywhere.
2012-09-11 23:17:50 -07:00
Rich Lundeen
2720a5a8b9
Better reliability in IE
2012-09-11 13:09:37 -07:00
Rich Lundeen
bcf842587f
Fixed several minor bugs
2012-09-10 15:36:57 -07:00
Rich Lundeen
cef72c9518
Improved Clickjacking Module
...
Rewrite of bcole's module. Adds support for multiple clicks, Javascript
event feedback, some basic framebusting evasion, and IE support
2012-09-10 14:25:46 -07:00
antisnatchor
0dd06d6ecb
Merge branch 'master' of https://github.com/beefproject/beef
2012-09-07 08:41:13 +01:00
antisnatchor
5fc56a9dfa
Social Eng. extension: added stub for mass_mailer DB structure
2012-09-07 08:41:02 +01:00
antisnatchor
6ac074d2b0
Social Eng. extension: now the web_cloner can serve modified pages as well. This is needed when the page use custom logic to submit the form. Added an example of an Edf Energy modified page.
2012-09-06 12:37:26 +01:00
antisnatchor
b3ae5f1016
Social Eng. extension: added EDG Energy template configuration in config.yaml
2012-09-06 11:30:33 +01:00
antisnatchor
64ba4686f4
Social Eng. Extension: added EDF Energy phishing template :D
2012-09-06 11:27:12 +01:00
antisnatchor
2f5fc46a8e
Social Eng. Extension: fixed a bug in mass_mailer when choosing a different template.
2012-09-06 11:26:31 +01:00
qswain2
931aeb6ee5
Fixed the module count in the ui to include sub modules (issue 708)
2012-09-03 09:46:03 -04:00
antisnatchor
31387a0aa6
Social Eng. extension: massmailer -> calling IO.popen in a secure way
2012-09-02 19:00:40 +01:00
antisnatchor
d881852216
Social Eng. extension: added notes about 'wget' and 'file' commands required for the extension.
2012-09-02 17:26:38 +01:00
antisnatchor
ed9b1d5c2e
Social Eng. Extension: webcloner ->calling IO.popen in a secure way
2012-09-02 17:25:50 +01:00
antisnatchor
ae72f9fedf
Social Eng. extension: added request.ip to interceptor logs, adapted output
2012-09-02 16:23:53 +01:00
antisnatchor
8eb0e2d973
Social Eng. Extension: Added DB structure and logic for web_cloner and interceptor.
2012-09-01 15:15:30 +01:00
antisnatchor
6b5302ef21
Social Eng. Extension: Added RESTful API calls for both mass_mailer and web_cloner
2012-08-31 14:08:08 +01:00
antisnatchor
9ea0f60138
Social Eng. extension: added default PDF attachment to config.yaml
2012-08-29 22:48:45 +01:00
antisnatchor
6409b3d98f
Social Eng. extension: mount point for phishing page is not configurable, refactored Interceptor initialization using config settings
2012-08-29 22:36:24 +01:00
antisnatchor
26c7696e0f
Social Eng. extension: if the page can be framed, load it in an overlay iFrame maintaining the hook :D
2012-08-29 21:08:07 +01:00
antisnatchor
0260181d33
Social Eng. extension: added redirection after POST interception, refactored Interceptor class
2012-08-29 19:33:14 +01:00
antisnatchor
20d2e17232
Social Eng. extension: added support for SMTP servers that do not require authentication
2012-08-29 17:50:14 +01:00
antisnatchor
92b2382e25
Social Eng. extension: added support to specify attachments, added automatic MIME type guessing
2012-08-29 17:38:37 +01:00
Jean-Louis Huynen
e86712413c
modified whitespace evasion technique to keep it simple - modified beefjs (just one line, i don't had much time to investigate my change but it seems to work better with it than without it :)
2012-08-29 18:22:22 +02:00
Jean-Louis Huynen
788cef08d3
add whitespace obfuscation technique - should work in theory - but does not in practice
2012-08-29 13:54:26 +02:00
antisnatchor
ffbd3d65b9
Social Eng. extension: various fixes, link/linktext/fromname configurable, adjusted various email headers
2012-08-27 21:30:09 +01:00
antisnatchor
df056fb688
Social Eng. extension: added configurable email templates
2012-08-27 16:10:40 +01:00
antisnatchor
26c86951a4
Social Eng. extension: added mass mailer
2012-08-27 14:30:10 +01:00
antisnatchor
558ca03ef6
Social Eng. extension: added basic structure and web cloner
2012-08-27 10:28:03 +01:00
antisnatchor
7ed9516b53
Obfuscation: removed base64 from the default chain list, added excluded_core_js option
2012-08-25 09:55:53 +01:00
sussurro
8c43fffb36
Fixed Twitter client to not cause errors on failed tweets allowing logins etc to continue
2012-08-12 19:27:19 -07:00
Marc Wickenden
0cec6b87a8
fixed disabling of notifications extension
2012-08-03 23:13:58 +01:00
Marc Wickenden
192eb9706d
disable twitter and email notifications by default
2012-08-03 22:14:20 +01:00
Marc Wickenden
1d3ea4d10c
Merge branch 'master' of https://github.com/beefproject/beef into notifications
2012-08-03 22:03:08 +01:00
Marc Wickenden
45c9f674e4
remove IRC config, might get around to this one day
2012-08-03 22:00:54 +01:00
Marc Wickenden
82dc6fee0d
remove now redundant handler
2012-08-02 11:51:14 +01:00
Marc Wickenden
1a6bf75d57
remove now redundant handlers directory
2012-08-02 11:50:05 +01:00
Marc Wickenden
707759950d
working but kludgey version of notifications with twitter and email support
2012-08-02 11:41:24 +01:00
Christian Frichot
83f29505a5
Minor fix to the Shell interface - can review offline targets now
2012-07-25 14:21:37 +08:00
Christian Frichot
2b8a389da1
Fixes Issue #724 - Console Shell now prints modules which are in sub-categories
2012-07-23 20:30:00 +08:00
bcoles
1defa2dbc2
Multiple changes to console:
...
[console] Fixed bug in displaying browser info in console
[console] Added zombie IDs to console messages
[console] Added browser type to zombie info
[console] Added menu support for selecting multiple zombies (incomplete)
2012-07-22 20:38:28 +09:30
antisnatchor
6188fe4be9
Fix issue #723 . Added amin_ui authenticated endpoints that returns the RESTful api token. useful when calling the Restful api from ExtJS
2012-07-22 11:52:27 +01:00
Marc Wickenden
6ade1469bb
initial commit of notifications extension
2012-07-19 22:51:39 +01:00
bcoles
bfa2e6dbf7
Minor formatting changes to the console
...
Command list now fits on terminals 80 columns wide
2012-07-18 23:48:10 +09:30
bcoles
29ba7dbf38
Added spaces to two config.yaml files
...
Fixes bug with parsing yaml on some versions of Ruby
2012-06-29 08:42:21 +09:30
bcoles
1e0f83d23f
Added better icon for iOS
2012-06-27 21:58:07 +09:30
antisnatchor
727c746303
Added Java to the baloon popup of the admin_ui, and removed phonegap.
2012-06-27 12:28:09 +01:00