Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates. It comes with pre-made binaries (agents), a working default configuration for fast pentests, and has it's own WebServer and DNSServer modules. Easy to set up new settings, and has an autoconfiguration when new binary agents are set. Evilgrade works with modules, in each module there's an implemented structure which is needed to emulate a fake update for an specific application/system.
Features
- It works similar to an IOS console
- VirtualHost field contains the domains that our webserver is going to emulate for us
- Start services (DNS Server and WebServer)
- Module development is very simple
- Don't forget to run evilgrade with an user that has privileges to create listening sockets, otherwise you won't be able to use evilgrade's Services
- Everytime you modify a module with evilgrade running don't forget to 'reload' them
Categories
MiTM (Man-in-The-Middle) AttackLicense
MIT LicenseFollow Evilgrade
Other Useful Business Software
Our Free Plans just got better! | Auth0
You asked, we delivered! Auth0 is excited to expand our Free and Paid plans to include more options so you can focus on building, deploying, and scaling applications without having to worry about your security. Auth0 now, thank yourself later.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of Evilgrade!