awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektÜber unsRanking-MethodikPresseMCP-Server
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
samyk avatar

samyk/poisontap

0
View on GitHub↗
6,472 Stars·980 Forks·JavaScript·2 Aufrufesamy.pl/poisontap↗

Poisontap

PoisonTap is a hardware attack tool designed for the Raspberry Pi Zero that exploits a USB connection to a locked or password-protected computer, extracting browser cookies and session data from the top million websites without requiring the device to be unlocked. It operates by bypassing the lock screen through USB and network stack exploitation, then siphoning HTTP cookies and intercepting all outbound Internet traffic by overriding network routing through a local device.

The tool distinguishes itself through multiple persistence and recovery mechanisms that maintain access even after cookies are cleared. It stores session data across browser history, cached PNG images, and HSTS pins, and can detect when stored cookie data has been removed and recreate it from remaining storage. PoisonTap also deploys a persistent web cache backdoor by injecting malicious JavaScript into cached CDN files for thousands of domains, enabling ongoing remote control and same-origin proxy execution that forces the victim's browser to make authenticated requests on backdoored domains.

Additional capabilities include DNS rebinding to expose internal routers for remote exploitation, reading the target's ARP cache to reveal internal network routes, and deploying a WebSocket-based backdoor through injected CDN resources. The tool is implemented in JavaScript and is designed to run on a Raspberry Pi Zero as a dedicated attack platform.

Features

  • Attack Platforms - The entire tool is designed as a Raspberry Pi Zero attack platform for compromising locked computers.
  • Locked-Device Exploitations - Exploits USB connections to bypass lock screens and extract browser data from password-protected computers.
  • Cookie Siphoning Tools - Captures HTTP cookies and session data from browsers by intercepting all Internet traffic through a rogue device.
  • Rogue Device Interceptions - Redirects all outbound Internet traffic through a local device by exploiting LAN subnet route priority.
  • USB Network Hijackers - Redirects all outbound Internet traffic through a local device by exploiting USB network routing.
  • Locked-Computer Exploitations - Exploits locked computers over USB to extract browser cookies and gain remote access without unlocking.
  • Network Hijacking Exploitations - Exploits USB connections to override network routing and redirect all traffic through a local device.
  • CDN Backdoor Injections - Replaces CDN-hosted JavaScript files with backdoored versions to grant same-origin access to any site loading them.
  • Exfiltration Persistences - Siphons HTTP cookies from locked computers and persists them across multiple browser storage mechanisms.
  • USB Cookie Extraction Backdoors - Connects to locked computers via USB and extracts browser cookies, exposing saved web sessions.
  • Web Cache Backdoors - Installs hidden web server and cached JavaScript backdoor on compromised machines for persistent remote control.
  • USB Lock Screen Bypasses - Bypasses lock screens on password-protected computers by exploiting USB and network stack behavior.
  • Browser Cookie Exfiltrators - Extracts browser cookies and session data from locked computers via USB connection.
  • Stolen Cookie Proxies - Forces victim browsers to make authenticated requests on backdoored domains using stolen cookies and returns responses.
  • Cache Backdoor Injections - Injects malicious JavaScript into browser cache for thousands of domains to maintain remote control.
  • Cookie Encoding Stores - Encodes cookie data into visited URLs and recovers it via the browser history API for persistence.
  • Multi-Store Persistences - Persists session data across multiple browser storage mechanisms to survive cookie deletion.
  • Persistence Hijackers - Stores identifying data across multiple browser storage mechanisms to maintain client identity after cookie clearing.
  • Same-Origin Proxy Executions - Forces victim browsers to make authenticated requests on backdoored domains and proxies responses to attacker.
  • Router Hijacking Exploits - Uses DNS rebinding to expose internal routers for remote exploitation via HTTP requests.
  • ARP Cache Exposures - Reads target's ARP cache from locked machines to reveal internal network routes and router details.
  • Web Cache Backdoors - Injects a cached HTML/JavaScript backdoor into thousands of domains and CDN URLs for persistent remote control.
  • Persistence Identifiers - Uses HSTS pinning to persist unique identifiers across browser sessions for client tracking.
  • Multi-Mechanism Persistences - Stores identifying data across multiple browser storage mechanisms to maintain client recognition after cookie clearing.
  • Router Exposures - Uses DNS rebinding to expose internal routers for remote exploitation from a locked machine.
  • Cookie Recovery Mechanisms - Detects removed cookie data and recreates it from remaining browser storage mechanisms.
  • Image-Encoded Cookie Stores - Encodes cookie data into PNG image RGB values and reads it back via HTML5 Canvas for persistence.
  • AI and Automation - Exploits locked computers via USB to siphon data and backdoors.
  • Physical Security - USB-based network access and credential theft.

