Thank you for taking the time to teach us. I would like to address the people who think no one would leave their laptop unattended in a coffee shop etc. I am 60 plus and female. I can't tell you how many people have asked me to watch their laptop while they go to the bathroom, order another drink etc. I look "harmless". 💀
@SecurityFWD3 жыл бұрын
So true! Thanks for sharing!
@patthetech4 жыл бұрын
"or even worse(attack)" *rickrolls* brilliant.
@spacesser45353 жыл бұрын
That's what I'm thinking about.....
@V1c10us-p4nd43 жыл бұрын
how?
@spacesser45353 жыл бұрын
@@V1c10us-p4nd4 hmmmm.... Just a hack that suddenly make his screen have that rickrolls video. 😅
@rexleague87403 жыл бұрын
You know he is a serious hacker when he has Stickers on his Laptop
@davesthedude3 жыл бұрын
The note stickers the more hacks one has pulled off
@fezzes4283 жыл бұрын
the defcon sticker in particular is a staple of pro hackers
@selami323 жыл бұрын
every sticker represents his victims
@commenter78933 жыл бұрын
I use ubuntu, have bios password, encrypted disk with password and user password. I wonder if he can hack my unattended password protected computer. Honest question.
@paulwoerks3 жыл бұрын
@@commenter7893 yea you can get the decryption key stored on the RAM as long as the computer is powered on. Even if you shut it of one can physically freeze the RAM a couple of minutes after, copy the stored info and extract encryption key. But there are a few other less complex methods that come to my mind too like using a key logger or an evil maid attack. The only way to really make sure no one hacks into your computer is having an eye on it all the time tbh.
@sfperalta3 жыл бұрын
Sadly, an attack that relies on the stupidity of the clueless victim is an all-too-real scenario.
@NFS-shade3 жыл бұрын
White Chicks Movie
@kpopempire14753 жыл бұрын
This is exactly why you install and activate the usbguard daemon on your Linux system.
@allenshepard79923 жыл бұрын
Thanks for the update. We have docking stations at work where USBs (type a or c) can be plugged in. Not good. I learn something every day.
@tribejudah96653 жыл бұрын
I can imagine going to a friend's home for a barbeque, let's say the head project manager of XYZ company, and installing this on a company laptop if the USB isn't disabled.
@SecurityFWD3 жыл бұрын
Exactly, may offices are vulnerable too. Because of computers turned to customers or left unlocked in cubical ext..
@dougaltolan30173 жыл бұрын
If the same vulnerability would work with the ducky plugged into a USB hub which is plugged into the target machine then the ducky could also *be* that hub with a flash drive as one device and the keyboard as another. That way the victim could be persuaded to use the ducky as a functional flash drive. In which case to window for attack is much longer and there is no need for such surreptitious activity as plugging something into an unattended computer.
@randomstatements80342 жыл бұрын
You can make that if you use twin duck on your rubber ducky
@benbeale27274 жыл бұрын
Pretty sneaky... Also, don't end up on any security cameras plugging shit into random computers 🤣. That defeats the whole purpose of not leaving traces on the machine.
@SecurityFWD4 жыл бұрын
Haha, good point! WiFi cameras can be deauthed.
@IsraelThomas-fv3od Жыл бұрын
oh my gosh!! @@SecurityFWD
@II-er7gj3 жыл бұрын
By the way - that sign Varonis on your backpack 0:18 in Latvian mean Hero! You are real security Hero!!! That is very nice!! :)
@SecurityFWD3 жыл бұрын
That's awesome! It's the name of the company that sponsor's this show.
@AJ-lu3wx3 жыл бұрын
Me: "what's this strange peripheral device?...unplugs"
@SecurityFWD3 жыл бұрын
The duck works surprisingly well plugged in behind a desktop.
