by Keld Norman October 17, 2021
Exfiltration OMG
Building upon the earlier WiFi2DNS payload that uses stealthy DNS exfiltration, Keld Norman has applied AES-256 encryption for a much more secure transit of ...
by @keld_norman October 12, 2021
Exfiltration OMG
WiFi names and PSK are exfiltrated over DNS.
by cerebro11 October 05, 2021
Bash Bunny Credentials
Dumps the usernames & plaintext passwords from, Browsers (Chrome, FireFox), Windows Vault, Wi-Fi, sam, system, security from Registry => SAM Hashes (o...
by Paul Murton October 05, 2021
Bash Bunny Incident Response
In an incident where a user is suspected of exfiltrating data to a USB storage device, CD/DVD etc, its possible that the user may subsequently open an exfilt...
by Paul Murton October 05, 2021
Bash Bunny Incident Response
A (naive) user may attempt to hide image(picture) files by simply renaming them to appear to be other filetypes (i.e. Word documents etc). This payload uses ...
by Topknot October 05, 2021
Recon Shark Jack
Performs an nmap ping scan of the local subnet and logs it to a text file. Pulls LLDP neighbor and switch information and logs it to a text file. Performs an...
by Cribbit October 05, 2021
General Key Croc
Replaces hak5 with ascii art version.
by Charles BLANC ROLIN October 05, 2021
Recon Shark Jack
Broadcast ARP with netdiscover using specified options. Saves each scan result to loot storage folder.
🏆 by Charles BLANC ROLIN October 05, 2021
Recon Shark Jack
Broadcast ARP with netdiscover using specified options. Saves each scan result to loot storage folder.
by Saint Crossbow October 05, 2021
General Key Croc
Don't let the PC fall asleep. Like having a mouse wiggler on for your Key Croc, except with keys! Unlike a regular mouse wiggler, this will constantly press ...
by Spywill October 05, 2021
General Key Croc
Send E-mail, Status of Key Croc, Basic Nmap, TCPdump, Install payload, SSH to HAK5 gear, Reverse ssh tunnel, and more. Will start OS detection scan to see wh...
by Cribbit October 05, 2021
General Key Croc
Quacking text adventure. Open a text editor, start the game and enjoy this basic text adventure.
by xhico October 05, 2021
Bash Bunny Prank
Changes the users wallpaper from the ${SWITCH_POSITION} folder in the payloads library of the Bash Bunny USB Disk partition.
by HackingMark September 30, 2021
Bash Bunny Exfiltration
A stupid easy to use file extractor leveraging the USB storage attack mode. Will stuff the found files in the /loot/USB-Exfiltration/Computername-Date folder...
by cerebro11 September 30, 2021
Execution Key Croc
A fileless PowerShell reverse shell to the KeyCroc. A netcat listener should be ran on the KeyCroc before executing the payload (ex: "nc -nvlp 4444")
by cerebro11 September 28, 2021
Credentials Key Croc
Sets up Ethernet and HID keyboard interfaces simultaneously, then uses HID to import Sharphound into memory via KeyCroc web server and execute the attack. Re...
by TheDragonkeeper September 28, 2021
General Packet Squirrel
Sends a wake on lan packet to a single device or a range of IPs in a subnet. This script will take the local interface IP and netmask, calculate the broadcas...
by NotMedic September 28, 2021
LAN Turtle Remote Access
iodine DNS Tunneling module. Establishes a DNS tunnel outbound to a server and domain name under your control.