bcoles
|
55b0bee9ca
|
Re-enable XSS-Rays vectors containing ' charater
Fix issue #47
|
2013-04-14 20:38:41 +09:30 |
|
Christian Frichot
|
950c3d37a7
|
Fixes Issue #880. Detect Tor update - now works
|
2013-04-13 14:51:34 +08:00 |
|
Christian Frichot
|
1721d3c263
|
Fixes issue #879. Console enhancements.
|
2013-04-13 14:48:40 +08:00 |
|
antisnatchor
|
5585879cca
|
Updated multiple core files to use hook_session_name consistently from the config.yaml file.
|
2013-04-09 10:25:49 +01:00 |
|
Christian Frichot
|
d855100ac9
|
Fixes #878 and #758.
|
2013-04-08 21:52:50 +08:00 |
|
Christian Frichot
|
fad33dfea7
|
Fixes #877. New IE Fake Notification Bar Module
|
2013-04-08 19:36:02 +08:00 |
|
Christian Frichot
|
b4732a9438
|
Fixes #876. Can detect Chrome 26.
|
2013-04-08 13:08:56 +08:00 |
|
antisnatchor
|
73e291832e
|
Replacing document.location.href with location in xssrays.js.
|
2013-04-07 15:54:14 +01:00 |
|
antisnatchor
|
85b204f52b
|
Updated beef.hardware component name for consistency.
|
2013-04-07 13:19:23 +01:00 |
|
antisnatchor
|
78410e28eb
|
Changed attachApplet dom.js method to use <applet> also for Firefox, instead of the <embed> tag. This fixes some issues when running Signed Applets.
|
2013-04-06 12:30:00 +01:00 |
|
antisnatchor
|
222cff3f1d
|
Added a README file for the JavaPaylod signed applet exploit.
|
2013-04-06 12:29:05 +01:00 |
|
Christian Frichot
|
2ef1b5bab8
|
Updates gmail phishing command module. Fixes #873
|
2013-04-06 15:54:55 +08:00 |
|
Christian Frichot
|
af67c6a8d9
|
Few enhancements to dom.js. See #870 #871 #872
|
2013-04-06 15:52:32 +08:00 |
|
Christian Frichot
|
79572a61f0
|
Renamed webcam_permission_check module
|
2013-04-06 14:35:21 +08:00 |
|
Christian Frichot
|
2fcdf1038d
|
xntriks updates to webcam_perm_check
|
2013-04-06 14:32:51 +08:00 |
|
Christian Frichot
|
cca21f1003
|
Merge pull request #869 from bw-z/master
Added Webcam Permission Check Module - which I'll then update.
|
2013-04-05 23:29:21 -07:00 |
|
Christian Frichot
|
07fe3a9c0e
|
Updates to tabnabbing module to use jQuerys wider event handling. #868
|
2013-04-04 21:33:43 +08:00 |
|
Christian Frichot
|
69fd3e600c
|
Event log now logs when a zombie comes back online. #867
|
2013-04-04 21:29:18 +08:00 |
|
Christian Frichot
|
ae98842ad4
|
Tiny fix to Clippy so it appears properly. #866
|
2013-04-04 19:37:08 +08:00 |
|
bcoles
|
159ecb5ade
|
Fix malformed YAML in 'deface_web_page_component' module
|
2013-04-04 00:04:45 +10:30 |
|
BWZ
|
cf4ab9533e
|
Added Webcam Permission Check Module
|
2013-04-03 09:01:15 +10:00 |
|
Christian Frichot
|
9a23ed758e
|
New getHighestZindex function in beef.dom and updated createIframe beef.dom function. #865
|
2013-04-02 14:33:57 +08:00 |
|
Christian Frichot
|
389f27360d
|
Slight spelling mistake fix up in the Welcome tab of the Admin UI
|
2013-04-01 19:51:16 +08:00 |
|
Christian Frichot
|
e8eda3ef99
|
Minor enhancements to the Admin UI. #864
|
2013-04-01 11:07:50 +08:00 |
|
Saafan
|
af8018500b
|
Fixing some unit tests
|
2013-03-31 16:22:58 +02:00 |
|
Christian Frichot
|
22cd68101d
|
Added Bookmarklet to the Welcome Tab in the Admin UI. #863
|
2013-03-30 17:31:36 +08:00 |
|
bcoles
|
760e7a456e
|
Update version
|
