From bf149a783b3e33cba4c3b636888b0985832c789b Mon Sep 17 00:00:00 2001 From: Rafa Guillermo Date: Sun, 29 Sep 2024 20:00:26 +0200 Subject: [PATCH] Update payload.txt --- .../credentials/NoDefenseAgainstLaZagne/payload.txt | 11 +++++++---- 1 file changed, 7 insertions(+), 4 deletions(-) diff --git a/payloads/library/credentials/NoDefenseAgainstLaZagne/payload.txt b/payloads/library/credentials/NoDefenseAgainstLaZagne/payload.txt index 95de83a6..b9a044b8 100644 --- a/payloads/library/credentials/NoDefenseAgainstLaZagne/payload.txt +++ b/payloads/library/credentials/NoDefenseAgainstLaZagne/payload.txt @@ -2,13 +2,16 @@ # # Title: Disable Windows Defender and Exfil stored passwords # Description: Grabs password from all sort of things: chrome, internet explorer, firefox, filezilla and more... -# This payload is quick and silent and takes about 3 seconds after the Bash Bunny have started to quack. -# This payload makes use of AleZssandroZ awesome LaZagne password recovery tool as well as the Password Grabber by jdebetaz. +# Disables Windows defender and runs LaZagne to grab passwords from the host system from apps like: +# chrome, internet explorer, firefox, filezilla and more. Wifi passwords and Win password hashes included. +# This payload is quick, but opens up an ugly PS terminal which can probably be obfuscated. This payload +# springboards off of AleZssandroZ's LaZagne password recovery tool as well as the Password Grabber by jdebetaz. +# # Author: rafa-guillermo # Props: Hak5Darren, AlessandroZ, TeCHemically, dragmus13, RazerBlade, jdebetaz -# Version: 1.2 +# Version: 1.0 # Category: Credentials -# Target: Windows +# Target: Windows 11 # Tested On: Windows 11 # Attackmodes: HID, STORAGE