metasploit-framework

https://github.com/rapid7/metasploit-framework

Ruby

Metasploit Framework

Msf::Auxiliary::Web#find_proof

Serves as a default detection method for when performing taint analysis.

Uses the Regexp in #signature against the response body in order to
identify vulnerabilities and return a String that proves it.

Override it if you need more complex processing, but remember to return
the proof as a String.

response - Auxiliary::Web::HTTP::Response
element - the submitted element

Source | Google | Stack overflow

Edit

git clone [email protected]:rapid7/metasploit-framework.git

cd metasploit-framework

open lib/msf/core/auxiliary/web.rb

Contribute

# Make a new branch

git checkout -b -your-name--update-docs-Msf--Auxiliary--Web-find_proof-for-pr


# Commit to git

git add lib/msf/core/auxiliary/web.rbgit commit -m "better docs for Msf::Auxiliary::Web#find_proof"


# Open pull request

gem install hub # on a mac you can `brew install hub`

hub fork

git push <your name> -your-name--update-docs-Msf--Auxiliary--Web-find_proof-for-pr

hub pull-request


# Celebrate!