Star-Verlauf

Star-Verlauf für samyk/poisontapStar-Verlauf für samyk/poisontap

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Start searching with AI

Open-Source-Alternativen zu Poisontap

Ähnliche Open-Source-Projekte, sortiert nach der Anzahl der gemeinsamen Funktionen mit Poisontap.
  • mame82/p4wnp1Avatar von mame82

    mame82/P4wnP1

    4,371Auf GitHub ansehen↗

    P4wnP1 is a wireless USB payload framework and attack platform based on the Raspberry Pi Zero. It functions as a USB HID emulator and network adapter, mimicking keyboards and other peripherals to interact with target hardware and execute automated keyboard payloads. The project provides a customizable system for delivering HID attacks and managing remote access via a wireless hotspot. It enables the emulation of composite devices, allowing a single physical port to present multiple functions, such as Ethernet and keyboard interfaces, simultaneously. The framework covers capabilities for hard

    Python
    Auf GitHub ansehen↗4,371
  • carmaa/inceptionAvatar von carmaa

    carmaa/inception

    1,606Auf GitHub ansehen↗

    Inception is a physical memory manipulation and hacking tool exploiting PCI-based DMA. The tool can attack over FireWire, Thunderbolt, ExpressCard, PC Card and any other PCI/PCIe interfaces.

    Python
    Auf GitHub ansehen↗1,606
  • drawcall/ffaivideoD

    drawcall/FFAIVideo

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • binary-core-llc/bowerbotAvatar von binary-core-llc

    binary-core-llc/bowerbot

    22Auf GitHub ansehen↗

    AI agent for OpenUSD.

    Python
    Auf GitHub ansehen↗22
Alle 16 Alternativen zu Poisontap anzeigen→

Häufig gestellte Fragen

Was macht samyk/poisontap?

PoisonTap is a hardware attack tool designed for the Raspberry Pi Zero that exploits a USB connection to a locked or password-protected computer, extracting browser cookies and session data from the top million websites without requiring the device to be unlocked. It operates by bypassing the lock screen through USB and network stack exploitation, then siphoning HTTP cookies and intercepting all outbound Internet traffic by overriding network routing through a local device.

Was sind die Hauptfunktionen von samyk/poisontap?

Die Hauptfunktionen von samyk/poisontap sind: Attack Platforms, Locked-Device Exploitations, Cookie Siphoning Tools, Rogue Device Interceptions, USB Network Hijackers, Locked-Computer Exploitations, Network Hijacking Exploitations, CDN Backdoor Injections.

Welche Open-Source-Alternativen gibt es zu samyk/poisontap?

Open-Source-Alternativen zu samyk/poisontap sind unter anderem: mame82/p4wnp1 — P4wnP1 is a wireless USB payload framework and attack platform based on the Raspberry Pi Zero. It functions as a USB… carmaa/inception — Inception is a physical memory manipulation and hacking tool exploiting PCI-based DMA. The tool can attack over… drawcall/ffaivideo. drawcall/gifcreator. hookprobe/hookprobe — 🛡️ Free AI that blocks hackers while you sleep. Runs on cheap hardware. When someone in Tokyo gets attacked, you're… binary-core-llc/bowerbot — AI agent for OpenUSD.