Videos

Published on August 14th, 2015 📆 | 4031 Views ⚑

0

"AppleDuckies" HID attack enclosures for under 40 dollars. Teensy enclosure for pentesting


https://www.ispeech.org


Here is a quick Demo going over the teensy 3.1 and 3.0 That i use on physical pentest engagements. I leave them in Lobbys break-rooms , send them to employees with note from IT to plug into computer so they can update with there contacts 🙂 It uses HID device attacks which bypass most if not all IDS and antivirus . so you plug it in it in your computer thinks it a keyboard the keyboard pushes IE window button opens browser and visits page of my choice i use it to confirm that we would have been able to exploit . but in real world scenerios people could do drive by attacks depending on what you put on the page you direct to. works awesome at banks when you ask them to charge your phone 🙂 here bellow is a link to buy parts to make your own Android models . US sold ones come with VZ logos and 4g so they look a little real but thats up to you please ask questions

http://www.pjrc.com/teensy/teensy31.html





http://www.ebay.com/itm/Free-shipping-Non-working-Dummy-Display-Phone-Fake-black-screen-For-HTC-One-M8-/201104420209?var=&hash=item2ed2c1ed71


2015-08-14 16:11:53

source

Tagged with:



Comments are closed.