How to Install and use DNSteal
DNSteal - DNS a hacking tool used for Exfiltration or stealthily sending files over DNS requests
DNSteal is a Kali Linux, Ubuntu, Parrot hacking tools that allows a hacker to easily extract files from a victim machine via DNS request.
This is a fake DNS server that allows you to stealthily extract files from a victim machine through DNS requests.
How DNSteal works
The images below shows how DNSteal works, below are a couple of different images showing examples of multiple file transfer and single verbose file transfer:
- DNSteal Support for multiple files
- DNSteal supports Gzip compression
- DNSteal also supports the customization of subdomains and bytes per subdomain and the length of filename
See help below:
How to Install DNSteal on Kali-linux
DNSteal is already pre-installed on your Kali Linux machine to run and know more about DNSteal run the code below.
If you do not understand the help, then just use the program with default options!
python dnsteal.py 127.0.0.1 -z -v
This one would send 45 bytes per subdomain, of which there are 4 in the query. 15 bytes reserved for filename at the end.
python dnsteal.py 127.0.0.1 -z -v -b 45 -s 4 -f 15
This one would leave no space for filename.
python dnsteal.py 127.0.0.1 -z -v -b 63 -s 4 -f 0
Learn more about DNSteal at: https://github.com/m57/dnsteal
No comments