Compare commits
8 Commits
e7d776a356
...
874854ef8a
Author | SHA1 | Date |
---|---|---|
Idar Lund | 874854ef8a | |
Peaks | dcf527fd86 | |
BuffBaby253 | 6f8d44d068 | |
BuffBaby253 | cb64802ff5 | |
BuffBaby253 | 26040becb0 | |
BuffBaby253 | 4c5fdf62a1 | |
BuffBaby253 | 4d3431c2e4 | |
Idar Lund | 5352a651d4 |
|
@ -0,0 +1,46 @@
|
||||||
|
#!/bin/bash
|
||||||
|
#
|
||||||
|
# Title: Wireshark PCAP Capture & Examine
|
||||||
|
# Author: BuffBaby253
|
||||||
|
# Version: 1.1
|
||||||
|
#
|
||||||
|
# Description: uses tcpdump to capture network traffic for 1 minute and saves into pcap
|
||||||
|
# into loot storage folder for further analysis in Wireshark
|
||||||
|
#
|
||||||
|
# Note: If you want to extend the time, change the amount of seconds in line 38
|
||||||
|
#
|
||||||
|
# LED SETUP making loot directory and waiting for an ip address from DHCP
|
||||||
|
# LED ATTACK capturing packets
|
||||||
|
# LED FINISH the Shark Jack is finished and you can now download saved pcaps to open in Wireshark
|
||||||
|
|
||||||
|
LOOT_DIR=/root/loot/pcaps
|
||||||
|
INTERFACE="eth0"
|
||||||
|
seconds=60
|
||||||
|
|
||||||
|
|
||||||
|
# preparing for capture
|
||||||
|
|
||||||
|
LED SETUP
|
||||||
|
|
||||||
|
# setting up loot directory
|
||||||
|
mkdir -p $LOOT_DIR
|
||||||
|
COUNT=$(($(ls -l $LOOT_DIR/*.txt | wc -l)+1))
|
||||||
|
|
||||||
|
# waiting for ip address
|
||||||
|
|
||||||
|
NETMODE DHCP_CLIENT
|
||||||
|
while [ -z "$IPADDR" ]; do sleep 1 && IPADDR=$(ifconfig eth0 | grep "inet addr"); done
|
||||||
|
|
||||||
|
LED ATTACK
|
||||||
|
|
||||||
|
# using tcpdump to capture network traffic and save to loot directory
|
||||||
|
tcpdump -i $INTERFACE -w $LOOT_DIR/net-traffic_$COUNT.txt &
|
||||||
|
|
||||||
|
# sleep command will let it run for amount of seconds selected
|
||||||
|
sleep $seconds
|
||||||
|
|
||||||
|
# end capture
|
||||||
|
killall tcpdump
|
||||||
|
|
||||||
|
# the work is done and you can unplug
|
||||||
|
LED FINISH
|
|
@ -62,6 +62,13 @@ function setup() {
|
||||||
# Create tmp scan directory
|
# Create tmp scan directory
|
||||||
mkdir -p $SCAN_DIR &> /dev/null
|
mkdir -p $SCAN_DIR &> /dev/null
|
||||||
|
|
||||||
|
# Install curl if it does not exist
|
||||||
|
if [ ! -f /usr/bin/curl ]; then
|
||||||
|
opkg update >> /root/opkgupdate.log 2>&1
|
||||||
|
opkg list >> /root/opkglist.log 2>&1
|
||||||
|
opkg install curl >> /root/opkginstall.log 2>&1
|
||||||
|
fi
|
||||||
|
|
||||||
# Create tmp scan file if it doesn't exist
|
# Create tmp scan file if it doesn't exist
|
||||||
SCAN_FILE=$SCAN_DIR/scan-count
|
SCAN_FILE=$SCAN_DIR/scan-count
|
||||||
if [ ! -f $SCAN_FILE ]; then
|
if [ ! -f $SCAN_FILE ]; then
|
||||||
|
|
Loading…
Reference in New Issue