@myusername1113 жыл бұрын
bro you would win against a cat at a staring contest you don't blink
@SecurityFWD3 жыл бұрын
The Kody isn't programed to blink haha
@myusername1113 жыл бұрын
@@SecurityFWD waiting for softpatch 6.3 XD
@baller84milw3 жыл бұрын
Anybody ever tell you that you look like that British guy from Map Men? You guys look like twins, 100% doppelgangers. I'm half convinced I'm in The Truman Show and the directors underestimated my memory and cast the same actors twice.
@TechMechRandom3 жыл бұрын
This is interesting. I am just not sure how I feel about it. There are better attack vectors that don't require many hands on deck and less risk of being caught. This would be one of those (sitting on the edge of your seat) attacks in a Mission Impossible suspense scenes. "Oh man, they are going to see the foot long tail sticking out of their laptop if they look. Oh no, they are looking..."
@randomstatements80342 жыл бұрын
Could you give some examples of other attack vectors as i am new to the topic and I am not familiar with much. Thanks
@AJ-Palermo2 жыл бұрын
yet school wifi has trouble going more than 30ft from an access point
@Therealguymins3 жыл бұрын
I enjoy your framed Sentient Hyper-Optimized Data Access Network
@kaiwang76303 жыл бұрын
I used to leave the predecessor USB Rubber Ducky around the office and the payload was to load up Rick Roll. There something satisfying to find out the evolved version wifi duck is now carrying the torch.
@SecurityFWD3 жыл бұрын
There's also the Digispark, a ~$1 USB Rubber Ducky that's pretty cool.
@supervortex83634 жыл бұрын
already taken control of defence satilites
@steve-ip1cd3 жыл бұрын
I just got my ass kicked after plugging in the duck. Hopefully I get out of the hospital this week.
3 жыл бұрын
Did he just.... literally teaches people how to hack???
@djneon125 жыл бұрын
this text was remotely place here.
@spacehuhn5 жыл бұрын
nice thinkpads
@anotherbasedpepe4 жыл бұрын
yo u gotta update that esp8266 wifi hacker
@iampg424 жыл бұрын
Hey spacehuhn
@badatpseudoscience4 жыл бұрын
Not trying to be one of those types of posters but at 1:44 the yagi directional antenna is backwards. Its pointing away from the WiFi Duck.
@SecurityFWD4 жыл бұрын
Haha that is a good catch, our editor was not a wifi person
@VIVEVIEV3 жыл бұрын
3:34 That guy laughed LMAO
@yjust28133 жыл бұрын
shit i want to know how to use this and troll my friends with rick rolling
@twong6893 жыл бұрын
My next wall perp hacked into my LAN. They first cracked the WiFi hotspot, from there they breach the home network. Once I set up white list in the router, they are blocked out.
@askwhat_3 жыл бұрын
he still don't blink guys
@SecurityFWD3 жыл бұрын
He isn't programmed to blink haha
@anthonyrickardii6198 Жыл бұрын
Pretty freakin awesome! Question! Can a regular nano adruino work as well as same with ESP8266 ESP be used as the same thing ? If so is scripts still the same?
@nikf31884 жыл бұрын
You are the lockpicking lawyer?!
@SecurityFWD4 жыл бұрын
I wish haha
@nikf31884 жыл бұрын
@@SecurityFWD You sounded similar there for a minute :)
@paranoidzkitszo11 сағат бұрын
But the resl question(and almost no mention of it...) That yaggi antenna! Can-tenna.... Where'd ya obtain such a marvel of modern day technology???
@faranahmadk74013 жыл бұрын
Every hacker has her fixation. You hack people. I hack time. ~ Whiterose
@mingosutu3 жыл бұрын
The video is about not leaving your computer unattended
@fpshimanshuyadav1713 жыл бұрын
your eye contact with the camera though
@SalvadorDali-v8b5 ай бұрын
Are there any differences between Dstike wifi duck and Cactus WHID?
@watisonik3 жыл бұрын
How does one protect themselves from such an attack?
