Bash Bunny Primer - Hak5 2225

แชร์
ฝัง
  • เผยแพร่เมื่อ 1 ก.ค. 2024
  • Hak5 -- Cyber Security Education, Inspiration, News & Community since 2005:
    ____________________________________________
    Learn how to use the Bash Bunny in this easy to understand primer video tutorial!
    -------------------------------
    Shop: www.hakshop.com
    Support: / threatwire
    Subscribe: / hak5
    Our Site: www.hak5.org
    Contact Us: / hak5
    Threat Wire RSS: shannonmorse.podbean.com/feed/
    Threat Wire iTunes: itunes.apple.com/us/podcast/t...
    Help us with Translations! th-cam.com/users/timedtext_cs_p...
    ------------------------------
    ____________________________________________
    Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community - where all hackers belong.
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 109

  • @michaelanonymous1933
    @michaelanonymous1933 6 ปีที่แล้ว +2

    I love hak5. You guys sell the toys I keep wanting to make myself.
    I was at your talk at dc when captain crunch showed up. That was epic. Like you he's a big reason I'm here. Keep up the great work

  • @honestabe4161
    @honestabe4161 6 ปีที่แล้ว +5

    Hi Darren. I was there when Captain Crunch showed up during your defcon talk. Lol keep up the good work!

  • @thatcreole9913
    @thatcreole9913 6 ปีที่แล้ว

    Love this. Can't wait for more!

  • @AdHdEntertainmentLLC
    @AdHdEntertainmentLLC 6 ปีที่แล้ว

    Looking forward to learning more,thx Darren and very kool that Mitnick requested ur help

  • @animalitosynaturaleza8769
    @animalitosynaturaleza8769 4 ปีที่แล้ว

    Saludos desde Spain. Con usted aprendo mucho. Sigan así, muchas gracias por vuestro trabajo.

  • @JoeCools
    @JoeCools 6 ปีที่แล้ว +1

    Darren we are getting so old, feels like I been watching you guys since forever! lol

  • @SilvianDragan
    @SilvianDragan 6 ปีที่แล้ว +10

    I'm not Kevin Mitnick but I'm loving this episode man! Great work as always. :)

  • @cntrix2047
    @cntrix2047 6 ปีที่แล้ว +1

    wohoo, old hak5 back

  • @haxhxm841
    @haxhxm841 6 ปีที่แล้ว

    It's nice to see Darren back at it again

  • @randomtvninja
    @randomtvninja 6 ปีที่แล้ว +33

    Lol anyone else notice that split second windows lockscreen?
    As for people saying "I could do this with a raspberry pi" that's great it really is, it's good that you can build your own and you probably always should but you must keep in mind that there are two types of people this applies to.
    Noobs who don't know how to do that but want to learn how to use the bash bunny
    And professionals who seriously don't have the time to do it themselves so they need to buy something that just works without any hassle.
    Please keep this in mind before saying " I could build it for cheaper and make it better hur dur"

  • @gettodachopper
    @gettodachopper 5 ปีที่แล้ว

    I love the Bash Bunny!

  • @D3ltaLabs
    @D3ltaLabs 6 ปีที่แล้ว +1

    It's good to see a tradition old hak5 episode. pitty Shannon wasn't there.. ;)

  • @decompyler
    @decompyler 6 ปีที่แล้ว +7

    I would move all the root files into a hidden dir so that if someone demands to see what is on the drive if you get caught, you would just have some benevolent looking files on there.

  • @mauriciolorabarbosa200
    @mauriciolorabarbosa200 5 ปีที่แล้ว

    hello, you are thinking of getting another version of the bash bonny. Perhaps a more robust hardware or greater storage capacity

  • @SupermotoZach
    @SupermotoZach 6 ปีที่แล้ว +2

    Even at 1080P the HDMI capture is really low res and kind hard to see.

  • @soumiksen
    @soumiksen 6 ปีที่แล้ว +3

    That is amazing Darren.!
    is there a way I could see all the details of this device, like we can see for any communication device using the FCC number

  • @jejetube7667
    @jejetube7667 6 ปีที่แล้ว +1

    Payloads could be signed with pgp and contacting can be done through it too

  • @Arek_Frac
    @Arek_Frac 6 ปีที่แล้ว +2

    Debian - my favorite linux flavor!

  • @zevman0518
    @zevman0518 6 ปีที่แล้ว +1

    Can you download the tools for the bash bunny on a Mac as well or just windows?

  • @username65585
    @username65585 6 ปีที่แล้ว +1

    Does the text on his screen cast sections of the video look really aliased for everyone else? I am watching it in 1080p.

