How to Hide Keystroke Injection, Hak5 1502.2 [Cyber Security Education]

  Рет қаралды 113,138

Hak5

Hak5

Күн бұрын

Hak5 -- Cyber Security Education, Inspiration, News & Community since 2005:
____________________________________________
An educational look at cyber security, this time on Hak5:
Windows exfiltration with a USB thumb drive and a USB Rubber Ducky and Benchmarking Your Linux Systems. All that and more, this time on Hak5!
Pick up your USB Rubber Ducky at hakshop.com/collections/gadgets/products/usb-rubber-ducky
Hak5 1502.1: • How to Benchmark Your ...
Hak5 1502.2: • How to Hide Keystroke ...
Hak5 1502.3: • How to Login to All Ve...
~-~~-~~~-~~-~
Please watch: "Bash Bunny Primer - Hak5 2225"
• Bash Bunny Primer - Ha...
~-~~-~~~-~~-~
____________________________________________
Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community - where all hackers belong.

Пікірлер: 100
@krishnap1991
@krishnap1991 8 жыл бұрын
You can also use the FILE ATTRIBUTES while creating directory(to which you will copy the backup data) to hide it as system directory. attrib +H +S +H will hide the folder so even if you give the twin duck they will not be able to see the content +S will make sure to keep the folder hidden even if the "show hidden folders" option is check in folder options.(as system files which are hidden are not visible even after enabling that option. you have to uncheck the option"hide protected OS files"
@TeganBurns
@TeganBurns 9 жыл бұрын
I love all the "wording" in this ahahah
@hak5
@hak5 11 жыл бұрын
Actually it is. I saw the comments and was astounded. Checked out rates and found out we weren't offering USPS Economy shipping. It takes longer, but it's a HUGE price difference. Also lowered the price on all the ducks. :)
@hak5
@hak5 11 жыл бұрын
There's now an option for $6.16 shipping to Europe. The Europe distro center will hopefully be up this holiday season.
@hak5
@hak5 11 жыл бұрын
hakshop.com
@machupikachu
@machupikachu 11 жыл бұрын
Hey Darren! I just noticed that shipping has gone down from 35$ to 6.16$ for me! Awesome :D (even though it probably isn't related to my comment from yesterday)
@soulife8383
@soulife8383 3 жыл бұрын
I'd love to see some of these older techniques applied with modern day upgrades that have been made to Win 10. The command line has "evolved" a little.
@EmoryMullis
@EmoryMullis 10 жыл бұрын
Great job, thanks.
@hak5
@hak5 11 жыл бұрын
We're looking at an EU distribution channel - just a headache with paperwork and duty forms. Just lowered the price of the duck and enabled economy shipping so it's just $6.16 now.
@thegrinchCAPO
@thegrinchCAPO 2 жыл бұрын
So can you deliver to the United Kingdom???
@beboplaplace3762
@beboplaplace3762 3 жыл бұрын
Love the t-shirt!
@machupikachu
@machupikachu 11 жыл бұрын
Thanks, man! I just wanted to let you know that this is greatly appreciated across the pond. Now, there's no way to send it as "a gift", right? ;) I could do without the 44% extra taxes on import! No, but seriously, keep up the good work :)
@hak5
@hak5 11 жыл бұрын
I love AutoIT!
@DSBxASSASSIN
@DSBxASSASSIN 4 жыл бұрын
hey hack5 i cant seem to find your ducky script anyware dont know if i just cant find it or that its not online
@hak5
@hak5 11 жыл бұрын
Yikes! Just realized we weren't offering USPS Economy Shipping to Europe. Fixed that and lowered the price of the ducky too. Now it's just $6.16 to ship.
@counterculturecocks
@counterculturecocks 6 жыл бұрын
My hard drive is now known ONLY as Ducky
@reigh7
@reigh7 4 жыл бұрын
Great so now we know what string not to use as a thumb-drive name. =)
@hackersarchangel
@hackersarchangel 11 жыл бұрын
Just want to toss in that Timeout is only in Vista and newer, a good alternative would be to "ping localhost -n 3" or "ping localhost -n 1 -w 3000" if you wanted a debugging counter.
