75 karma · joined July 22, 2011
As I said to someone in another comment, the main purpose of the framework is socket.io packet analysis. The http detectives are merely for testing at this point while the framework itself matures
If you want to prevent this from happening there will be http-xss and socket-xss detectives in the future, just leave out the http-xss to keep it safe. Optionally you could always set your payloads to logging only
Entire project was created in a matter of hours so it's pretty basic for now. Not a fan of the "this is lame shitsux" mentality going around but I'll get used to it. All included modules will become much more sophisticated with time so please hold those comments off until I get more than 2 hours to put towards the project
If you have any detection/payload suggestions please comment in here and I will most likely add them. Keep in mind that this is all for the lulz
If you have anything you want to add, feel free to fork!
And yes, some things are not finished yet. The project was started a matter of hours ago and not even close to it's full potential
EDIT: Keep in mind you are the one who decides what modules and payloads to use. Blacklisting is optional