mitmf: man in the middle attack framework

Posted by verstraete at 2020-02-25

• September 29, 2014 by 91ri management team

Mitmf is a framework for man in the middle attacks. This framework is based on python. It has several plug-ins and adds more functions in penetration testing. Some practical plug-ins:

Jskeylogger - this plug-in can inject a JavaScript keyboard recorder into the target machine

Javapwn – install fake Java updates on the client side using outdated Java browser plug-ins in combination with Metasploit

Filepwn - this plug-in uses a backdoor factory to disguise executable files and send zip files over HTTP

Spoof – use ARP spoofing, DNS spoofing, ICMP to redirect traffic

Redirectsbrowserprofiler – this plug-in can detect the browser type of the target, which will help identify vulnerabilities

This tool integrates sslstrip and many modules for penetration testing. If you want to use this tool on Kali, you need to add some Python modules, such as pefile and nfqueue.

Finally, you can download the tool on GitHub: https://github.com/byt3bl33d3r/mitmf

