Not sure its still a valid project one called poisontap comes to mind. You would plug it in and it would Exfiltrate cookies, poison your DNS cache, and then installed persistent backdoor for logging in later. As far as I know it worked on all OS's

Reply to this note

Please Login to reply.

Discussion

This was the project im refering to.

https://samy.pl/poisontap/

does not work with https and some new caching and isolation countermeasures added by browsers

Ah yeah. I knew it dident work with https. I was not aware of newer browser countermeasures, hence why I said it's probably not a valid project anymore.

It’s a side effect of privacy ones actually.

Caching and cookies are now isolated by top level origin