"Microsoft Windows" Browser in the Browser (BitB)

Download Copy
Title: "Microsoft Windows" Browser in the Browser (BitB)
Author: TW-D

1. Hide "PowerShell" window. 2. Change "monitor-timeout (AC and DC)" at NEVER with "powercfg" utility. 3. Change "standby-timeout (AC and DC)" at NEVER with "powercfg" utility. 4. Copies and hides the phishing folder in the current user's directory. 5. Full screen opening of the phishing HTML page using "Microsoft Edge" in kiosk mode. 6. The username/password will be sent by HTTP POST to the URL specified in the "DROP_URL" constant.

Phishing is a popular technique for gaining access to a target. Generally, phishing is a digitally delivered social engineering method. Phishing techniques may use a wide net, or specifically target one role or individual — known as spearphishing. Many phishing campaigns involve tricking a target into divulging confidential information, such as by mimicking a known-trusted source — be it a website or person. See all phishing payloads.

This payload is for the Bash Bunny. Simultaneously mimic multiple trusted devices to trick targets into divulging sensitive information without triggering defenses. The Bash Bunny is truly the world's most advanced USB attack platform.

Submit your own payload, or browse more featured Bash Bunny Payloads.

 

 

Related Payloads

Global Powershell Logging and Transcription
Global Powershell Logging and Transcription
This payload executes a script that logs all PowerShell input and output to a text file in the documents folder.
Read More
USB Poison
USB Poison
This payload executes a script that waits for new USB flash storage devices to be connected. When a new device connects,
Read More
Execute commands as NT AUTHORITY\SYSTEM with TrustedInstaller privileges
Execute commands as NT AUTHORITY\SYSTEM with TrustedInstaller privileges
This payload launches a new cmd.exe process with elevated privileges under TrustedInstaller, by setting the TrustedInsta
Read More