当前位置:网站首页>Installation and use of beef XSS
Installation and use of beef XSS
2022-07-27 08:16:00 【The tree lost its way】
beef Introduce
BeEF yes The Browser Exploitation Framework Abbreviation . It's a focus on Web Penetration testing tools for browsers .
With the growing concern about customer network attacks, including mobile clients ,BeEF Allow professional penetration testers to use client attack vectors to evaluate the actual security status of the target environment . Unlike other security frameworks ,BeEF Beyond the enhanced network boundaries and client systems , And check availability in an open environment :Web browser .BeEF Hook one or more Web browser , And use them as beachheads to launch directional command modules and further attack the system from the browser context .
BeEF xss Apart from XSS Exploit tools , Or a XSS Platform building tools , It can be built locally or on the server , The only downside : I won't support it Windows
beef-xss install
Type directly :
beef-xssThen install according to the system prompts , Input Y that will do .
Problems arise
Then there is an unexpected error , I'm so happy ! I'm not sure if I don't report an error !

Don't panic , Pay attention to the last system prompt :
E: Several packages cannot be downloaded , Do not run apt-get update Or add --fix-missing Try again ?It's so euphemistic , Then try it .
terms of settlement
According to the last system prompt , type :
sudo apt-get updateThen wait and pray quietly ...
The emperor is willing to help others , installation is complete , No mistake (*|~|*)

Then let's continue typing :
beef-xssNext is the long download and decompression , Let's pray now ...

The result is smooth , This completes the installation !
Startup and use
Type again after the installation :
beef-xssNote that at this time : For the first installation, set and change the password


Start the service and visit the browser :http://127.0.0.1:3000/ui/panel
The default username is beef
If you forget your username and password or need to change it :vim /etc/beef-xss/config.yaml


边栏推荐
- Stored procedure trial 2 -- establish a test table to test different types of stored procedures
- JS access cookie example
- 海量数据肖枫:共建共治openGauss根社区,共享欣欣向荣新生态
- pytorch_ demo1
- 如何在 60 秒内去分析和定位问题?
- docker 安装mysql后进入容器内部发现登录不了mysql
- Ubuntu: install PostgreSQL
- "PHP Basics" use of integer data
- Qt Creator代码风格插件Beautifier
- [golang] golang develops wechat official account web page authorization function
猜你喜欢

On data security

数据提取1

Ubuntu: install PostgreSQL
![[NPUCTF2020]ReadlezPHP 1](/img/d9/590446b45f917be3f077a9ea739c20.png)
[NPUCTF2020]ReadlezPHP 1

How to analyze and locate problems in 60 seconds?

2020国际机器翻译大赛:火山翻译力夺五项冠军

One book 1201 Fibonacci sequence

Prevent cookies from modifying ID to cheat login

Is redis really slowing down?

I can't figure out why MySQL uses b+ trees for indexing?
随机推荐
What is the real HTAP? (1) Background article
"PHP Basics" uses echo statements to output information
借生态力量,openGauss突破性能瓶颈
The dragon lizard exhibition area plays a new trick this time. Let's see whose DNA moved?
Debug: generic related "unresolved external symbols"
Apache SSI remote command execution vulnerability
Lua stateful iterator
Introduction to depth first search (DFS)
All in one 1251 - Fairy Island for medicine (breadth first search)
2022/7/26 exam summary
Day111. Shangyitong: integrate nuxt framework, front page data, hospital details page
Use of string type "PHP Basics"
想让照片中的云飘起来?视频编辑服务一键动效3步就能实现
2020国际机器翻译大赛:火山翻译力夺五项冠军
Idea remote debugging
Harbor can't log in with the correct password
Risk control and application of informatization project
如何更新pip3?和Running pip as the ‘root‘ user can result in broken permissions and conflicting behaviour
Development of three database general SQL code based on PG Oracle and MySQL
SETTA 2020 国际学术会议即将召开,欢迎大家参加!