DEV Community

Cover image for Password Exfiltration With Bash Bunny
Sampreeth Nataraj
Sampreeth Nataraj

Posted on

Password Exfiltration With Bash Bunny

In this project I have used the Bash Bunny "Getting Started With Bash Bunny" and used one of hak 5's payload to show a simple password grabber and how it works.

Author : Sampreeth.Nataraj
Creds : Hak5Darren, AlessandroZ, TeCHemically, dragmus13, RazerBlade, Jdebetaz
Firmware support : 1.1 and higher
Target version : Windows 7 and higher

Description:

Grabs password from chrome, internet explorer, Firefox, FileZilla and more... This payload makes use of AleZssandroZ's awesome LaZagne password recovery tool.

Grab some passwords

  1. Download the latest lazagne zip file from .

  2. Turn off the antivirus and malware detection .
    Unzip the zip file and place the exe file in the tools folder.

  3. Place the payload.ps1 and payload.txt files along with the lazagne folder in the preferred payload switch eg: switch1 or switch2.

  4. Plug in the bash bunny (placed in the switch mode which contains the payload) in the windows machine and enjoy

  5. The passwords grabbed will be placed in the passwords.txt file of the tools folder.

Top comments (1)

Collapse
 
pnatraj profile image
Nataraj

Great going on your fist article in dev.to