@Laguy211
@Laguy211 11 жыл бұрын
The power of the duck lol
@doomermeeko
@doomermeeko 10 жыл бұрын
You can use for /f %%d in ('wmic volume get driveletter^, label ^| findstr "DUCK"') do set drive=%%d This will also display the names of the volumes, and you will easily find DUCKY
@kadeembey8367
@kadeembey8367 4 жыл бұрын
heyy thank you for such an educational video. I would like to know what programming language is used in this video ? Is it all DOS commands ? I heard you mention visual basic ? I would like to dive a bit deeper in self education
@SpragginsDesigns
@SpragginsDesigns 3 жыл бұрын
Python/bash/shell commands. Fairly easy to learned compared to JavaScript and Vue.js/React.js which are more difficult to learn.
@joebob9468
@joebob9468 7 жыл бұрын
Do you need to have a ducky drive thing in order to write duckyScript or can you download the duckyScript and make your own ducky program?
@Audiack
@Audiack 9 жыл бұрын
Is there an advantage of running cmd through run with powershell over just doing windows key then ctrl+shift+enter?
@Fazal828
@Fazal828 8 жыл бұрын
He used it to input options to get a UAC (which he then uses ALT+Y to accept). This allows us to get administrator rights which are much more powerful. Also, I wasn't able to use the win key then ctrl+shft+enter to open the powershell. If that command does work, and if your ducky script doesn't need admin access then I assume it is ok.
@Audiack
@Audiack 8 жыл бұрын
Fazal828 Ctrl+shift+enter on the cmd.exe in the windows search bar brings up UAC.
@adriansrfr
@adriansrfr 5 жыл бұрын
Yes, but how do you make a regular usb autolaunch the run command and type in commands?
@prototype9000
@prototype9000 3 жыл бұрын
You dont
@jamarallen08
@jamarallen08 7 жыл бұрын
Mr. Robot cameo...go Ducky!
@MultiMegaMaxx
@MultiMegaMaxx 11 жыл бұрын
Do more, even more, love 'Em. But please, make shipping less. And everyone else, check out the leostick. It can do the ducky if a compiler. Cheaper alternative
@tylerjames3713
@tylerjames3713 7 жыл бұрын
whats the difference between this method and using the ducky drive as a twin ducky?
@sireatsalot398
@sireatsalot398 2 жыл бұрын
"now i can easily back up my computer whenever i like by just plugging in a usb drive" 0-), gets me everytime lol
@dachuandu6539
@dachuandu6539 5 жыл бұрын
if you have antivirus soft like 360 or qq pc manager installed, it just stops the duck from downloading script and reports trojan. anyone solved this?
@alexkim8297
@alexkim8297 6 жыл бұрын
What if autorun from media is disabled by group policy, would this still work?
@ScinnerNo1
@ScinnerNo1 4 жыл бұрын
Yup, Win recognize rubber ducky as a keyboard.
@hak5
@hak5 11 жыл бұрын
Sure can.
@Lolzzn12
@Lolzzn12 6 жыл бұрын
wouldn't this leave behind artifacts that could be found later by someone doing forensics on the system?
@zirizo
@zirizo 4 жыл бұрын
You can hide the file deep in the system 32 file
@parkour86
@parkour86 11 жыл бұрын
I don't think that would work since I don't have sendmail. Is there a way to make an LED on the ducky turn on or is there no LED's on the ducky?
@griftin
@griftin 11 жыл бұрын
can this be done with a twin duck?
@mijaelmejia5863
@mijaelmejia5863 7 жыл бұрын
Awesome
@thapope434
@thapope434 8 жыл бұрын
if anyone looks at their connected devices on target computer, the ducky drive come up as a removable storage. seems kind of obvious
@parkour86
@parkour86 11 жыл бұрын
If the document folder has a bunch of files in it, how do we know when to pull the flash drive out?
@frankpantone574
@frankpantone574 7 жыл бұрын
Could you do a video with a more detailed instruction on how to assemble the hardware?
@danvan4481
@danvan4481 7 жыл бұрын
Step 1: buy two USB drives. Step 2: there is no step two.
@MMAJOR-jc9kl
@MMAJOR-jc9kl Жыл бұрын
@@danvan4481 😂
@anthonyfilingeri6496
@anthonyfilingeri6496 7 жыл бұрын
bat to exe tool has an option to run invisibly ! Run duck scripts completely invisible
@draco5991rep
@draco5991rep 6 жыл бұрын
What a nice way to backup a pc
@charlesherch8227
@charlesherch8227 4 жыл бұрын
Can you use the rubber ducky on a android phone
@JoeFeser
@JoeFeser 11 жыл бұрын
vbs = virus broadcasting system. Love it.
