Fake SSH

Fake SSH
Download Copy
Title: Fake SSH
Author: TW-D

Copies the "ssh" command spoofing program to the user's home directory. Defines a new persistent "ssh" alias with the file "~/.bash_aliases". When the user executes the command "ssh" in a terminal, the spoofing program : By default retrieves the username@address and password and writes them to "/tmp/.ssh_password". But this behavior can be changed in line 20 of the "ssh-phishing.sh" file.

Phishing is a popular technique for gaining access to a target. Generally, phishing is a digitally delivered social engineering method. Phishing techniques may use a wide net, or specifically target one role or individual — known as spearphishing. Many phishing campaigns involve tricking a target into divulging confidential information, such as by mimicking a known-trusted source — be it a website or person. See all phishing payloads.

This payload is for the Bash Bunny. Simultaneously mimic multiple trusted devices to trick targets into divulging sensitive information without triggering defenses. The Bash Bunny is truly the world's most advanced USB attack platform.

Submit your own payload, or browse more featured Bash Bunny Payloads.

 

 

Related Payloads

Windows Screenshot Exfil
Windows Screenshot Exfil
This payload captures screenshots from a Windows machine every 10 seconds and uploads them to a specified server using t
Read More
DNS TXT Command Injection
DNS TXT Command Injection
This payload uses Resolve-DnsName to perform a DNS name query resolution for a domain hosting a malicious TXT record
Read More
AirBridge
AirBridge
AirBridge is a payload designed for the Packet Squirrel MK II in combination with Hak5's MK7AC Module, or similar WiFi a
Read More