Module: Mozilla Firefox XSL Parsing Remote Memory Corruption PoC

Events: Submitted by Wade on 29-Mar-09 at 02:35pm

I have just created a BeEF module for the Mozilla Firefox XSL Parsing Remote Memory Corruption Proof of Concept. When executed it will crash the Firefox zombie. So don't expect to see the zombie in BeEF afterward.

InfoSec World 2009 - Browser Security

Security: Submitted by Wade on 24-Mar-09 at 03:07am

Interested in Browser Security? Josh Abraham has published his InfoSec World presentation - Total Browser Pwnag3.

Update: The Demos are available here.

Module: Quicktime Detect

Events: Submitted by Wade on 17-Mar-09 at 03:35am

This module checks if QuickTime is available in the browser. Like the other modules, to update BeEF, just copy it to the modules/symmetric directory and match the permissions.

Module: Autorun JS Module

Events: Submitted by Wade on 06-Mar-09 at 08:44pm

The autorun modules execute immediately upon a zombie connecting to the BeEF server. This JavaScript Autorun Module is a lot more flexible than the current ones included in the framework. It provides two configurable options. The first is a regexp that will be compared against the zombie's useragent and, if it evaluates to true, the second (standard JavaScript) is executed.