Commit Graph

185 Commits (c8b892badb63ef609bd9623cf92ca58b444d6a14)

Author SHA1 Message Date
Darren Kitchen 42819e4e6b Add SMB Exfiltrator Payload
This is an awesome payload check out Hak5 episode 2202
2017-03-21 14:12:41 +07:00
Sebastian Kinne c9e41fc7d9
Payload: Fixed CaptivePortal 2017-03-21 08:19:12 +11:00
oXis e60512e4a1 fix delay 2017-03-18 12:25:03 +00:00
oXis 21abacc54f add firefox support 2017-03-18 12:09:34 +00:00
oXis 1ecaddbf55 add WindowsCookies payload 2017-03-17 19:59:11 +00:00
oXis 55aeb316af fix 2017-03-17 19:57:41 +00:00
oXis 62f185e5ff Add WindowsCookies payload 2017-03-17 19:52:40 +00:00
Alex Flores 8582c62376 iptables are always the answer 2017-03-16 18:22:38 -04:00
Alex Flores 448aea41c3 monkey patch fqdn search in BaseHTTPServer 2017-03-16 18:07:15 -04:00
Sebastian Kinne 14472b2a05 Merge pull request #65 from mathew-fleisch/master
Payload: Fixed a bug and updated the read-me doc.
2017-03-17 06:54:27 +11:00
Mathew Fleisch afd4e45e6c Updated read-me 2017-03-16 12:33:56 -07:00
Mathew Fleisch 9dab90d52a Moved log file location and changed how the /dev/nandf mount is detected. 2017-03-16 11:45:19 -07:00
Mathew Fleisch c9f037ee9d Use wild card instead of explicit directory numbers 2017-03-16 11:12:24 -07:00
Mathew Fleisch a1fcf6d584 Added better logging for debugging and updated read-me 2017-03-16 10:29:11 -07:00
Mathew Fleisch 00a365a706 Fixed a bug and updated the read-me doc. 2017-03-15 22:19:43 -07:00
Sebastian Kinne aa6bc50c39 Merge pull request #40 from ralphyz/master
Reverse Shell - with auto-increment port
2017-03-16 10:34:57 +11:00
Sebastian Kinne df5f9f804e Merge pull request #37 from WatskeBart/patch-1
Removed STORAGE from switch 2 payload.txt
2017-03-16 09:33:17 +11:00
Sebastian Kinne 3c5046f907 Merge pull request #60 from hak5darren/master
Add 90sMode Payload for immense fun
2017-03-16 07:57:05 +11:00
Alex Flores da987207f6 made some edits
* removed the paranoia mount. we don't need to test that the kernel
is doing it's job when mount fstab

