Poison Tap exploiting locked machines w, Raspberry Pi Zero
PoisonTap siphons cookies, exposes internal router installs web backdoor (reverse tunnel) on locked, password protected computers with a 5 Raspberry Pi Zero and By Samy Kamkar Full details and source code at Buy a Raspberry Pi Zero here: Buy cement for your USB ports here: When PoisonTap (Raspberry Pi Zero is plugged into a locked, password protected computer (Windows, OS X or Linux), it: emulates an Ethernet device over USB (or Thunderbolt) takes over all Internet traffic from the machine (despite being a low priority network interface) siphons and stores HTTP cookies from the web browser for the Alexa top 1, 000, 000 websites exposes the internal router to the attacker, making it accessible remotely installs a persistent webbased backdoor in HTTP cache for hundreds of thousands of domains and common Javascript CDN URL
|
|