@plomek50392 жыл бұрын
if a hacker doesn't blink that means hes a good hacker
@TohaToni3 жыл бұрын
Is the case same if a computer is locked, let say with Win 10 installed?
@SecurityFWD3 жыл бұрын
The hacker would have to know the password in that case, from phishing or some other attack.
@ascendordie74273 жыл бұрын
why dont you just put a program onto the usb that will auto install a rat bypassing the need for a second hacker and antenna?
@f9zerowinner5894 жыл бұрын
You don't need any of this equipment all you need to do is know how to program a RAW program and then its like every entry is open and you turned a 300 dollar laptop into a laptop that would of costed you $50,000
@SecurityFWD4 жыл бұрын
Ok
@svporqueno2 жыл бұрын
Can we get the title of the CODES, book in the background please? 🙂
@raycarney59413 жыл бұрын
Life in Federal Prison for all hackers.
@yvsonmoura3 жыл бұрын
Would the Wi-Fi Duck still work if the victim's computer has auto-mount disabled?
@SecurityFWD3 жыл бұрын
I don't think so, it would need to mount like plugging in a keyboard.
@espa_tronc_communsitraka Жыл бұрын
in some chinese cheep module like CJMCU, i juste have english keyboard. Is it possible to find some script witch translate the payload wrote on english keyboard to be an payloads wrote on french keyboard?
@gauravbansal1483 жыл бұрын
Somehow YT thinks i am smart enough to understand this gibberish.
@mr.ptolemy89473 жыл бұрын
How does one make wifi reach 5 miles?
@SecurityFWD3 жыл бұрын
We have a video on the subject here: kzbin.info/www/bejne/fZrQonqjnKufabM
@donalain693 жыл бұрын
Alternatively you could just steal the unguarded laptop..
@frames6953 жыл бұрын
thank you thinkpad.
@Noobmaster1234-f8g3 жыл бұрын
hacker got rick rolled 3:27 lamao
@SecurityFWD3 жыл бұрын
The ultimate hack haha
@angeloc.2653 жыл бұрын
Next: tutorial in assembling simple wifi, and its functions and descriptions
@Wk_e_com3 жыл бұрын
yo imma troll my teachers with this
@tqmatvey70103 жыл бұрын
that is sick!! but tho you need to portforward from attacker so you can use revere shells, or must be in same network as victim then rubber ducky is just a better tool
@MrNwn0073 жыл бұрын
2:57 nothing suspicious,. nothing suspicious
@alokprakash20173 жыл бұрын
Every hacker talk of WiFi but no one talk about hacking pc in 4G network in public. I tried to look for open ports by getting my ip address of android phone and then USB tethering it to my PC but it was taking hell lot of time to scan. Then I exited because I am noob in hacking.
@Reallich_3 жыл бұрын
i would do this on my friends just to rick roll them
@trafferz3 жыл бұрын
Fascinating. Your meaning in 'temporary access' is that the computer is left in logged in state, correct? The wifi duck doesn't immediately defeat password protection, does it? At least now this gives a better picture of what all those movies are trying to represent when the agent plugs a USB dongle into a target's machine. Thanks!
@SecurityFWD3 жыл бұрын
Yes temporary access would normally mean logged in, how ever if the hacker did have the password the duck could enter it.
@trafferz3 жыл бұрын
@@SecurityFWD Understood. Thank you!
@anasqai3 жыл бұрын
It is clear a Rubber Ducky is a Fake Duck, so This Definitely is a Fake USB.
@Yorak4043 жыл бұрын
I love null byte (Your Videos) so yea just subbed here, but but do you know how to get the lazy script to run on the new kali or another script like it?
@jimbobby11622 жыл бұрын
What idiot wouldn’t notice an unknown USB connected to his laptop?
@margarita8442 Жыл бұрын
where can I get that antenna ?
