PTF
PTF is a Python script designed for Debian/Ubuntu (plans on expanding to
more) based distributions to create a similar and familiar distribution
for Penetration Testing. As pentesters, we’ve been accustom to the
/pentest/ directories or our own toolsets that we want to keep
up-to-date all of the time.
PTF attempts to install all of your penetration testing tools (latest
and greatest), compile them, build them, and make it so that you can
install/update your distribution on any machine. Everything is organized
in a fashion that is cohesive to the Penetration Testing Execution
Standard (PTES) and eliminates a lot of things that are hardly used. PTF
simplifies installation and packaging and creates an entire pentest
framework for you. Since this is a framework, you can configure and add
as you see fit. We commonly see internally developed repos that you can
use as well as part of this framework. It’s all up to you.
To run PTF, first check out the config/ptf.config file which contains
the base location of where to install everything. By default this will
install in the /pentest directory. Once you have that configured, move
to running PTF by typing ./ptf (or python ptf).
This will put you in a “Metasploitesk” type shell which has a similar look and feel for consistency. Show modules, use
, etc. are all accepted commands. First things first, always type help or ? to see a full list of commands.
If you want to install and/or update everything, simply do the following:
./ptf
use modules/install_update_all
run
This will install all of the tools inside of PTF. If they are already
installed, this will iterate through and update everything for you
automatically. You can also install or update each individual module
separately just by use
then run. If its already installed, it will simply update the package.
You can also show options to change information about the modules. If
you want to create your own module, its simple. First, head over to the
modules/ directory, inside of there are sub directories based on the
Penetration Testing Execution Standard (PTES) phases. Go into those
phases and look at the different modules. As soon as you add a new one,
for example testing.py, it will automatically be imported next time you
launch PTF. There are a few key components when looking at a module that
must be completed.
In order to download PTF, head over to github or clone it.
git clone https://github.com/trustedsec/ptf
Full announcement: https://www.trustedsec.com/may-2015/new-tool-the-pentesters-framework-ptf-released/