Making A $10 WiFi BadUSB + (cheeky giveaway)
Вставка
- Опубліковано 21 лис 2020
- MalDuino W! (use code: wow) maltronics.com/collections/ma...
===============================================
Giveaway closed
===============================================
Download that zip! docs.maltronics.com/malw-diy.zip
Trinket M0: www.adafruit.com/product/3500
D1 mini: www.aliexpress.com/item/32831...
Trinket alternative: www.aliexpress.com/item/10050...
Check out the github, and modify the code: github.com/maltronics/MalDuino-W
===============================================
Follow me on TWTR: / seytonic
Follow me on INSTA: / jhonti
=============================================== - Наука та технологія
damn instead of earning more money by selling us ur product, u just learnt us how to make ur own. Mad respect
Totally!! my respects !
yea, but makes sense in some way.. people who are willing to make one wouldn't buy it anyway
@@lugui Meanwhile people who don't know how to make it will buy it. Or if you are like me, build one and buy one. Now I got two!
it's a good idea. It legitimises the product. In many ways, knowing what's in it, effort/cost involved in making an untidy version of your own just demonstrates the value of the manufactured version. Besides, if anyone had genuine need for stealth, real world deployment, rather than simply being interested, it would make sense to get the manufactured one. Also it opens up possibilities for physical modification or building it into other devices.
yeh & you will never know if this firmware contains malware itself or not? :D Make your very own stuff and be safe ;P
lol, i refreshed my yt homepage at just the perfect time yet again
XD
Yo I don’t know why but I just became interested in badusbs - good timing 👍🏾
welcome to the hobby!
You woke me up at 6:00AM in the morning on a Sunday... there couldn’t have been a better way to wake up 😊 this video as awesome!
Good morning :)
@@Seytonic most wholesome UA-camr ever
@@Seytonic good morning to you as well sir. I can tell today’s gonna be a good day
Bought the malduino w last week, really excited to get it!
Great video like always, you the person who inspired me to build my own Arduino bad USB, keep up the great work
Hey man! I just have to say, Im a BIG fan of your keylogger series and Raspberry Pi CCTV! Keep up the great content!
Listen. Back in '04 - '05 I had a USB that did MUCH MUCH more than this little keystroke DoSer when I had physical access to a system. You hobbyists always make me smile.
While I plan on building my own I also bought a Malduino W to help support the channel. It is a big ironic that showing me how to do it for $10 convinced me to buy one for much more.
I found ur channel a while ago and me being 16 you've helped me enter the ethical hacking community and learn more than I have before
Now we know,, there is always a small furry in our malduinos
Never won any would be glad if I’ll win..!
Hey Seytonic Teach us how to make one with wifi and Sd Card
An ESP32-S2 could be a good fit for BadUSB, having both Wifi, and USB on the same chip.
Yeah but esp32s don’t have the right chip to be recognized as a keyboard.
Nice work as always keep em coming
Thanks, will do!
i feel so lucky that i snatched a malduino w early :)))
also when is the estimated date for the usb to arrive in southeast asia? hehe i cant wait any longer ;)
On the D1 mini link there are 4 options. does it matter which flavor of board?
I just bought one cause I love your videos and I think it be fun to learn cant wait to get it
Could you potentially make a video or two about your ARM Cortex M workflow / tutorials etc..? Im highly interested.
Thanks for making the how to - very interesting. Fascinated that the trinket is programmed with drag and drop! What do/can you actually write the program (for the trinket) in? (language/dev env I mean, arduino?) What chip was on it again? (sorry I ask as you said arm or something but then I saw atmel printed on the chip) do you know if it can pretend to be other things rather than keyboards? (sorry I could go look this up but hey the comments generate algorithm power ;) )
Wow here is you saying either buy the product or here is everything you need to make it on your own. Kudos.
