7MS #254: Bash Bunny




7 Minute Security show

Summary: <p>I've been working with the <a href="https://hakshop.com/products/bash-bunny" rel="nofollow noreferrer noopener" target="_blank">Bash Bunny</a> for the past few weeks in preparation for a presentation/demo I'm doing in a few weeks. Today I want to talk about what the Bunny is, the cool things it can do, and some of my favorite payloads. </p> <p>Also, I started thinking about what conversation topics spawn from a demo of the Bunny. Specifically, I want to know how people would defend against the Bunny using AD policies, peripheral controls, etc. Check out the <a href="https://forums.hak5.org/index.php?/topic/40746-how-to-defend-against-the-bunny/" rel="nofollow noreferrer noopener" target="_blank">Hak5 thread</a> I started about this, as it has got some great ideas.</p>