2013-03-29 15:59:48 +10:30 |
|
Christian Frichot
|
26933fe146
|
Fix for #826. Plus - logs also include a column for which browser an event is associated with
beef-0.4.4.3
|
2013-03-29 13:33:09 +08:00 |
|
bcoles
|
9ca50e0505
|
Comment out two console.log() lines in hookChildFrames
|
2013-03-29 15:16:56 +10:30 |
|
Christian Frichot
|
31e1ddddaf
|
New Defacement Module - but only rewrites targeted content. #861
|
2013-03-25 19:33:38 +08:00 |
|
Christian Frichot
|
7e57313e21
|
New Link Rewrite (Hidden using overwritten click handling) module. #860
|
2013-03-25 19:26:59 +08:00 |
|
BWZ
|
c0f0735150
|
LiveCD config files and splash logo
|
2013-03-25 12:08:25 +10:00 |
|
BWZ
|
39bc121b76
|
LiveCD - Added IP Address to GUI when ssh enabled
|
2013-03-25 11:29:02 +10:00 |
|
BWZ
|
dc4665e1d3
|
LiveCD - Updated URI + Version + MD5
|
2013-03-25 11:21:00 +10:00 |
|
Brendan Coles
|
497c3eb3f3
|
Merge pull request #859 from gcattani/ApacheCookieDisclosure
Module: Apache HTTP Server cookie disclosure (exploit)
|
2013-03-19 11:22:59 -07:00 |
|
gcatt
|
6abb21ac53
|
Module: Apache HTTP Server cookie disclosure (exploit)
|
2013-03-19 17:29:48 +01:00 |
|
bcoles
|
fb26ef5f71
|
Add beef.browser.hookChildFrames()
BeEF now automatically hooks all same-domain child (i)frames
Allows logging of child frame events - fixes issue #493
|
2013-03-18 00:37:15 +10:30 |
|
bcoles
|
c98d9a4300
|
Manually merged Windows Media Player detection from @gcattani
Fix issue #833
Fix issue #847
|
2013-03-17 03:30:12 +10:30 |
|
bcoles
|
f3f624e9a4
|
Fixed bug introduced in commit 8132eb0e53
|
2013-03-17 03:21:38 +10:30 |
|
bcoles
|
8132eb0e53
|
Solution: Hide beef behind an apache webserver
Manually merge code from @lalaglubsch
Add support for BeEF through a proxy
Fix issue #856
|
2013-03-16 20:12:27 +10:30 |
|
antisnatchor
|
7364529b26
|
Merge branch 'master' of https://github.com/beefproject/beef
|
2013-03-12 10:57:16 +00:00 |
|
antisnatchor
|
de1de356f7
|
Added GoogleWebStore module.rb option. Modified link opener to support data URI injections.
|
2013-03-12 10:57:07 +00:00 |
|
Brendan Coles
|
4cec0cb1b8
|
Merge pull request #855 from javuto/829-Foxit-reader-plugin-detection
Detection added for the Foxit Reader plugin, fixes #829
|
2013-03-10 21:44:07 -07:00 |
|
Javier Marcos
|
657aac9dcd
|
Detection added for the Foxit Reader plugin, fixes #829
|
2013-03-11 00:19:19 +00:00 |
|
bmantra
|
2d710a1bcf
|
Merge pull request #853 from bmantra/master
add fingerprint of m0n0wall to internal network fingerprint module
|
2013-03-08 12:03:07 -08:00 |
|
bmantra
|
2484704fe8
|
add fingerprint for m0n0wall
|
2013-03-08 21:00:52 +01:00 |
|
Michele Orru
|
7ad93130d9
|
Merge pull request #852 from bmantra/master
Added m0n0wall 1.33 CSRF root reverse shell exploit #824
|
2013-03-07 08:45:42 -08:00 |
|
bmantra
|
de2bd15769
|
module for m0n0wall csrf reverse root shell #824
|
2013-03-06 19:34:27 +01:00 |
|
antisnatchor
|
713a20f157
|
Replaced eval with new Function when executing data coming from BeEF's WebSocket server.
|
2013-03-05 10:37:49 +00:00 |
|
antisnatchor
|
6a968e77c0
|
Removed all the crappy Oracle code to detect if java is enabled. Was preventing x-domain hooking on FF.
|
2013-03-04 22:07:47 +00:00 |
|