  • @rsanchez-1
    @rsanchez-1 6 ปีที่แล้ว +3

    Welcome back Darren, great segment can't wait for part 2, I was also wondering if there was a way to use the bashbunny to run adb for android hacking goodness, Thanks

    • @SpragginsDesigns
      @SpragginsDesigns 3 ปีที่แล้ว

      Yeah you can actually but I've only been able to use the network interface device part of it to use an ADB Bridge or Link.

  • @LTT.Official
    @LTT.Official 6 ปีที่แล้ว +7

    Why is there a swimming guy lock screen at 14:55

  • @ca842
    @ca842 2 ปีที่แล้ว

    @Hak5 how about some new info? The updater does not seem to work with the Mark II, payloads are not coming into the folder etc.?

  • @tobyhilton1997
    @tobyhilton1997 4 ปีที่แล้ว

    how long does it usually take for it to update versions? its taking a while for me, and the percent indicator is still at 00%

  • @raintheory3390
    @raintheory3390 5 ปีที่แล้ว

    is there a specific language file needed for computers using en dvorak?

  • @carlelg5001
    @carlelg5001 6 ปีที่แล้ว +12

    Why do you guys capture the screen with a really low resolution?

    • @Atheyst
      @Atheyst 4 ปีที่แล้ว

      It's captured in a different resolution so when it is on TH-cam it's cropped down.

  • @BenGillam
    @BenGillam 6 ปีที่แล้ว

    So is there any way for this to be knocked out? Short of disabling USB ports? from a support and security point of view this could be a nightmare

  • @cryptoerok4851
    @cryptoerok4851 5 ปีที่แล้ว

    Why isn't the updater preloaded...
    Edit: NVM I bought one and understand now. But when I go to the community page everything says file missing.

  • @harllendias
    @harllendias 6 ปีที่แล้ว +1

    How to use the rubber duck payloads in bash bunny?

  • @ghostlocalhost84
    @ghostlocalhost84 6 ปีที่แล้ว +1

    Reason I haven't bought from Hak5 is beacuse I have to pay $28.00 CAD for shipping. Still love these videos tho.

  • @joselozada8689
    @joselozada8689 2 ปีที่แล้ว

    is this device actually can connect to the Internet or is innert that need a Connection ?

  • @tamanbirsingh4899
    @tamanbirsingh4899 6 ปีที่แล้ว

    most of the creds payloads are not working, i can't find anything on forums etiher. kindly help!

  • @salnaggar
    @salnaggar 6 ปีที่แล้ว

    is there payload to get pc login password while the computer lock (without login) ? like what u did in the nmap payload ?

  • @franklivi4249
    @franklivi4249 5 ปีที่แล้ว

    when i try go onto the bash bunny wiki nothing loads its just a white screen please help me

  • @fsacer
    @fsacer 6 ปีที่แล้ว +28

    Life is too short to remove USB safely!

  • @HowToDealWithLinux
    @HowToDealWithLinux 6 ปีที่แล้ว +2

    Man please tell me what that silver grey laptop is! I have a really hard time choosing a laptop because asymmetry drives me nuts. The touchpad *has* to be exactly in the middle and that guy there is gorgeous.

    • @noreoz1024
      @noreoz1024 5 ปีที่แล้ว

      Huawei Matebook X Pro maybe?

  • @justinhajj9102
    @justinhajj9102 5 ปีที่แล้ว

    after i put the 1.5 ch_fw_1.5_298.tar.gz file into the bash bunny everytime i plug my bash bunny in it keeps blinking red an blue for like 3 min, after 4 times why

  • @TheSchmidtsu
    @TheSchmidtsu 6 ปีที่แล้ว +1

    Is there a virtual version of this I can use in a VM? Would love to play with this in virtualbox, but it seems I would need physical hardware.

    • @SpragginsDesigns
      @SpragginsDesigns 3 ปีที่แล้ว

      Plug the device in while running the VM, and make sure the input device is connected to the VM and not the host. In VMware it can automatically do this. I am unsure about any other virtual machine emulators but VMware Pro makes it super easy.

  • @albertmedi5657
    @albertmedi5657 6 ปีที่แล้ว

    hey someone help i accidently closed the program before putting the bunny back in?

  • @scripttag9235
    @scripttag9235 4 ปีที่แล้ว +1

    I want that but theres have no in philippines

  • @dallaskappel1
    @dallaskappel1 4 ปีที่แล้ว +1

    5:14 onto 15 thats all you need to know or do? i heard both lol

  • @mic159
    @mic159 6 ปีที่แล้ว +39

    You should update your links in the description to all be https :)

    • @3rg1s
      @3rg1s 6 ปีที่แล้ว

      the websites itself would take care for that ;)

    • @mic159
      @mic159 6 ปีที่แล้ว +5

      Sure! SSLStrip will thank you :P
      Not to mention the information leakage of the full path, and tracking cookies to anyone on your wifi network (hotel, airport, conference, coffee shop), ISP and anyone else on the network path.