@ash1ss3 жыл бұрын
or use the rubber ducky to inject key strokes opening a backdoor or just installing malware and running it though cmd but lol whos gonna just get up and leave their computor on and not take their stuff
@bitopan.3 жыл бұрын
Worked in lock mode or not ?
@DarrenStarr3 жыл бұрын
Would these payloads still get installed even if you had an antivirus software like Bitdefender Total Security? If it doesn't see the attack, what are we paying for?
@SecurityFWD3 жыл бұрын
This would still work, it's just like plugging in a keyboard. As long as the hacker doesn't install malware that's been fingerprinted by Bitdefender. Antivirus is there to protect you from install malware buy clicking a bad link and things like that.
@DarrenStarr3 жыл бұрын
@@SecurityFWD Thanks for your reply. Thats it! Going to take it offline unless I'm using it! 😁 Very good, clear video by the way, you make it easy even for laymen and the production is nice too. Cheers. Subbed 🙌
@chromosome243 жыл бұрын
8O What script did you use to physically remove the wi-fi duck like that!!
@smtkumar0073 жыл бұрын
impractical.
@GeForceRTXTi3 жыл бұрын
Duck.FishingLine()
@XellosMetallium4 жыл бұрын
my wifi cant get farther than my front house. how the heck you get them a block or 5 miles away?
@SecurityFWD4 жыл бұрын
Higher gain antenna and WiFi cards that have higher output. Line of sight can be a huge factor too.
@kytv90003 жыл бұрын
Will the script install stuff without knowing the root password? For most linux distros and user scenarios, a root password prompt would come up and I think that'd be the biggest issue?
@SecurityFWD3 жыл бұрын
Depends on how the hacker goes about things, root password could be a roadblock but then you get into privilege escalation.
@jeoi2 жыл бұрын
Or Even Worse... RickRoll Injection XD
@AK47z3 жыл бұрын
Or I can just throw my botnet server on a usb, plug it into any “victims” pc and with 2 clicks of the mouse I now have full control over that pc anytime it’s online.
@KeebaAfrica3 жыл бұрын
do 1st world people actually leave a computer unattended???
@SecurityFWD3 жыл бұрын
Yes just depends on the setting. Less likely at a coffee shop but very common in an office or at home.
@c123bthunderpig4 жыл бұрын
Amazing, developing tools that let you he a thief, not caring about what the damage can do to an individual. Think I'll rig a USB port to explode , like a dye pack 😀
@SecurityFWD4 жыл бұрын
Amazing, wishing for all to be ignorant so they can be easily tricked. I think I'll hope no one knows how this works so no one can defend against it!
@hritikverma83903 жыл бұрын
Hope this did not get Copyright strike.
@SecurityFWD3 жыл бұрын
Why would this get a copyright? lol
@hritikverma83903 жыл бұрын
@@SecurityFWD No usually KZbin remove content related to ethical hacking and stuff
@TheMaxreuben3 жыл бұрын
Link to the podcast?
@SecurityFWD3 жыл бұрын
The podcast is here: securitytools.simplecast.com/
@TheMaxreuben3 жыл бұрын
Thanks. Appreciate it.
@stuna914 жыл бұрын
How can you tell if someone did this to your computer?
@neomatrix36124 жыл бұрын
Push "F7"
@simbahunter3 жыл бұрын
Your computer is going to start behaving abnormally, check your task manager if power shell is open without you opening it you have bee hacked.
@Calypso9933 жыл бұрын
another option could be to put a 3 or 4g mobile modem in the ducky...
@chiranjeevinaidu36603 жыл бұрын
I wonder what happened to the NullByte channel 🤔
@adamiskandar78453 жыл бұрын
why its smoky on 3:19
@nagasaipurvaz42513 жыл бұрын
i always keep the usb ports closed with laptop sleve
@sihmy98702 жыл бұрын
Just gimme those stickers and I'll become a perfect hacker
@aleksandarstevanovic58543 жыл бұрын
Samy Kamkar did this years ago...
