TrafficThief
A post-exploitation utility to stream traffic and SSL/TLS keys to Wireshark from a remote host.
Install / Use
/learn @bmshema/TrafficThiefREADME
████████╗██████╗ █████╗ ███████╗███████╗██╗ ██████╗
╚══██╔══╝██╔══██╗██╔══██╗██╔════╝██╔════╝██║██╔════╝
██║ ██████╔╝███████║█████╗ █████╗ ██║██║
██║ ██╔══██╗██╔══██║██╔══╝ ██╔══╝ ██║██║
██║ ██║ ██║██║ ██║██║ ██║ ██║╚██████╗
╚═╝ ╚═╝ ╚═╝╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝ ╚═════╝
████████╗██╗ ██╗██╗███████╗███████╗
╚══██╔══╝██║ ██║██║██╔════╝██╔════╝
██║ ███████║██║█████╗ █████╗
██║ ██╔══██║██║██╔══╝ ██╔══╝
██║ ██║ ██║██║███████╗██║
╚═╝ ╚═╝ ╚═╝╚═╝╚══════╝╚═╝
trafficThief
A post-exploitation utility to stream traffic and SSL/TLS keys to Wireshark from a remote host.
Concept:
trafficThief enables SSL/TLS keylogging on a remote host and feeds the keylog along with packet capture data back to you locally for viewing decrypted traffic in Wireshark in real-time.
Depending on your access to the target machine, trafficThief can interact with the target machine over ssh and feed the data back to you or craft a payload to transfer to the target machine to execute. trafficThief will set up a HTTP server in a payloads directory for payload transfer.
Dependencies:
- python 3.6+
- sshpass
- Wireshark
sudo apt install sshpass wireshark
- Riposte
cd trafficThief
pip install -r requirements.txt
Usage:
sudo python3 trafficThief.py
Module Status:
- Only the two linux modules are finished at this time. They should work on any Debian-based linux target. Probably others.
- Windows modules are in progress.
Disclaimer:
You are fully responsibility for your actions related to trafficThief's use. This is proof of concept code and is still under development and may or may not be useful.
Related Skills
node-connect
345.9kDiagnose OpenClaw node connection and pairing failures for Android, iOS, and macOS companion apps
frontend-design
106.4kCreate distinctive, production-grade frontend interfaces with high design quality. Use this skill when the user asks to build web components, pages, or applications. Generates creative, polished code that avoids generic AI aesthetics.
openai-whisper-api
345.9kTranscribe audio via OpenAI Audio Transcriptions API (Whisper).
qqbot-media
345.9kQQBot 富媒体收发能力。使用 <qqmedia> 标签,系统根据文件扩展名自动识别类型(图片/语音/视频/文件)。
