/
githubmirror
/
metasploit-framework
Обзор
Документация
Войти
/
githubmirror
/
metasploit-framework
Код
Запросы
0
Пакеты
0
Релизы
0
Аналитика
Безопасность
master
lib/msf/ui/tip.rb
77 строк
5 KB
Spencer McIntyre
Add notes about the new option
04 фев 2026, 01:38
04 фев 2026, 01:38
c8c7705
Код
Авторство
О чём код?
# -*- coding: binary -*- # frozen_string_literal: true module Msf module Ui ### # # Module that contains some most excellent tips. # ### module Tip def self.highlight(string) "%grn#{string}%clr" end COMMON_TIPS = [ "View all productivity tips with the #{highlight('tips')} command", "Enable verbose logging with #{highlight('set VERBOSE true')}", "When in a module, use #{highlight('back')} to go back to the top level prompt", "Tired of setting #{highlight('RHOSTS')} for modules? Try globally setting it with #{highlight('setg RHOSTS x.x.x.x')}", "Enable HTTP request and response logging with #{highlight('set HttpTrace true')}", "You can upgrade a shell to a Meterpreter session on many platforms using #{highlight('sessions -u <session_id>')}", "Open an interactive Ruby terminal with #{highlight('irb')}", "Use the #{highlight('resource')} command to run commands from a file", "To save all commands executed since start up to a file, use the #{highlight('makerc')} command", "View advanced module options with #{highlight('advanced')}", "You can use #{highlight('help')} to view all available commands", "Use #{highlight('help <command>')} to learn more about any command", "View a module's description using #{highlight('info')}, or the enhanced version in your browser with #{highlight('info -d')}", "After running #{highlight('db_nmap')}, be sure to check out the result of #{highlight('hosts')} and #{highlight('services')}", "Save the current environment with the #{highlight('save')} command, future console restarts will use this environment again", "Search can apply complex filters such as #{highlight('search cve:2009 type:exploit')}, see all the filters with #{highlight('help search')}", "Metasploit can be configured at startup, see #{highlight('msfconsole --help')} to learn more", "Display the Framework log using the #{highlight('log')} command, learn more with #{highlight('help log')}", "Network adapter names can be used for IP options #{highlight('set LHOST eth0')}", "Use #{highlight('sessions -1')} to interact with the last opened session", "View missing module options with #{highlight('show missing')}", 'Start commands with a space to avoid saving them to history', 'You can pivot connections over sessions started with the ssh_login modules', "Use the #{highlight('analyze')} command to suggest runnable modules for hosts", "Set the current module's #{highlight('RHOSTS')} with database values using #{highlight('hosts -R')} or #{highlight('services -R')}", "Use the #{highlight('capture')} plugin to start multiple authentication-capturing and poisoning services", "The #{highlight('use')} command supports fuzzy searching to try and select the intended module, e.g., #{highlight('use kerberos/get_ticket')} or #{highlight('use kerberos forge silver ticket')}", "Organize your work by creating workspaces with #{highlight('workspace -a <name>')}", "Store discovered credentials for later use with #{highlight('creds')}", "Keep track of findings and observations with #{highlight('notes')}", "Add routes to pivot through a compromised host using #{highlight('route add <subnet> <session_id>')}", "Run modules in the background with #{highlight('run -j')} so you can keep working", "Stop all background jobs quickly with #{highlight('jobs -K')}", "Export your database results with #{highlight('db_export -f xml <file>')}", "Execute a command across all sessions with #{highlight('sessions -C <command>')}", "Use #{highlight('post/multi/manage/autoroute')} to automatically add pivot routes", "Use #{highlight('check')} before #{highlight('run')} to confirm if a target is vulnerable", "Bind your reverse shell to a tunnel with #{highlight('set ReverseListenerBindAddress <tunnel_address>')} and #{highlight('set ReverseListenerBindPort <tunnel_port>')} (e.g., ngrok)", "Use #{highlight('set LDAP::QuerySacl false')} to view security descriptors with the ldap_query module from non-privileged accounts" ].freeze private_constant :COMMON_TIPS DEVELOPER_TIPS = [ "Writing a custom module? After editing your module, why not try the #{highlight('reload')} command", "Use the #{highlight('edit')} command to open the currently active module in your editor", ].freeze private_constant :DEVELOPER_TIPS ALL_TIPS = COMMON_TIPS + DEVELOPER_TIPS private_constant :ALL_TIPS def self.all ALL_TIPS end def self.sample ALL_TIPS.sample end end end end