  • @TheBroadcastNinja
    @TheBroadcastNinja 2 ปีที่แล้ว

    Hi Darren is the date Tues 22 August at 3:09 significant to this post as I caught the very quick screen shot at 14:56 - Go on tell me I win a prize lol

  • @ArcAiN6
    @ArcAiN6 6 ปีที่แล้ว

    is bashbunny open sourced hardware?

  • @Feuermagier1337
    @Feuermagier1337 6 ปีที่แล้ว

    I ordered 11 days ago....
    According to USPS Item still hasn't been picked up....
    Oh how great it will be to follow its long Journey through Countries and the german customs office.....
    At least I could pay in Bitcoin :-)

  • @haxhxm841
    @haxhxm841 6 ปีที่แล้ว +2

    Calling for tech support.
    "Microsoft tech support here"

  • @jameswheeler4872
    @jameswheeler4872 6 ปีที่แล้ว +4

    Why is a lock screen flashed at 14:55?

    • @hiburn8
      @hiburn8 6 ปีที่แล้ว +3

      captain eagle-eyes over here!

    • @leo-rq2ei
      @leo-rq2ei 6 ปีที่แล้ว +1

      must be a cyber nuke

    • @RecursiveRuminations
      @RecursiveRuminations 6 ปีที่แล้ว

      It's a backdoor deploy

  • @Shadow_of_Christ
    @Shadow_of_Christ 6 ปีที่แล้ว

    discord is pretty good

  • @chevlonmacguinstudios
    @chevlonmacguinstudios 4 ปีที่แล้ว

    What do you do if: 1 text is blocked, word pad is blocked and CMD is blocked? Sell bash bunny on eBay? Or remotely do all that outside of the machine your attacking.

    • @XLuma
      @XLuma 4 ปีที่แล้ว

      Chevlon MacGuin Studios How can notepad be blocked ? And let's say you are on a pentest, you won't have the time to write a payload, put it on the bashbunny and execute it. If you can't use, I think you should sell it or keep it for when you can actually write payload and access its shell

    • @chevlonmacguinstudios
      @chevlonmacguinstudios 4 ปีที่แล้ว

      @@XLuma Well anything can be blocked from third party access, but that doesn't mean sent instructions are not blocked if some form of masking, but anything is possible these days to block anything that's why the BB usefulness shines, but if word pad or text editor blocked BB has less value.

  • @AJ-pz8ug
    @AJ-pz8ug 5 ปีที่แล้ว

    Payloads did not download after user bunnyudpater. not a big deal just didnt work on my machine when using the program

  • @maddin74
    @maddin74 6 ปีที่แล้ว +4

    14:55 😂 desktop?

  • @user-hp9fl2nf1v
    @user-hp9fl2nf1v 10 หลายเดือนก่อน

    FREE KEVIN!
    Long Live Kevin...

  • @ChunkyChest
    @ChunkyChest 6 ปีที่แล้ว

    #ordered

  • @ChiliFPV
    @ChiliFPV 4 ปีที่แล้ว

    Why does she use Windows???

  • @MrGFYne1337357
    @MrGFYne1337357 6 ปีที่แล้ว +9

    hidden image at 14:54

    • @maxheadroom7992
      @maxheadroom7992 6 ปีที่แล้ว +2

      Looked like a Win10 lock screen.

    • @maxheadroom7992
      @maxheadroom7992 6 ปีที่แล้ว +2

      Yep, finally snapped it. imgur.com/LlkIwfy

    • @TheDoctorRulesPSN
      @TheDoctorRulesPSN 6 ปีที่แล้ว +1

      loooool

    • @tehtron
      @tehtron 6 ปีที่แล้ว +1

      Thats darrens desktop

    • @pimentelrobert1
      @pimentelrobert1 3 ปีที่แล้ว

      Thank you for providing eternal rest to my soul once again

  • @donalodomhnaill
    @donalodomhnaill 6 ปีที่แล้ว

    Did you say you got to meet Kevin Mitnick?

    • @donalodomhnaill
      @donalodomhnaill 6 ปีที่แล้ว

      Holy crap, when I look back at it too, Captain Crunch! Wow, that is pretty amazing guys!

  • @dreadpiraterobertz1728
    @dreadpiraterobertz1728 6 ปีที่แล้ว

    Dude thx for this! Looks like im gona be bashing my bunny tonight boom!