@dellthinker
@dellthinker 8 жыл бұрын
how well is this when the desktop isn't logged on and/or locked?
@christopherzuniga2807
@christopherzuniga2807 6 жыл бұрын
getmoney Same question, did you find an answer?
@deathmast403
@deathmast403 9 жыл бұрын
so do you even need the ducky drive couldn't you just write the batch file on the normal usb and do the something to inject or drag and drop the execute
@20Gregster
@20Gregster 9 жыл бұрын
deathmast403 Technically yes. You can create a batch script to do all of this but you have to manually execute it. With the Duck, you just plug it in, and if anyone was looking they wouldn't be aware of anything. It's completely invisible. You can even give them the USB with Twin Duck and they'll run it by unknowns to themselves. It's evil genius.
@fss1704
@fss1704 6 жыл бұрын
i'm working in a micro usb board of a keyboard together with a multiplexer and an arduino nano, basically you can do the same thing connecting the keyboard circuit to a multiplexer and then issue the outputs with a microcontroller. Of course that's more complicated, but a miniaturized version can be easily made if you know how to cut even further the keyboard circuit and solder it to the multiplexer and the arduino board. I've implemented usb in a wr704n ar9331 router without a microscope, search that and see the size of the processor solder pads i've got trough, 5 pins per milimeter, usb keyboard is a piece of cake compared to that, the piece of the blob in the circuit got reduced by 1/3 of it's original size, i've soldered the pads like a charm, then hot-glued them to get a usb keyboard module, i've soldered the smd version of the oscillator capacitor before the hot glue, then the smd multiplexer is directly glued in the other side with it's outputs directly connected to the keyboard circuit trough earphone wires, no pcb at all, after i checked the connection of the multiplexer sending commands created in audacity for the multiplexer and played them in an amplifier with an opto-isolator with it's ouput going to the multiplexer. After it worked i could confidently wire the multiplexer and the arduino and now i'm creating the keymap correlation of keypresses and multiplexer states to create a full ASCII conversion table so that i can abstract what i want to do. I've connected a opto-osolator infrared programmer with my 2cm isolation specification, then hot-glued a case around it using a micro diy HHO torch and a copper radiator pipe with ice inside to model the case.
@machupikachu
@machupikachu 11 жыл бұрын
Shipping is 35$ for me. Any way to get it for less? (like a second shipping station in Europe?)
@notandinotandi123
@notandinotandi123 11 жыл бұрын
Where can you get a rubber ducky?
@thegreatwoomy5397
@thegreatwoomy5397 7 жыл бұрын
does the alt+y thing work even on a non admin account?
@totallynuts7595
@totallynuts7595 4 жыл бұрын
theoretically. It really only closes a single prompt
@marek.t54
@marek.t54 8 жыл бұрын
Do you ship rubber duckys to germany?
@ProjectCodeName
@ProjectCodeName 8 жыл бұрын
+skateboarder289 ja machen sie :)
@GhostsPlace
@GhostsPlace 8 жыл бұрын
+skateboarder289 They do to the Netherlands, They will send it using USPS, but if you pay 30.- extra they will use UPS
@supermorph
@supermorph 8 жыл бұрын
useful, i would of made the script maker more silent, by displaying just dots. also, did anyone notice, the display screen had an "activate windows now" popup? just amused me a little
@christopherguy1217
@christopherguy1217 6 жыл бұрын
It's laziness and not necessity that is the mother of invention.
@RegularGamersGuide
@RegularGamersGuide 10 жыл бұрын
Could you pleas post the script in the comments? Because I dont know how to get the up arrow that you showed at 4:05 after volume
@andrewmartin903
@andrewmartin903 10 жыл бұрын
^
@deathzombee
@deathzombee 9 жыл бұрын
Andrew Martin Don't feed the kiddies O.O
@iKrizNL
@iKrizNL 8 жыл бұрын
doh.. ALT Y is incorrect it should be ALT F4, talk about sponsor plugging... pff
@AndersWOlsen-we3nw
@AndersWOlsen-we3nw 10 жыл бұрын
My Ducky types ï instead of ^ What can I do to prevent this?
@totallynuts7595
@totallynuts7595 4 жыл бұрын
i guess it's setting the keyboard layout. (Don't ask me how)
@unknown-yo2tx
@unknown-yo2tx 5 жыл бұрын
js backdoor?
@kaze464
@kaze464 7 жыл бұрын
is there a way to do the same on windows 10 ?
