darkCharlie

darkCharlie
Download Copy
Title: darkCharlie
Author: michael-weinstein

This payload creates a ~/.config/ssh folder with a Python SSH wrapper, runs an initialization function to set environmental variables (such as the SSH and Python paths), saves SSH credentials and configuration in JSON format (exfiltrating private keys if desired), adds the folder to the user's PATH to intercept SSH calls.

Credential harvesting is the method of obtaining credentials — think usernames and passwords. Many techniques are used to obtain credentials, from keylogging to credential dumping. With a set of credentials in hand, red teamers may access systems and make lateral movement across the network, as well as creating their own credentials which may be difficult to detect in a breach. See all credential payloads.

This payload is for the Bash Bunny. Simultaneously mimic multiple trusted devices to trick targets into divulging sensitive information without triggering defenses. The Bash Bunny is truly the world's most advanced USB attack platform.

Submit your own payload, or browse more featured Bash Bunny Payloads.

 

 

Related Payloads

BlueBunny
BlueBunny
BlueBunny is a C2 solution that communicates directly over Bluetooth-Low-Energy with your Bash Bunny Mark II. Send your
Read More
SleepyMacRick
SleepyMacRick
Installs a script that will listen for user activity in the background. When the user starts working on the machine, a R
Read More
MacAlertPhisher
MacAlertPhisher
Creates a customizable alert that prompts for the victim's credentials and shares them with you via Discord.
Read More