I love that Hak5 is still cranking. Seems like recently content has been coming out more often. Love it. These videos are so packed with learning, I just hate that none of my pentests include USB drops. Hear me out, what if.... what if.... there is a mix of Hak5 gear tuts like this, plus some basic pentesting manual scripts or techniques? :) :)
A good program is logical, well commented, and simple. It allows you to read through and understand it, while leaving you space for your ideas. Well Done 👍
Nice, really like this one. Thx a lot ! A little nit though, at 0:36 line 16 will not do what you expect, as the `HISTFILE` variable is unset before it's being used in `rm -f $HISTFILE`, so that the `rm -f` is called without a target argument, thus leaving the history file in place. Fwiw, you could also remove lines 69-71 (1:14) from the payload script, since the preceding `systemctl enable` commands already start the according units due to the `--now` flag. 😉
The Bash Bunny 2 introduced a couple new DuckyScript commands as it pertains to that device's BTLE radio and MicroSD storage. That said, if those functions aren't used - then yes, most are forwards compatible. Backwards compatibility (BB1 payloads on the BB2) is 100%.
I love that Hak5 is still cranking. Seems like recently content has been coming out more often. Love it. These videos are so packed with learning, I just hate that none of my pentests include USB drops. Hear me out, what if.... what if.... there is a mix of Hak5 gear tuts like this, plus some basic pentesting manual scripts or techniques? :) :)
Love these 'Payload Minutes'. Keep 'em comin'!
🏴☠️😎🏴☠️
A good program is logical, well commented, and simple. It allows you to read through and understand it, while leaving you space for your ideas.
Well Done 👍
Have always enjoyed the content after all these years.
Your content is always top tier. Been a fan since the old Tech TV days. Keep up the great work.
Nice, really like this one. Thx a lot !
A little nit though, at 0:36 line 16 will not do what you expect, as the `HISTFILE` variable is unset before it's being used in `rm -f $HISTFILE`, so that the `rm -f` is called without a target argument, thus leaving the history file in place.
Fwiw, you could also remove lines 69-71 (1:14) from the payload script, since the preceding `systemctl enable` commands already start the according units due to the `--now` flag. 😉
good amount of overt and meta comm on this one pls do a content piece on terrapin ssh downgrade and also mention how it was developed - good backstory
Straight 🔥🔥🔥
Thanks for another great video !
May be better to wrap strokes in like base64 the broadcast the keylog data on the lan. Then it'd be much harder to track down the listener
VERY very GOOD video
would the usb logger work if plugged into a MacBook?
Nice!
Will this work on badusb on a flipper zero?
Why can't I find this payload? I tried searching and either I am not searching for the right thing or it has been removed.
I can do this with a raspberry pi pico?
Will all payloads for the Bash Bunny II also work for my BBv1?
It will ultimately be up to the specific payload.
For example: consider a payload that takes advantage of the SD card on the Mk II.
The Bash Bunny 2 introduced a couple new DuckyScript commands as it pertains to that device's BTLE radio and MicroSD storage. That said, if those functions aren't used - then yes, most are forwards compatible. Backwards compatibility (BB1 payloads on the BB2) is 100%.
what if your target has windows
Darren send me a Rubber Ducky 🦆 and a 🍍