1. Unmasking You!

    from Jabra

    00:00
    2314

    This talk was presented in Las Vegas 2009 at DefCon 17 by Joshua "Jabra" Abraham and Robert "RSnake" Hansen. The slides and the demos can be found at : http://www.spl0it.org/files/talks/defcon09/

    # vimeo.com/6323251 Uploaded 1,826 Plays / / 0 Comments

  2. Metasploit Autopwn (via BeEF)

    from Jabra

    00:00
    42

    This is a module from the Browser Exploitation Framework (BeEF) to perform an iframe redirection to Metasploit Browser Autopwn or a Browser Exploit. However, in this video, we used netcat (nc) instead of Metasploit. We configured netcat to listen and verify that the request was made to netcat. In exploitation, Metasploit would launch the exploit(s) against the client once the first request is made. This was demonstrated during "Unmasking You!" at

    # vimeo.com/5972070 Uploaded 4,036 Plays / / 0 Comments

  3. 00:00
    55

    This is a module from the Browser Exploitation Framework (BeEF) to load a malicious Java Applet on the client. If the client runs the applet a connection from the client's system to the attacker's system is made using the Metasploit Exploitation Framework. This was demonstrated during "Unmasking You!" at BlackHat 09 and DEFCON 17 by Joshua "Jabra" Abraham and Robert "RSnake" Hansen.

    # vimeo.com/5972048 Uploaded 3,123 Plays / / 0 Comments

  4. Visited URLs (Alexa Top 500)

    from Jabra

    00:00
    31

    This is a module from the Browser Exploitation Framework (BeEF) to identity all of the URL that the client has visited. This technique uses the CSS history to identify valid results. This was demonstrated during "Unmasking You!" at BlackHat 09 and DEFCON 17 by Joshua "Jabra" Abraham and Robert "RSnake" Hansen.

    # vimeo.com/5972022 Uploaded 747 Plays / / 0 Comments

  5. Virtualization Detection

    from Jabra

    00:00
    39

    This is a module from the Browser Exploitation Framework (BeEF) to detect the virtualization technology being used on by the client. This technique uses the MAC address with a regular expression to identify if the client is running on VMware, QEMU, VirtualBox or Amazon EC2. This was demonstrated during "Unmasking You!" at BlackHat 09 and DEFCON 17 by Joshua "Jabra" Abraham and Robert "RSnake" Hansen.

    # vimeo.com/5972002 Uploaded 645 Plays / / 0 Comments

Follow

Jabra

Created by Jabra

Browse This Channel

More stuff from “Jabra

Shout Box

Channels are a simple, beautiful way to showcase and watch videos. Browse more Channels. Channels

Keyboard Shortcuts

Just think about it… What if you were trapped under something heavy and the mouse was out of your reach? Scary, right? That's exactly why we have these keyboard shortcuts so you can still use Vimeo until the help arrives.

  • [ Prev video
  • ] Next video
  • L Like this video
  • S Share this video
  • F Full screen
  • V Couch Mode
  • M More videos
  • ? More shortcuts