当前位置:网站首页>Hijacking a user's browser with beef
Hijacking a user's browser with beef
2022-07-01 08:08:00 【Cwillchris】
BeEF( The Browser Exploitation Framework) By Wade Alcorn( Wade · Alcon ) stay 2006 Started in , It is still under maintenance . By ruby Language development framework for browser attacks .

The process of execution , Like this malicious pop-up :

zombie( Corpse ) The victim browser .zombie Be being hook( Hook up ) Of , If the browser accesses a tick ( from js To write ) The page of , Will be hook, The linked browser will execute the initial code and return some information , next zombie Every once in a while Time ( The default is 1 second ) Will go to BeEF Server sends a request , Ask if there is new code to execute .BeEF The server itself It's like a Web application , Divided into front end UI, Back end . The front end will poll the back end for new data to be updated , At the same time, the front end can also send instructions to the back end , BeEF Holders can log in through a browser BeEF Back office management UI.
Click application launch beef , If not, input at the terminal beef-xss install
边栏推荐
- 【力扣10天SQL入门】Day9 控制流
- Implementation and encapsulation of go universal dynamic retry mechanism
- 程序员养生宝典
- How to make the two financial transactions faster
- Cmake I two ways to compile source files
- [MySQL learning notes27] stored procedure
- Aardio - 自己构造的getIconHandle的方法
- 軟鍵盤高度報錯
- Cyclic neural network
- Tupu software has passed CMMI5 certification| High authority and high-level certification in the international software field
猜你喜欢

Introduction to kubernetes resource objects and common commands (II)
![[batch dos-cmd command - summary and summary] - Common operators in the CMD window (<, < <, & <,>, > >, & >, & >, & &, ||, (),;, @)](/img/48/de19e8cc007b93a027a906d4d423b2.png)
[batch dos-cmd command - summary and summary] - Common operators in the CMD window (<, < <, & <,>, > >, & >, & >, & &, ||, (),;, @)

The triode is a great invention

Aardio - 阴影渐变文字

【入门】输入n个整数,输出其中最小的k个

038 network security JS

【批处理DOS-CMD-汇总】扩展变量-延迟变量cmd /v:on、cmd /v:off、setlocal enabledelayedexpansion、DisableDelayedExpansion

SharePoint - how to quickly check whether SharePoint is standard or enterprise edition?

What information does the supplier need to know about Audi EDI project?

Software testing methods and techniques - overview of basic knowledge
随机推荐
[untitled]
Chinese font Gan: zi2zi
[kv260] generate chip temperature curve with xadc
OJ input and output exercise
base64
[MySQL learning notes 28] storage function
Learn reptiles for a month and earn 6000 a month? Tell you the truth about the reptile, netizen: I wish I had known it earlier
7-26 word length (input and output in the loop)
[force deduction 10 days SQL introduction] Day10 control flow
seaborn clustermap矩阵添加颜色块
【无标题】
Lm08 mesh series mesh inversion (fine)
Why some people earn nearly 10billion a year, while others earn 3000 a month: the details you ignore actually make the most money
Learn the knowledge you need to know about the communication protocol I2C bus
uni 热更新
Cyclic neural network
IMDB practice of emotion classification (simplernn, LSTM, Gru)
事务方法调用@Transactional
LM08丨网格系列之网格反转(精)
OJ输入输出练习