@hyperdeloutz24443 жыл бұрын
I pity the poor soul that bothers to hack into my computer!! 😂😂
@LioncatDevStudio3 жыл бұрын
Getting hacked by a duck
@executivezone14 жыл бұрын
is there a way to plug into a computer with this device via AUX instead of usb?
@donalain693 жыл бұрын
LOL.. are you planing to sabotage your opponents at the pioneer DJ world championship? 😃
@executivezone13 жыл бұрын
@@donalain69 cute... was thinking of ATM machines at the bank
@donalain693 жыл бұрын
@@executivezone1 hmm.. now that you mention it.. your right. Seen some ATM with audio jack.. but I guess that’s only audio out for earphones.. Guess usb is still a better option if the Hardware case isn’t locked. where I live (in thailand) i see at least 3 ATMs per day with open doors or hardware parts placed next to or behind them... and usually the hardware is just a small pc tower.. with usb.
@executivezone13 жыл бұрын
@@donalain69 worth a shot, which is why i asked ;)
@donalain693 жыл бұрын
@@executivezone1 well.. I guess you won’t post it on KZbin in case it worked, so I probably will never know. But wish you good luck with it.
@cheajingzing68603 жыл бұрын
he could just steel the laptop instead .LOL
@SecurityFWD3 жыл бұрын
Perhaps but this sort of attack can be much more dangerous depending on the hacker's goals.
@BMcC783 жыл бұрын
You have organized stickers on your laptop. You must be a hacker. Let me guess, you sign your name with Security+?
@selami323 жыл бұрын
i can do this but i don't have a companion hacker
@SecurityFWD3 жыл бұрын
A single person can do it, they would just have to target something like a desktop in an office.
@DntGames4 жыл бұрын
Where did you buy the unidirectional antena?
@blufrog95464 жыл бұрын
you can make one yourself
@lordvalen81333 жыл бұрын
Buy some pringles.
@reastle13073 жыл бұрын
i am hear from NULL-byte
@SecurityFWD3 жыл бұрын
Good to see you!
@theeffectoflogic33 жыл бұрын
Could you repeat that? I couldn't here you!
@adropofgoldensun273 жыл бұрын
"Wifi can travel up to 5 miles" yet I still get KZbin buffering inside my house 🙂
@kenyanaddict_official3 жыл бұрын
Where can I get the tool
@narmandanail81372 жыл бұрын
the probs is when you deal non digitalized mechanism then old school way :D
@ShivamVerma-sz1ew3 жыл бұрын
Can i use Esp8266 for this attack
@VioletMercado2922 жыл бұрын
CAN I BE HACKED WITHOUT KNOWING??
@rorozorolol97253 жыл бұрын
who leaves their laptop alone?
@flyerzy3 жыл бұрын
there is nothing in my pc but virus ! welcome ! lol
@jerrygeorge16204 жыл бұрын
I don't have a alpha network, can I use my own laptop WiFi to access the ducky? Please help me
@Coniass4 жыл бұрын
Yes but the Range is Smaller
@anupdhond3 жыл бұрын
This is like the equivalent of a hardware trojan.
@SecurityFWD3 жыл бұрын
Basically haha
@j58920004 жыл бұрын
So you have to put the usb stick on the computer you are wanting to hack lol
@MajikCatSecurity4 жыл бұрын
Yes, you have a non-hacker that works there or poses as a service tech plant the device. It still takes hacking skills to actually use the device once it is connected. Or simply use it as a remote connection to your home server, etc. There are times when a technique like this is preferred or even needed.
@SecurityFWD4 жыл бұрын
Congratulations! We responded to your comment on the livestream here: kzbin.info/www/bejne/j4ncqYiEYsqIbaM
@umarbaig0073 жыл бұрын
How to put usb into other computer ?
@SecurityFWD3 жыл бұрын
Serve them coffee and wait till they use the restroom