* log to a persistent location

* edited ignore loop to include hidden directories
2017-03-15 15:44:01 -04:00
Mathew Fleisch d1598208c2 Minor changes and cleanup 2017-03-15 08:47:09 -07:00
Mathew Fleisch a30bd97954 Made some changes based on audibleblink's suggestions/comments 2017-03-15 08:29:28 -07:00
Darren Kitchen 47c863e5b5 Add 90sMode Payload for immense fun 2017-03-15 21:36:36 +07:00
Alex Flores b30ff86c2c add ShellExec payload 2017-03-15 02:30:29 -04:00
Mathew Fleisch d094d2c6e0 Payload to automatically set up/update git repo
This payload was made in collaboration with audibleblink through irc. We both came up with the same idea, but I took it a step further, by adding a git-pull/update after the first payload execution. Original repo at https://github.com/mathew-fleisch/Git-Bunny-Git
2017-03-14 21:43:53 -07:00
Sebastian Kinne 8a07d71927 Merge pull request #45 from GermanNoob/master
Updated install.sh to solve problems mentioned in forum
2017-03-14 14:05:20 +11:00
Sebastian Kinne 6c84710e9e Merge pull request #49 from audibleblink/update/smacandgrab
Payload: smacandgrab - adds comments and apple keyboard vid/pid
2017-03-14 13:50:39 +11:00
Sebastian Kinne 1e8406bc38 Merge pull request #52 from mrt0mat0/MRS
Add Mac Reverse Shell payload
2017-03-14 13:48:03 +11:00
Chris 70af321846 MRS initial add of reverse shell for mac 2017-03-13 21:50:31 -04:00
Chris 00684c8857 MRS initial add of reverse shell for mac 2017-03-13 21:45:07 -04:00
Alex Flores 6e5aeb2cfa mod hid/pid to show as apple keyboard 2017-03-13 18:57:54 -04:00
Alex Flores 0fd8973e12 fixes broken code
- fixes lootdir path
  - dont capitalize var names that aren't exported
  - indentation
  - escape shell characters that are passed to QUACK
  - account for variable copy times by joining cp and exit commands
  - sync the disk
2017-03-13 14:58:25 -04:00
Alex Flores 889723f455 version bump 2017-03-13 14:32:33 -04:00
Alex Flores f65e5ef2f2 red means failure; add amber light 2017-03-13 14:31:47 -04:00
Alex Flores 16c461d850 adds code comments 2017-03-13 10:25:04 -04:00
Sebastian Kinne f272fedbe1 Merge pull request #36 from audibleblink/master
Added Dynamic macOS file backups payload
2017-03-13 11:10:49 +11:00
Sebastian Kinne e797ad2e93 Merge pull request #46 from samdeg555/master
Add WiPassDump payload
2017-03-13 11:03:30 +11:00
Alex Flores 757c8a54fb adds mac pilfering payload 2017-03-12 19:55:32 -04:00
samdeg555 b0a130f96a Update payload.txt 2017-03-12 12:52:56 -04:00
samdeg555 cb0948a56e Update readme.md 2017-03-12 12:26:36 -04:00
samdeg555 9723480f9b Update payload.txt 2017-03-12 12:26:07 -04:00
samdeg555 c103288320 WiPassDump
Runs powershell as Administrator, bypasses UAC and dumps cleartext Wi-Fi passwords and infos to the Bash Bunny.
2017-03-12 12:24:28 -04:00
GermanNoob adb60ec163 added the use of bunny_helpers.sh
by the use of bunny_helpers.sh possible problems with the command "find" are avoided. If the user only copies the payload from the library folder then find will find two destinations for the portal.html and therefore the script will fail.
2017-03-12 15:03:25 +01:00
GermanNoob d756033c99 Updated install.sh to solve problems mentioned in forum
Within the forum https://forums.hak5.org/index.php?/topic/40237-install-tools/
there were several problems mentioned which are solved with this update:

