Browser Exploitation on Rooted 2011
I have found via SecurityByDefault the presentation that Raul Siles made on RootedCon 2011 [Spanish] .
Raul explains how to perform Browser Explotation with Beef and XSS, giving a nice example that combines Beef and Metasploit. This demo exploits a XSS in a web page and a Java vulnerability in the victim’s browser to gain full access to the victim’s computer.
Raúl Siles - Browser Exploitation for Fun and Profit Revolutions (Rooted CON 2011) from rootedcon on Vimeo