Jump to content

Issue combining attack modes. (Windows 10)


datguy_dev

Recommended Posts

Greetings,

    I just received the BashBunny in the mail, so please bare with me. I was just trying to get started, when I ran into problems trying to share an internet connection w/ Windows 10. If I use the default payload on switch 2, ATTACKMODE RNDIS_ETHERNET STORAGE, or vise versa, it refuses to pop up as an Ethernet device in Windows. Just RNDIS_ETHERNET works, but isn't that kind of a problem when it comes to saving loot?

 

On a side note:

" Many combinations of attack modes are possible, however some are not. For example, ATTACKMODE HID STORAGE ECM_ETHERNET is valid while ATTACKMODE RNDIS_ETHERNET ECM_ETHERNET STORAGE SERIAL is not." - http://wiki.bashbunny.com/#!index.md

How do I know what is a proper attackmode combination?

Link to comment
Share on other sites

At the moment if you have ATTACKMODE RNDIS_ETHERNET STORAGE or ATTACKMODE RNDIS_ETHERNET HID the RNDIS Driver must be installed manually in windows.

So this Combination is not  really easy useable for attack vectors.

My idea is

ATTACKMODE HID

.......
......start some scripts on windows >>>> windows script wait for comming up the IP 172.16.64.1
........

ATTACKMODE RNDIS_ETHERNET

......
....... Script on windows detect the upcoming interface and go on with work
.......

 

Theoretcally it schoud work

  • Upvote 1
Link to comment
Share on other sites

2 hours ago, qdba said:

At the moment if you have ATTACKMODE RNDIS_ETHERNET STORAGE or ATTACKMODE RNDIS_ETHERNET HID the RNDIS Driver must be installed manually in windows.

*snip

tically it should work

Thanks for your reply. I just found your thread about this issue and it answered a lot of questions. ... That sucks for the time being huh?

I remember watching hak5's bash bunny introduction video and Darren was combining attackmodes like it was nothing. [face palm]

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...