1. No need to move instead of copying tools_to_install to the switch directory due to use of bunny_helpers.sh
2. Check if everything is copied works even when the user OS has added hidden files (removing hidden files before test)
2017-03-12 14:09:03 +01:00
Whistle Master 5dcef93e60 BunnyTap 2017-03-12 10:58:11 +01:00
ralphyz 938be26260 RAZ_VBScript
This payload executes a VBScript as the payload.  The sample VBScript creates a netcat reverse shell, but any VBScript can be substituted.  netcat.exe must be sourced elsewhere.
2017-03-10 19:51:19 -05:00
ralphyz c699fb6b72 Add files via upload
A simple script to create a netcat reverse shell. For Red Teamers - you can auto_increment the listener port by setting a flag to true in payload.txt.  netcat.exe is not included and must be sourced elsewhere.
2017-03-10 15:55:23 -05:00
WatskeBart d9576c62ec Removed STORAGE from payload.txt
Removing STORAGE from this example payload.txt will prevent confusion among new users. Windows doesn't handle the combination RNDIS_ETHERNET with STORAGE the right way, it gives a driver error because Windows is seeing it as a composite device.
2017-03-10 09:54:02 +01:00
Sebastian Kinne 5453f32a6c Merge pull request #24 from WatskeBart/patch-2
Update payload.txt
2017-03-10 10:16:47 +11:00
Sebastian Kinne 4447a5b287 Merge pull request #22 from kevthehermit/DuckyInstall
Update DuckToolkit to latest release
2017-03-10 10:16:09 +11:00
Sebastian Kinne 76be68b96d Merge pull request #23 from WatskeBart/patch-1
Update DuckyInstall install.sh
2017-03-10 09:58:48 +11:00
Sebastian Kinne 984d0ea829 Merge pull request #14 from IMcPwn/executableinstaller
Add bunny_helpers.sh to ExecutableInstaller
2017-03-10 09:54:08 +11:00
Sebastian Kinne 21848f89cd Merge pull request #17 from honourity/master
usb_exfiltration - added escape character for quack command variable
2017-03-10 09:45:57 +11:00
Sebastian Kinne e5bac68ea2 Merge pull request #21 from treed593/patch-1
Rename readme.txt to readme.md
2017-03-10 09:38:32 +11:00
bobmcdouble3 f0fff03845 Add files via upload 2017-03-09 07:01:33 -05:00
bobmcdouble3 dfeb225409 Add files via upload 2017-03-08 19:40:47 -05:00
bobmcdouble3 adb87d9919 Add files via upload 2017-03-08 18:27:47 -05:00
WatskeBart a4017d75f1 Update payload.txt
Check switch position already implemented in bunny_helpers.sh
2017-03-08 21:13:25 +01:00
WatskeBart 3e67aaac00 Update install.sh
Check switch position already implemented in bunny_helpers.sh
2017-03-08 21:11:36 +01:00
thehermit ae2a27b283 Update DuckToolkit to latest release 2017-03-08 19:04:53 +00:00
Trevor Reed e6e58cf6e5 Rename readme.txt to readme.md
Changing extension to .md to allow Markdown formatting
2017-03-08 13:33:10 -05:00
Cpt-Pickles b0374611fd Removed notepad.exe at the end
Removed the extra notepad.exe at the end that was combined with 'fi', caused second if statement to fail.
2017-03-07 21:36:43 -05:00
Tom Brown f34f7bc6df usb_exfiltration - added escape character for quack command variable use, also redirected loot to root loot folder like other payloads 2017-03-07 17:59:26 +00:00
Carleton Stuberg e9f8701a1b Fix escaping error for QUACK command in ExecutableInstaller 2017-03-06 22:54:25 -05:00
Carleton Stuberg 7c39e581c7 Add bunny_helpers.sh to ExecutableInstaller 2017-03-06 22:45:15 -05:00
appelbaum 33b5b49ed5 Merge pull request #12 from rastating/bug/tools_installer_line_endings
Remove line endings causing the tools_installer payload to fail
2017-03-06 19:39:09 -08:00
appelbaum 546a497dca Merge pull request #11 from IMcPwn/executableinstaller
Add ExecutableInstaller payload
2017-03-06 19:37:38 -08:00
appelbaum 27d273b99b Merge pull request #10 from kevthehermit/ducky_template
Add Boilerplate for Ducky Scripts
2017-03-06 19:37:29 -08:00
appelbaum a09c1880de Merge pull request #8 from IMcPwn/fix-exflitrator
Remove references to root directory for usb-exfiltrator payload
2017-03-06 19:37:21 -08:00
appelbaum a19743d064 Merge pull request #7 from kevthehermit/DuckToolkit
Add Ducktoolkit Lib and Languages
2017-03-06 19:37:01 -08:00
appelbaum bdc9674e42 Merge pull request #4 from kevthehermit/switchposition
bunny_helper switch position
2017-03-06 19:36:49 -08:00
Rob 99c7075d4d Remove ^M line endings causing payload to fail 2017-03-06 21:56:53 +00:00
Carleton Stuberg e6ab6277f2 Add ExecutableInstaller payload 2017-03-05 10:43:42 -05:00
thehermit 5de374837d Add Boilerplate for Ducky Scripts 2017-03-04 22:19:02 +00:00
Darren Kitchen faf6cf80c5 Add RDP Checker payload 2017-03-04 12:39:19 -08:00
Carleton Stuberg ea33a9b984 Remove references to root directory for usb-exfiltrator payload 2017-03-04 15:32:36 -05:00
thehermit 2cd3d0de7f Add Ducktoolkit Lib and Languages 2017-03-04 20:30:01 +00:00
thehermit 1642cf2142 Change Case and add export 2017-03-04 20:22:32 +00:00
thehermit 751c84834f Allows you to use $switchposition in payloads. Useful for building paths relative to payload/ 2017-03-04 18:56:22 +00:00
WatskeBart 74b34e1e59 Update payload.txt
it's green instead of white
2017-03-03 17:03:46 +01:00
Darren Kitchen 98fd9ef085 Update readme.md 2017-03-02 19:19:19 -08:00
Darren Kitchen 70a1a6b9be Update readme.md 2017-03-02 19:17:09 -08:00
Darren Kitchen 653de66f67 Update readme.md 2017-03-02 19:16:11 -08:00
Darren Kitchen dcace71e99 USB Exfiltrator 2017-03-02 18:59:15 -08:00
Darren Kitchen d476084ef7 Added nmapper payload 2017-03-02 18:12:16 -08:00
Darren Kitchen b63d4c3c01 Initial Bash Bunny Release 2017-02-28 13:23:16 -08:00