PacketWhisper

Data Stealer

A tool for stealthy data transfer using DNS queries and text-based steganography to evade attribution and detection.

PacketWhisper: Stealthily exfiltrate data and defeat attribution using DNS queries and text-based steganography. Avoid the problems associated with typical DNS exfiltration methods. Transfer data between systems without the communicating devices directly connecting to each other or to a common endpoint. No need to control a DNS Name Server.

GitHub

623 stars
19 watching
116 forks
Language: Python
last commit: over 3 years ago
Linked from 1 awesome list

cryptographydata-exfiltrationdlpexfiltrationhackinghacking-toolspentest-toolpentestingred-teamsecuritysecurity-toolssteganography

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
trycatchhcf/cloakify A tool for hiding data in plain sight by transforming it into innocuous-looking strings 1,558
punk-security/dnsreaper A tool used to detect subdomain takeovers in DNS records and identify potential security vulnerabilities. 2,010
zerbea/hcxdumptool A tool to capture and analyze packets from WLAN devices. 1,837
anirudhbiyani/findmytakeover Detects DNS record misconfigurations that could be exploited by attackers 135
fsecurelabs/dref A tool designed to exploit DNS rebinding vulnerabilities in web applications, allowing it to bypass security restrictions and exfiltrate sensitive data 481
arno0x/dnsexfiltrator A tool for transferring files over DNS requests without being detected 847
darryllane/bluto Tools for gathering information about and exploiting vulnerabilities in domains 619
defparam/smuggler An HTTP Request Smuggling / Desync testing tool written in Python 3 1,819
deepfence/packetstreamer A tool for collecting and streaming network traffic from multiple machines for forensic analysis and security monitoring 1,885
danmcinerney/dnsspoof A DNS spoofing tool that alters DNS responses before they reach the router. 278
lazytitan33/dns-exfilnspector Automatically decodes DNS Exfiltration queries to convert Blind RCE into proper RCE via Burp Collaborator 8
paulsec/det A toolkit for testing network monitoring and data leakage prevention solutions against various data exfiltration techniques 158
anshumanpattnaik/http-request-smuggling Detects HTTP Request Smuggling vulnerabilities in web applications 472
iphelix/dnschef A highly configurable DNS proxy tool for intercepting and modifying DNS queries during network traffic analysis. 895
tecknicaltom/dsniff A collection of network auditing and penetration testing tools that sniff various protocols to reveal security vulnerabilities. 190