Tuesday, April 3, 2012

New and improved BeEF

Are you ready to thin the herd? It's a new release of BeEF! Here's what you'll get with today's release:
  • The much anticipated RESTful API we've been blogging about
  • QRCode extension (curiosity fed the BeEF!) 
  • Load configurations at the command line with a new -c function, as you requested, @_sid77
  • History extraction from IE and Firefox.

Read about it in this prior blog post.

QRCode extension

This module will generate a BeEF hook QRCode, so that you can hook nosy smartphone users with posters or other social engineering tactics. Devious devious! If you're lucky, you can check out Christian at this month's OWASP AppSec APAC where he'll be speaking about BeEF. Maybe he'll include some tasty bits about this.

The -c command line option

This will load a different master config.yaml file, that will be automatically ignored by GIT. We saw a bunch of people asking for this on Twitter, so we added it.

History Extraction

You should be able to see what sites have been visited if your zombies are using something IE or Firefox. We're working on support for Chrome and Opera, too. But, note, some of the privacy settings in Chrome may still prevent this from working, but where there is not specific blocking software or settings in place, this should get the history data accurately.

Other Stuff

... And we made fixes to the Rickroll module. Youtube keeps adding geo restrictions. But, BeEF is never going to give you up, never going to let you down.

Download the latest BeEF.


  1. Thanks for posting this useful content, Good to know about new things here, Let me share this, . CCNA training in pune

  2. After reading this blog Second home i am very strong and clear in this topic and explanation also very clear in this blog so easy to understand