usbrubberducky-payloads/payloads/library/exfiltration/HashDumpDucky
0i41E 40f7f072ea
Changed Username
2024-05-28 19:25:26 +02:00
..
README.md Changed Username 2024-05-28 19:25:26 +02:00
hash.png Uploaded HashDumpDucky 2022-09-01 21:20:30 +02:00
payload.txt Changed Username 2024-05-28 19:25:26 +02:00

README.md

Title: HashDumpDucky

Author: 0i41E
OS: Windows
Requirements: DuckyScript 3.0
Version: 1.0

‼️ | This is just meant to be a PoC, as this method of Hashdump will result in empty, default hashes on recent versions of Windows.

Instruction:

Bring some time... This payload will run an obfuscated script to dump user hashes and exfiltrate the Administrator hash via Keystroke Reflection Method.

Instruction:

Compile this payload with payloadstudio, place it inside of your Ducky as inject.bin and you are good to go

Exfiltrate the out.txt file and try to crack the hashes. alt text

props to Nikhil Mittal