@professionallyevil/cookie-monster-exfil

2.0.3 • Public • Published

Cookie Monster

alt text

What is Cookie Monster?

Cookie Monster is a proof-of-concept data exfiltration tool. The basic premise behind it is hiding sensitive data in plain sight, within session cookies in web traffic, to evade detection by data loss prevention solutions. It consists of a two parts, a feeder client run from within the target's network, and a server for capturing the feeder's request and reassembling the data.

Is this a hacking tool?

It can be used to transfer files, however it's a fairly immature, barebones implementation. In it's current form, it's better suited to testing the defensive controls than it is for an significant, malicious activity.

Readme

Keywords

none

Package Sidebar

Install

npm i @professionallyevil/cookie-monster-exfil

Weekly Downloads

2

Version

2.0.3

License

MIT

Unpacked Size

1.81 MB

Total Files

120

Last publish

Collaborators

  • micwg