PacketWhisper
Data Stealer
A tool for stealthy data transfer using DNS queries and text-based steganography to evade attribution and detection.
PacketWhisper: Stealthily exfiltrate data and defeat attribution using DNS queries and text-based steganography. Avoid the problems associated with typical DNS exfiltration methods. Transfer data between systems without the communicating devices directly connecting to each other or to a common endpoint. No need to control a DNS Name Server.
623 stars
19 watching
116 forks
Language: Python
last commit: over 3 years ago
Linked from 1 awesome list
cryptographydata-exfiltrationdlpexfiltrationhackinghacking-toolspentest-toolpentestingred-teamsecuritysecurity-toolssteganography
Related projects:
Repository | Description | Stars |
---|---|---|
trycatchhcf/cloakify | A tool for hiding data in plain sight by transforming it into innocuous-looking strings | 1,558 |
punk-security/dnsreaper | A tool used to detect subdomain takeovers in DNS records and identify potential security vulnerabilities. | 2,010 |
zerbea/hcxdumptool | A tool to capture and analyze packets from WLAN devices. | 1,837 |
anirudhbiyani/findmytakeover | Detects DNS record misconfigurations that could be exploited by attackers | 135 |
fsecurelabs/dref | A tool designed to exploit DNS rebinding vulnerabilities in web applications, allowing it to bypass security restrictions and exfiltrate sensitive data | 481 |
arno0x/dnsexfiltrator | A tool for transferring files over DNS requests without being detected | 847 |
darryllane/bluto | Tools for gathering information about and exploiting vulnerabilities in domains | 619 |
defparam/smuggler | An HTTP Request Smuggling / Desync testing tool written in Python 3 | 1,819 |
deepfence/packetstreamer | A tool for collecting and streaming network traffic from multiple machines for forensic analysis and security monitoring | 1,885 |
danmcinerney/dnsspoof | A DNS spoofing tool that alters DNS responses before they reach the router. | 278 |
lazytitan33/dns-exfilnspector | Automatically decodes DNS Exfiltration queries to convert Blind RCE into proper RCE via Burp Collaborator | 8 |
paulsec/det | A toolkit for testing network monitoring and data leakage prevention solutions against various data exfiltration techniques | 158 |
anshumanpattnaik/http-request-smuggling | Detects HTTP Request Smuggling vulnerabilities in web applications | 472 |
iphelix/dnschef | A highly configurable DNS proxy tool for intercepting and modifying DNS queries during network traffic analysis. | 895 |
tecknicaltom/dsniff | A collection of network auditing and penetration testing tools that sniff various protocols to reveal security vulnerabilities. | 190 |