• Cybersecurity

    How to Install and use DNSteal

    DNSteal - DNS a hacking tool used for Exfiltration or stealthily sending files over DNS requests

    This is a fake DNS server that allows you to stealthily extract files from a victim machine through DNS requests.


    How DNSteal works

    The images below shows how DNSteal works, below are a couple of different images showing examples of multiple file transfer and single verbose file transfer:

    How to Install DNSteal

    • DNSteal Support for multiple files
    • DNSteal supports  Gzip compression
    • DNSteal also supports the customization of subdomains and bytes per subdomain and the length of filename

    See help below:

    How to use DNSteal

    How to Install DNSteal on Kali-linux

    DNSteal is already pre-installed on your Kali Linux machine to run and know more about DNSteal run the code below.

    If you do not understand the help, then just use the program with default options!

    python dnsteal.py 127.0.0.1 -z -v

    This one would send 45 bytes per subdomain, of which there are 4 in the query. 15 bytes reserved for filename at the end.

    python dnsteal.py 127.0.0.1 -z -v -b 45 -s 4 -f 15

    This one would leave no space for filename.

    python dnsteal.py 127.0.0.1 -z -v -b 63 -s 4 -f 0

    Learn more about DNSteal at: https://github.com/m57/dnsteal


    No comments