Very cool, may not be the best looking thing but sometimes you just need a throw away device!
okay , i just ordered the d1 mini and the node mcu . if what i think is correct , then i'll be able to use either of them for making both ,a wireless bad usb and a wifi deauther.
also why the trinkrt m0 , in an earlier video you used the arduino pro micro?
My low budget ass is thinking about the possibilities of this, thx bro.
Seytonic, how or where can a get a micro to full size adapter like you showed in 5:05 ?
Hello where did you buy the micro usb connection ? When you plugin into the large one ? Thanks !
hey, first of all thank you for showing us this, i've made a mistake and ordered the d1 mini pro v3.0 instead of the 'normal' d1 mini and it won't show up on the flash tool, do i have to order the normal verison or is the version i've ordered also usable for this with maybe other tools or such?
Hello Jhonti!! I intend to combine the Arduino Pro Micro w/ Wi-Fi addon, just to use what I have in hands. Is it possible to use in the place of Trinket? Plus, the video you made teaching the usage of switches would work smoothly in this ~sandwich~? hahaha looking forward to your reply!
Is D1 Mini Pro / v3 worth few cents more? Will it even work as well?
Can I use instead of Trinket M0 this Arduino Pro Micro ATmega32U4 5V 16MHz? By the way luv ya videos. After watching I'm interested in these BadUSBs.
Yaay!!🎉🎊🎆... So does it mean we get another video next week?... Well I am excited
I already ordered one .... lets hope it will arrive soon
Im using the trinket alternative (seeduino xiao) the opne listed in description, but it doesnt work, do i have to solder to other pins instead of 3 and 4? the tx/rx pins
thanks
Seytonic, where can I find the website to buy a USB to C-usb adapter like the one you showed on youtube? Thank you.
I like your every project.I make this type of device from your video.Thanks bro.
Pls tell me an alternative for trinket mo, other than the AliExpress one. Can we use and arduino nano v3? Or how about an esp32 board. Pls make an esp 32 version of this wifi badusb.
Where do you get the Micro USB to full size USB adapters??
I've been toying with the idea of buying one of your bad USBs. I bought one purely to support your work after seeing this altruistic video. Long live open source information. X
Hope you enjoy it!
Very generous Jhonti, thank you. Now to keep my fingers crossed lol
Hey can you explain how the alternative trinket work, how to flash it and to connect the cable? Thanks
Did you find out how it works ?
From the documentation on aliexpress it seems you have to connect the reset button twice.
A hacker kitten would be so cute. Tysm for putting this into the vid
That macro-to-fullsize usb thingy. where can i get one ?
Hmm. Making an HID-Violation detector when ever too fast keyboard inputs are being performed sounds like a good idea... Does that already exist?
damn!Just bought the MalduinoW, but is not available...hope to receive soon!
In the meanwhile i will try to create this device with what i've here at home :(
PS: Is possible to use ESP32 devkit with ESP-WROOM-32 wifi integrated?!
A good defense against BadUSB on Windows is to set a local policy denying driver installation for keyboard class devices using this GUID: {4d36e96b-e325-11ce-bfc1-08002be10318}. It will prevent any new keyboard from being installed. Existing keyboards will still work.
When you build the new malduino why didn't you use the esp32 instead of the arm chip and esp8266 it should be able to handle webserver duty and the usb connection simulaneously?
The esp32 does not support USB-connection as a host. So you need a second processor (Cortex M0, Atiny85 [as before], CH559, ...)
can we use Arduino pro micro instead of trinket as I already have one
I love this guy he is my favorite UA-camr.
Thanks as always, one can build a "poor mans hak5 kit" through the use of your videos ;)
Bit of a request sir, can you cover these :
"Lan throwing stars"
2 way passive lantap available for a £5 on Ali? Should one go in the kit? Can one be built for pennies, I think so 🤔
Will digispark work instead of Trinket M0?
It's just awesome man
WHICH KIND OF MONSTER ARE YOU TO IMPRISON A CUTE FURRY ANIMAL IN SUCH A TIGHT SPACE??!? 😭😭😭😭
And don't get me started on the guy stuck in the box forever copying pictures and text.
These are extremely interesting gadgets and I want to use this product for educational purposes.
I really appreciate the budget option. It great to see both a introduction product and a more professional one too.
what if I replace the Triket M0 with a raspberry pi pico, can I install the same files on the reaspberry instead of the Trinket M0 ?
Hey, i just bought some components to make one. i got the seeeduino xiao because it looked cooler. unfortunately when i run a script is just says running/ but its not really doing anything. any thoughts?
Same
Is it possible to save a .txt file to it? ie it contains only a little text so it is very small
Where do you find the little microusb adapter, and do they come in type C?
Yes amazon
can we have a link to the payloads you showed?
Nice project, tnx 👏 👏 👏
sir can you please tell me how to connect the d1 mini and flash the seeduino xiao m0+ i will edit the ssid and password to make it something less conspicuous, for example naming it Android AP. Also need to add VID PID of apple keyboard. Please reply.
I entered the giveaway so hopefully i can win something. If not I just copped myself a malduino-w anyway so hopefully they will come back in stock soon
Why not use a NodeMCU?
So, I followed the instruction in the video. All working perfectly with the D1 and Trinket. I want the overall package to be small, so I then desoldered the ESP12 from the D1 and resoldered back to the trinket using the same connections. When I power up the trinket via USB, the ESP12 led turns on but is very dim. Also, no wifi AP appears. What idiotic thing am I doing wrong? :)
did you make it work?
would the malduino w be able to type faster if you use the usb-c port instead of the usb-a one, because of data limitation or is it mainly dependent on the target's hardware?
It wouldn’t make a difference, sending keys doesn’t require all that much bandwidth ;)
Can I use seeduino xiao instead of the trinket?
If the link for the zip file doesn't work, the file is backed up on the wayback machine
Honestly i could not thank you enough, thank you so so much, I bought all the components and i thought i was in big trouble when it gave the 404. You saved me sm thank you!!
Does any arm board work?
Can you use a nodeMCU instead?
I just bought both a Arduino Pro Micro and a NodeMCU, this comes at the perfect time, and once again, this video is really well made
Do you mean I can use any Arduino, I have an Arduino nano and an ESP 8266 ... will it work?
@@mananshah4184 you need an Arduino with a ATmega32u4 chip, the Arduino Nano won't work but you can buy an Arduino Pro Micro or an Arduino Beetle for somewhere around 5$
How long does it take to flash?
i can not download the zip file PLEASE HELP
5:07 Does anybody know whats the name of These Adapters?
CJMCU 3212 is a good option too
Dam one of these would be fun to toy around with .
anyone know what i should search to find those little Micro to UsbA converter things?
Usb otg on amazon is where I bought them few times if you get the 5 pack there few bux and free prime shipping next day
Anyone have a link to the microusb to USB adapter he used?
Just recently bought 3 esp8266 and 3 esp32. What a timing xD
I cannot for the life of me find these exact files. The link you provide for downloading the zip is M.I.A... please help?
Nice. getting a trinket just to try it out.
The responsible thing for you to do is develop a way to defend against BadUSB as well .
Suppose all the USB ports were occupied by mouse, ext keyboard, ext wifi dongle, and or thumb drives.
A utility could monitor for any device being removed from a USB port, where upon the computer shuts down, thereby stopping the BadUSB from doing anything .
I could see how that could become inconvenient, maybe a secret, user set, hot key combination could be used to disable the shutdown long enough for someone to unplug one thing and plug in another.
I made a video on defending against BadUSB attacks a while ago, there weren't any *amazing* solutions, I'll have a look at an update video on this :)
@@Seytonic
ua-cam.com/video/Vq0kUxslp80/v-deo.html
I see what you mean.
