Using USB Teensy as a pentesting device

Going over Defcon material I came upon Irongeek's presentation of teensy.

Source: http://www.irongeek.com/i.php?page=security/programmable-hid-usb-keystroke-dongle

In a nut shell, it is a programmable device that you can have it send keystrokes once it has been plugged in. It does not rely on USB autorun which we are all familiar with.

I made a video of a POC demonstrating it calling back to a Metasploit handler using Meterpreter as the payload:

http://www.vimeo.com/14090717

Just another nice tool to experiment with for pentesting needs.

submitted by Liuser to netsec
[link] [10 comments]

Original Source - http://www.reddit.com/r/netsec/comments/d0gss/using_usb_teensy_as_a_pentesting_device/
Shared August 12 2010, 1:35pm - August 12, 2010 1:35 pm Content is reproduced here in order to create a searchable archive of my research. I'm sick of things being censored & dissapearing!
If this has pissed you off, feel free to contact me.
blog comments powered by Disqus
Stream.AdamDodson.org

About Stream.AdamDodson.org

Adam Dodson is a web developer / father / activist in Queensland, Australia. AdamDodson.org is where I attempt to keep track of all of the things that catch my interest each day. You're looking at an experimental lifestream page created using SweetCron with a heavily customised version of Teh Blog ar not dead theme.