Commit Graph

489 Commits

Author SHA1 Message Date
antisnatchor
922e72d2fe Issue 384: xssrays core code cleanup, refactoring and small bugfix (finishing the scan if stack.length=0)
git-svn-id: https://beef.googlecode.com/svn/trunk@1165 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-03 12:22:56 +00:00
antisnatchor
381d083895 Issue 384: added XssRays "Scan config" tab, to configure crossDomain and cleanTimeout options. Added defaults to xssrays config file, also to prevent printing console.log statements if debug=false. Minor changes to xssrays_scan model.
git-svn-id: https://beef.googlecode.com/svn/trunk@1164 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-03 11:59:13 +00:00
antisnatchor
fca36abfdc Issue 384: xssrays core code cleanup, added support for configurable crossDomain, debug and cleanTimeout settings
git-svn-id: https://beef.googlecode.com/svn/trunk@1163 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-03 11:56:23 +00:00
yori.kvitchko
a70de4dbf8 Added get cookies to on-initialize.
git-svn-id: https://beef.googlecode.com/svn/trunk@1162 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-03 06:36:50 +00:00
bcoles@gmail.com
f37433c027 The scroll bars are now removed from a hooked window if the iframe
persistance command has been executed. The scroll bars are removed once 
the user clicks a URL in order to prevent duplicate scroll bars.

Fixes issue 224



git-svn-id: https://beef.googlecode.com/svn/trunk@1161 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-02 13:09:01 +00:00
bcoles@gmail.com
659f351b76 Added signatures to modules/recon/internal_network_fingerprinting
git-svn-id: https://beef.googlecode.com/svn/trunk@1160 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-01 19:25:23 +00:00
antisnatchor
63677e1901 (Fixes issue 424): Updated ExtJS from 3.2.1 to latest stable legacy release (3.4.0). Good performance improvement, known console errors gone :)
git-svn-id: https://beef.googlecode.com/svn/trunk@1158 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-01 12:27:01 +00:00
antisnatchor
df0428ca8f (Fixes issue 423): Updated jQuery to 1.6.2 to fix the console error when using jQuery inside an iFrame on the page (xssrays)
git-svn-id: https://beef.googlecode.com/svn/trunk@1157 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-01 11:43:04 +00:00
antisnatchor
9c57194d38 Issue 384: fixed handling of different ports (!= 80/443) on get-params/Uri-path XSS. commented out some JS debug code.
git-svn-id: https://beef.googlecode.com/svn/trunk@1156 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-08-01 10:14:44 +00:00
antisnatchor
951f59b092 (Fixes issue 400): Now the domain field of the hooked_browser table is filled correctly on hooking initialization.
git-svn-id: https://beef.googlecode.com/svn/trunk@1154 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 17:09:06 +00:00
antisnatchor
f3cac50915 (Fixes issue 415): Added XssRays tab description to Welcome page. Added also that it's possible to right-click on a browser for some functionality.
git-svn-id: https://beef.googlecode.com/svn/trunk@1153 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 16:15:52 +00:00
wade@bindshell.net
359baab712 updated module description and name to reflect that not only IE can be hooked
git-svn-id: https://beef.googlecode.com/svn/trunk@1152 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 16:15:46 +00:00
wade@bindshell.net
6f747b55b5 small update to the network fingerprinting module
git-svn-id: https://beef.googlecode.com/svn/trunk@1151 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:36:28 +00:00
wade@bindshell.net
b1dd65e871 small update to the detect tor module
git-svn-id: https://beef.googlecode.com/svn/trunk@1150 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:35:58 +00:00
wade@bindshell.net
fc707385d0 small update to the site redirect module iframe - default website
git-svn-id: https://beef.googlecode.com/svn/trunk@1149 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:35:30 +00:00
wade@bindshell.net
ea97bb5e78 small update to the site redirect module - default website
git-svn-id: https://beef.googlecode.com/svn/trunk@1148 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:35:07 +00:00
wade@bindshell.net
05c3122501 small update to the link rewrite module - default website
git-svn-id: https://beef.googlecode.com/svn/trunk@1147 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:34:44 +00:00
wade@bindshell.net
fffc9201e8 small update to the detect visited url - default website
git-svn-id: https://beef.googlecode.com/svn/trunk@1146 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:34:21 +00:00
wade@bindshell.net
a82989e0ab small update to the hook ie module - desc
git-svn-id: https://beef.googlecode.com/svn/trunk@1145 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:33:55 +00:00
wade@bindshell.net
226ab296f7 small update to deface module
git-svn-id: https://beef.googlecode.com/svn/trunk@1144 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:33:32 +00:00
wade@bindshell.net
4da081ed19 small update to detect local settings module
git-svn-id: https://beef.googlecode.com/svn/trunk@1143 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:33:02 +00:00
wade@bindshell.net
d9cd1512c1 small update to network fingerprinting module
git-svn-id: https://beef.googlecode.com/svn/trunk@1142 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:32:40 +00:00
wade@bindshell.net
20a5ce41e7 slight name change for linksys modules
git-svn-id: https://beef.googlecode.com/svn/trunk@1141 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 15:32:10 +00:00
passbe
3797e6bffa Metasploit connection issues fixed. BeEF core now sets every extensions path. The msf extension was also using a path variable. Fixes issue 410
git-svn-id: https://beef.googlecode.com/svn/trunk@1140 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-30 12:04:37 +00:00
wade@bindshell.net
1378394142 website link changed on welcome page
git-svn-id: https://beef.googlecode.com/svn/trunk@1139 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 23:48:42 +00:00
wade@bindshell.net
18ae995281 These changes fix the raised exception if a browser has no plugins (Fixes issue 398).
git-svn-id: https://beef.googlecode.com/svn/trunk@1138 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 23:48:12 +00:00
bcoles@gmail.com
1b5f0783d5 Added a 'Router' command module branch and moved the modules targeting
routers to it.