Maybe the quickest / easiest thing is to just invoke the screen saver every time you walk away from your computer, of course you have your screen saver set to require a password when you come back.
@@Seytonic doesn't surprise me... a keyboard is a keyboard after all. Adding various levels of paranoia about them is for the most part just making life hard for yourself (will go check the vid though!)
A good defense against BadUSB on Windows is to set a local policy denying driver installation for keyboard class devices using this GUID: {4d36e96b-e325-11ce-bfc1-08002be10318}. It will prevent any new keyboard from being installed. Existing keyboards will still work.
@@xishootstuffx
That sounds good, I like that one .
Is the cat included with the purchase?
Hey @Seytonic, I have a question, Can we use Arduino instead of the Trinket? Where I am living Its currently unable to ship, kind of in a remote location. But I have in fact an Arduino Uno and the NodeMCU board which you mentioned. The zip file which you attached have the binaries only. SO is there any way to do it. or with a raspberry pi zero w? I have that also. thanks in advance!
I made a video a year or two ago on how to make one with an arduino pro micro and esp8266. if you want to do something similar with a pi zero check my video on p4wnp1 aloa.
@@Seytonic ohh waow thankss
Good stuff!
where to get rhe script for DIY ?
Hi, is there any difference between this and the old wifi duck you made on this channel a while ago? (the one that was made with the esp8266 and arduino pro micro)
The interface is updated iirc, also it uses an arm cortex instead of a atmel chip, the latter is 8bit, and quite old. More room for future features with the arm chip ;)
@@Seytonic thank you! I thought the same. The 32 bit cortex is giving more possibilities to attack, I am really interested in which attacks people will come with.
By using the new ESP32S2 with integrated usb, you could theoretically get rid of the second MCU am i right?
i think it depends on whether the chip supports HID (human interface device) functionality
my corsair keyboard has a bad usb preinstalled on a macro
how much smaller can this thing get?
I just signed up for the giveaway, I know you said "multiple entries per household are detected, all entries from that household will be disqualified".
I don't know if I just sent multiple requests to your form to see a response by accident, but turns out one of my browsers extensions were blocking me I think from sending the form.
I hope that would not be a problem and would not get disqualified.
No worries :) As long as there's just one email address you used, shouldn't be an issue
What should I feed my Badger-SB and do I need to take it to the vets for code injections?
(mushroom mushroom, snake snake, ooh it's a snake)
bought mine not long ago. i recommend seytonics products
Hey Jhonti, don’t suppose you’ve got any WiFi deauthors coming out on your site soon? Or even better a 5ghz one?
Something new is coming soon :)
@@Seytonic I won’t buy one off eBay then I’ll wait for you to release your new one. Will it be long do you think?
I don’t know if it’s intentional, but the sign up form is missing name fields. It only has email and address.
If you win I’ll get in touch to confirm everything, I wanted to collect as little personal info upfront. The only reason I’m asking for an address is in the past people have signed up dozens of times under different email addresses.
@@Seytonic that makes sense, thanks.
If link is broken for the (diy.zip) just add a "s" after http then reload the page it will direct download the zip file.
sir ,can you teach me dns hijacking and network penetration?
very cool
Can we use atmega 32 u4 instead of trinket m0??.....Btw keep up the good work....ND be safe.
Yeah space huhn did a similar project. Heres the site github.com/SpacehuhnTech/WiFiDuck
hey I just built it will all the right stuff and I can connect to the Malduino just fine and it detects it as a keybaord but when I run a command it doesnt do anything. it work if I like change the LEDs but it wont work if I STRING hello or something plz help
I found that it wasnt the LED that was only working it just only lets be run the first line of code so if I had LED 255 0 0 then the LED would change but if I had DELAY 1000 then LED 255 0 0 it wouldnt work. and so I tried running GUI r and it worked but only if i had that line of code only. anyone know whats up
so it pretty much only lets me run the first line of code
Whats wrong with pwn pi no hate just curious