BeEF, the Browser Exploitation Framework, is a tool that focuses on client-side vectors, specifically on attacking web browsers.
In this recipe, we will exploit an XSS vulnerability and use BeEF to take control of the client browser.
BeEF, the Browser Exploitation Framework, is a tool that focuses on client-side vectors, specifically on attacking web browsers.
In this recipe, we will exploit an XSS vulnerability and use BeEF to take control of the client browser.
Before we start, we need to be sure that we have started the BeEF service and are capable of accessing http://127.0.0.1:3000/ui/panel (with beef/beef as login credentials).
cd /usr/share/beef-xss/
./beef