This fixes issue 413

A    modules/router
AM + modules/router/linksys_befsr41_csrf
M    modules/router/linksys_befsr41_csrf/config.yaml
AM + modules/router/linksys_wrt54g_csrf
M    modules/router/linksys_wrt54g_csrf/config.yaml
AM + modules/router/linksys_wrt54g2_csrf
M    modules/router/linksys_wrt54g2_csrf/config.yaml
D    modules/network/linksys_befsr41_csrf
D    modules/network/linksys_wrt54g_csrf
D    modules/network/linksys_wrt54g2_csrf


git-svn-id: https://beef.googlecode.com/svn/trunk@1137 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 18:02:44 +00:00
wade@bindshell.net
d7930dc9da These changes clean up (a little) the details tab.
git-svn-id: https://beef.googlecode.com/svn/trunk@1136 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:54:21 +00:00
wade@bindshell.net
a817fe14c4 These changes clean up the details tab (Fixes issue 398).
git-svn-id: https://beef.googlecode.com/svn/trunk@1135 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:53:57 +00:00
wade@bindshell.net
72703c605f removed the double display of browser name in the details tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1134 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:53:32 +00:00
wade@bindshell.net
c2f16a1833 the detect browser module has been removed as it now runs by default and outputs to the details tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1133 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:53:05 +00:00
wade@bindshell.net
99f14a5553 the detect screen details module has been removed as it now runs by default and outputs to the details tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1132 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:52:33 +00:00
wade@bindshell.net
a0539e2f33 the detect scripts module has been removed as it now runs by default and outputs to the details tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1131 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:52:07 +00:00
wade@bindshell.net
f6edcb5a61 the detect plugins module has been removed as it now runs by default and outputs to the details tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1130 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:51:43 +00:00
wade@bindshell.net
ed6c3a72df iFrame keylogger changed to iFrame event logger
git-svn-id: https://beef.googlecode.com/svn/trunk@1129 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:51:18 +00:00
wade@bindshell.net
1544c6db9f the detect cookies support module has been removed as it now runs by default and outputs to the details tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1128 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:50:48 +00:00
wade@bindshell.net
619a98aaa4 minor change to alert module default text
git-svn-id: https://beef.googlecode.com/svn/trunk@1127 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-29 14:50:25 +00:00
bcoles@gmail.com
cf01bb3b63 Patched modules/misc/clipboard_theft/config.yaml values min_ver and max_ver
git-svn-id: https://beef.googlecode.com/svn/trunk@1126 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 23:55:55 +00:00
antisnatchor
62672b2159 Issue 384: added escape_for_html function to escape PoC data before rendering in ExtJs UI
git-svn-id: https://beef.googlecode.com/svn/trunk@1125 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 13:29:38 +00:00
antisnatchor
4c10509975 (Fixes issue 399): fixed layout issues in XssRays zombie tab
git-svn-id: https://beef.googlecode.com/svn/trunk@1124 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 12:45:47 +00:00
antisnatchor
91577429af Issue 384: removed old field update in hb table (not used anymore, was even preventing xssrays to start)
git-svn-id: https://beef.googlecode.com/svn/trunk@1123 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 12:43:30 +00:00
bcoles@gmail.com
73ae24b029 Added Detect Cookie Support to initialization and details tab
M	extensions/admin_ui/controllers/modules/modules.rb
M	extensions/initialization/handler.rb
M	core/main/client/browser.js

Example output on details tab:

	Session Cookies: Yes
	Persistent Cookies: Yes

Fixes Issue 380



git-svn-id: https://beef.googlecode.com/svn/trunk@1122 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 05:06:53 +00:00
passbe
b9c7528a93 Removed debug message, created too much noise
git-svn-id: https://beef.googlecode.com/svn/trunk@1121 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 01:39:42 +00:00
passbe
3455ebda87 Removed all super() methods and moved all data into new options() method. Fixes issue 330
git-svn-id: https://beef.googlecode.com/svn/trunk@1120 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 01:36:24 +00:00
passbe
5b4ff61909 Final changes to convert from old super() method to new configuration system. Fixes Issue 329
git-svn-id: https://beef.googlecode.com/svn/trunk@1119 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-28 00:50:04 +00:00
passbe
47384be62b Corrected all module targetting config
git-svn-id: https://beef.googlecode.com/svn/trunk@1118 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-27 01:18:26 +00:00
passbe
a137a7be9b Hacked the admin_ui to use the new configuration target system. This commit renders all dynamic modules as VERIFIED UNKNOWN
git-svn-id: https://beef.googlecode.com/svn/trunk@1117 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-27 01:03:45 +00:00
passbe
ebf8694f52 Added BeEF::Core::Configuration.clear(). Swaped module 'target_new' back to 'target'.
git-svn-id: https://beef.googlecode.com/svn/trunk@1116 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-27 00:22:58 +00:00
passbe
72ded4afba Added extension path when loading extension yaml files
git-svn-id: https://beef.googlecode.com/svn/trunk@1115 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-27 00:02:11 +00:00
antisnatchor
a5a9e45076 Issue 384: First draft of XssRays (core xssrays JS)
git-svn-id: https://beef.googlecode.com/svn/trunk@1114 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-07-26 18:36:30 +00:00