Sunday, May 22, 2011

JRuby + Buby + wXf = fun


The Web Exploitation Framework has created two separate versions of the console. The version you get depends on the environment it is started in.

If JRuby, as of now, you get a version of the framework that allows you to interact with Burp from the console and run Buby scripts (with the flexibility of changing options easily and quickly).

Here is a video of this new step for the framework:


Buby Module from cktricky on Vimeo.

Documentation can be found at the wiki page for wXf.

For those of you who have been following the Buby Script Basics of this blog, I hope you'll apply that knowledge to creating a module in wXf. This is a great way for us to share our individual scripts in a way that allows them to be customized on the fly (because the console can set options like the rhost, rport, content to extract, etc.)

Anyway, hopefully this new feature of the framework can continue to grow and become a more powerful feature.

Happy Hacking,

~cktricky
cktricky

No comments: