Kayjay Posted November 25, 2017 Share Posted November 25, 2017 Hi all, Newbie here! I'm teaching myself how to analyze and hack my own network. I have worked with Wireshark and Charles debugging proxy - very little! I'm interested in purchasing some Hak5 products and thought I would ask the community, which ones to start with. My initial goals are to monitor traffic and extract passwords. Between Opendns, Wireshark and Charles, I have a good idea regarding the sites being visited on my network and would like to take this further. So far, I'm looking at the Wifi Pineapple and Bash Bunny. Thanks! Quote Link to comment Share on other sites More sharing options...
Broti Posted November 25, 2017 Share Posted November 25, 2017 (edited) You might also have a look at the LAN Turtle and the Packet Squirrel. Check out the sub-forums and the Hak5 introductions episodes at Youtube.Both tools aim at networking yet with a different approach. Maybe the good old USB Rubber Ducky is something for you too. A good start for product information (apart from the forum): https://www.hak5.org/gear Edited November 25, 2017 by Broti Quote Link to comment Share on other sites More sharing options...
RazerBlade Posted November 26, 2017 Share Posted November 26, 2017 10 hours ago, Kayjay said: Hi all, Newbie here! I'm teaching myself how to analyze and hack my own network. I have worked with Wireshark and Charles debugging proxy - very little! I'm interested in purchasing some Hak5 products and thought I would ask the community, which ones to start with. My initial goals are to monitor traffic and extract passwords. Between Opendns, Wireshark and Charles, I have a good idea regarding the sites being visited on my network and would like to take this further. So far, I'm looking at the Wifi Pineapple and Bash Bunny. Thanks! If you wanna go for the pineapple, go for the TETRA cause Nano sucks. For USB, BashBunny all the way. 100x better than the ducky, it can do so much more stuff. If you really want the ducky, I would recommend the malduino. It's the same as the rubberducky but much cheaper. All payload are compatible with the ducky. Link here: https://malduino.com/ Quote Link to comment Share on other sites More sharing options...
biob Posted November 26, 2017 Share Posted November 26, 2017 problem with MalDuino is that you don’t get any accessories and the elite doesn’t fit inside a usb case. Also it doesn’t come preprogrammed and there isn’t a firmware to allow mass storage. Quote Link to comment Share on other sites More sharing options...
Broti Posted November 26, 2017 Share Posted November 26, 2017 1 hour ago, RazerBlade said: For USB, BashBunny all the way. 100x better than the ducky, it can do so much more stuff. Sorry, but I beg to differ. They cover different areas of attack style, except a certain amount of similarities. Darren made a post in the topic Ducky VS Bunny which nails it imho. Quote Link to comment Share on other sites More sharing options...
RazerBlade Posted November 26, 2017 Share Posted November 26, 2017 1 hour ago, Broti said: Sorry, but I beg to differ. They cover different areas of attack style, except a certain amount of similarities. Darren made a post in the topic Ducky VS Bunny which nails it imho. Fair enough. But I still stand by it that the Bunny is overall much more effective than the ducky. Sure, the ducky may be fast but if you are getting into these kinds of attack, the best tool is the BashBunny in my opinion. Quote Link to comment Share on other sites More sharing options...
Rkiver Posted November 26, 2017 Share Posted November 26, 2017 Different tools for different jobs. For our OP: Hi, welcome. In all honestly, learn how your own systems work, then setup a test bench of sorts and then decide what you want to concentrate on. From there, that is when you will know what tool suits you best. Though they are all rather good to say the least. Quote Link to comment Share on other sites More sharing options...
Broti Posted November 26, 2017 Share Posted November 26, 2017 (edited) 11 minutes ago, RazerBlade said: the best tool is the BashBunny in my opinion That's okay with me. The bunny does have its advantages such as more sophisticated attack patterns. Edited November 26, 2017 by Broti Quote Link to comment Share on other sites More sharing options...
Kayjay Posted November 26, 2017 Author Share Posted November 26, 2017 Thank you all! I appreciate the suggestions and feedback/opinions. I'll spend more time reviewing the product information. Quote Link to comment Share on other sites More sharing options...
Dave-ee Jones Posted November 29, 2017 Share Posted November 29, 2017 I would recommend Packet Squirrel for what you're looking for. LAN Turtle network capabilities + Bash Bunny payload capabilities = Packet Squirrel. You can use the TCPdump payload with Wireshark to analyse traffic over the network, for one. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.