  • @packratswhatif.3990
    @packratswhatif.3990 5 ปีที่แล้ว

    Ok, a question from a laymen : How can devices like this be legal to own & use? Don’t get wrong as I love this type of application, but ...............

    • @XLuma
      @XLuma 4 ปีที่แล้ว

      Ross in Ontario Penetration Testing, White hats, Personal use on personal gear... this would be situation where this gear would be legal

  • @thomasbekkedalmoen
    @thomasbekkedalmoen 6 ปีที่แล้ว

    Could you maybe prank your coworkers with the Notepad Fun payload?

  • @TheHomesteadYeti
    @TheHomesteadYeti 6 ปีที่แล้ว +2

    Domain.com code does not work.

    • @mrbruh6687
      @mrbruh6687 6 ปีที่แล้ว

      Jonathan Poland you made a typo?

  • @lazarus856
    @lazarus856 6 ปีที่แล้ว

    14:54

  • @trxshed4957
    @trxshed4957 6 ปีที่แล้ว +1

    sekund

  • @rozanneke
    @rozanneke 6 ปีที่แล้ว

    would have been cooler if in stead of debian, they would have chosen Arch Linux as the operating system for the bashbunny

    • @andrew_koala2974
      @andrew_koala2974 2 ปีที่แล้ว

      Rozan Martin.
      Learn how to write English at a higher level as in the example shown:
      It would have been an improvement if instead of DEBIAN, ARCH LINUX
      was chosen as the operating system for the Bash Bunny
      - Read more books by accomplished authors to improve your
      English fluency and writing skills
      Good luck and goodbye.

  • @chuxxsss
    @chuxxsss 6 ปีที่แล้ว

    What is burnman is it a show?

  • @russTM0725
    @russTM0725 6 ปีที่แล้ว

    "constantly adding new features..."
    *Checks forums*. Hmm. Bash bunny hasn't had a firmware update in 4 months. Every other device hadn't seen a firmware update in over a year.
    "Constantly" is a bit misleading don't you think? Sure some modules are updated but I give that credit to the community.

  • @1dimtim
    @1dimtim 6 ปีที่แล้ว +1

    i would buy it if it didnt cost so much!

    • @potato675
      @potato675 5 ปีที่แล้ว

      It’s an quad core cpu with sad what did you expect

  • @austinmurphy9074
    @austinmurphy9074 4 ปีที่แล้ว

    Im kevin mitnik. thx

  • @killerskincanoe
    @killerskincanoe 6 ปีที่แล้ว

    ... And burning man? Damn you stay busy. Keep the dust out of your bunny and pineapple.

  • @irfansalahudinfatih
    @irfansalahudinfatih 6 ปีที่แล้ว

    Subtitle indonesia please

  • @laddn17
    @laddn17 6 ปีที่แล้ว

    20th lolz

  • @devdeque7846
    @devdeque7846 6 ปีที่แล้ว +2

    The community cannot develop for the BashBunny because it is still a buggy mess. Look at the first page of the forums.
    I eject mine every time, but I've still had to recover it 10+ times because of corruption. That is just 1 of like 30 problems.

    • @cheif10thumbs
      @cheif10thumbs 6 ปีที่แล้ว +5

      Huh? Mine works fine. Did you contact Hak5 or is it just easier to be butthurt in the comments?

    • @devdeque7846
      @devdeque7846 6 ปีที่แล้ว

      The latter, because I've already tried the others. All maybe fine for you, but they did get a bunch of returns on BBs. Hak5 support sucks from emailing staff to forums. Their staff was overwhelmed and that is public knowledge. When they can't assist with their over promised, defective, or poorly designed item, they make you pay restocking fees. Talking on the forums about anything technical w/ the BB is a waste of time.

    • @BushRat253
      @BushRat253 6 ปีที่แล้ว

      Dang, that’s discouraging. I really wanted one.

  • @peesicle
    @peesicle 6 ปีที่แล้ว

    third

  • @sonygoup
    @sonygoup 6 ปีที่แล้ว +2

    Can I have a bash bunny guys I'm broke and I want one 😂😂

  • @DAVIDGREGORYKERR
    @DAVIDGREGORYKERR 6 ปีที่แล้ว

    Lets try and stay legal and not get into any thing that could have you executed in the Electric Chair.

  • @Vlerden
    @Vlerden 6 ปีที่แล้ว

    i have name.jpught every tool since v2..... why are you underseling this?
    totoallly a new keyboardd for me... lool .... this is do shitty
    drizzt

  • @lefuro3324
    @lefuro3324 6 ปีที่แล้ว +12

    I’ll try to plug this to my teachers laptop :)