@Larkenshine
@Larkenshine 7 жыл бұрын
kaze464 Literally the exact same thing.
@msven
@msven 11 жыл бұрын
I love how you call "goto" 'God awful'....
@XW0RKS
@XW0RKS 11 жыл бұрын
I also make that cls - clear mistake... like, every time :D
@nngogol244
@nngogol244 6 жыл бұрын
So, you just create duckyScript, that can install a program on the target machine, and when you want to stea... make a backup - you just insert a flashDrive and ...Boom! Backup is on your drive! LOL/
@pedrosierra4633
@pedrosierra4633 6 жыл бұрын
Do Rubber Ducky payloads only work with CMD?
@callekun
@callekun 6 жыл бұрын
It works with everything
@ShannonMorse
@ShannonMorse 11 жыл бұрын
HA! I get it. ;)
@no_u7277
@no_u7277 6 жыл бұрын
Anyway to make something like this with raspberry pi 3.0 b+
@BogdanPukish
@BogdanPukish 7 жыл бұрын
is this still actual?
@techaid1940
@techaid1940 4 жыл бұрын
of course, it is always actual, it isn't "patchable" without the use of 3rd party software
@michaellin4553
@michaellin4553 6 жыл бұрын
Thanks for teaching me basic batch... Oh the syntax is god-awful.
@Edser9
@Edser9 11 жыл бұрын
time to name all drives ducky/sparky/haksaw/etc and make demo.bat remove all USB devices
@thatsw0lfy526
@thatsw0lfy526 4 жыл бұрын
Involuntary Backup xD
@notandinotandi123
@notandinotandi123 11 жыл бұрын
nevermind #HakShop
@letsgetto1millwithoutvids
@letsgetto1millwithoutvids 3 жыл бұрын
I use malduino same scripts much much cheaper
@jimatohno788
@jimatohno788 11 жыл бұрын
Did you really watch the video?
@KayvonA
@KayvonA 11 жыл бұрын
Bobs your uncle? What
@carlwcampbell
@carlwcampbell 11 жыл бұрын
Powershell to the rescue: send-mailmessage -to "user01ATaolDOTcom" -from "user02ATgmailDOTcom" -subject "Backup Done!" But your target environment must be presetup to respond to mail requests.
@exxo5
@exxo5 7 жыл бұрын
u have some mistakes of coding WScript Duck((y))Slurp
@EmoryMullis
@EmoryMullis 10 жыл бұрын
Great job, thanks.
@mrgalikanookis
@mrgalikanookis 10 жыл бұрын
is there a way to backup the info right back to the ducky given a large enough sd card?
Stealing Files with the USB Rubber Ducky - Hak5 2112
30:01
Advanced NMap Techniques - Hak5 2415
40:46
Hak5
Рет қаралды 167 М.
Heartwarming moment as priest rescues ceremony with kindness #shorts
00:33
Fabiosa Best Lifehacks
Рет қаралды 13 МЛН
Became invisible for one day!  #funny #wednesday #memes
00:25
Watch Me
Рет қаралды 58 МЛН
How to Benchmark Your Linux System, Hak5 1502.1
14:31
Hak5
Рет қаралды 20 М.
USB Hacks for Windows, Linux, and Macs - Hak5 2124
31:09
What Does a Former Black Hat Hacker Carry Everyday?
27:05
Shawn Ryan Show
Рет қаралды 431 М.
Ethical Hacking 101: Web App Penetration Testing - a full course for beginners
2:47:57
I Bought the World’s First OLED TV from 2008!
13:57
Linus Tech Tips
Рет қаралды 312 М.
Glytch's Hacker EDC Bag - Version 2.0
10:00
Hak5
Рет қаралды 360 М.
Hack like Mr Robot // WiFi, Bluetooth and Scada hacking
45:23
David Bombal
Рет қаралды 2,1 МЛН
Tactics of Physical Pen Testers
44:17
freeCodeCamp Talks
Рет қаралды 891 М.
Klavye İle Trafik Işığını Yönetmek #shorts
0:18
Osman Kabadayı
Рет қаралды 4,1 МЛН
Choose a phone for your mom
0:20
ChooseGift
Рет қаралды 7 МЛН
Easy Art with AR Drawing App - Step by step for Beginners
0:27
Melli Art School
Рет қаралды 14 МЛН
Todos os modelos de smartphone
0:20
Spider Slack
Рет қаралды 36 МЛН