dorkhub

mqtt-pwn

MQTT-PWN intends to be a one-stop-shop for IoT Broker penetration-testing and security assessment operations.

akamai-threat-research
Python44856 forksGPL-3.0updated 1 year ago
git clone https://github.com/akamai-threat-research/mqtt-pwn.gitakamai-threat-research/mqtt-pwn

MQTT-PWN

https://readthedocs.org/projects/ansicolortags/badge/?version=latest

MQTT is a machine-to-machine connectivity protocol designed as an extremely lightweight publish/subscribe messaging transport and widely used by millions of IoT devices worldwide. MQTT-PWN intends to be a one-stop-shop for IoT Broker penetration-testing and security assessment operations, as it combines enumeration, supportive functions and exploitation modules while packing it all within command-line-interface with an easy-to-use and extensible shell-like environment.

https://raw.githubusercontent.com/akamai-threat-research/mqtt-pwn/master/docs/_static/images/another-logo-trans-bg-small.png

Authors

Feature Support

  • Credential Brute-Forcer - configurable brute force password cracking to bypass authentication controls
  • Topic Enumerator - establishing comprehensive topic list via continuous sampling over time
  • Useful Information Grabber - obtaining and labeling data from an extensible predefined list containing known topics of interest
  • GPS tracker - plotting routes from devices using OwnTracks app and collecting published coordinates
  • Sonoff Exploiter – design to extract passwords and other sensitive information
  • Extensibility - the framework was designed to add new custom plugins with ease
  • Shodan - search through Shodan.io API for available vulnerable MQTT brokers

Documentation

Documentation is available at https://mqtt-pwn.readthedocs.io/.

more like this

meine

meine 🌒 - A CLI file manager and system utility built with Textual. It combines intuitive command parsing with rich t…

Python50

taskbutler

Create and add progress bars, Office365 Files and Dropbox Paper papers by labels and link them to your Todoist tasks.

Python50

search

search projects, people, and tags