d4f95a550ce1bca2671e0e8de5c8dd6bd693710b
ble_alerter.py: probe Apple BLE devices via GATT characteristic 0x2A00 to discover device names (iPhone, Apple TV, etc). Names persist to ble_names.json with last_seen timestamps. GATT_PROBE=1 enables active probing; without it, Apple device last_seen timestamps still tracked. net_alerter.py: on WiFi device arrival, read ble_names.json and log any Apple BLE devices seen within the last 60s as correlation candidates. Gives operator visibility into which BLE MACs co-arrived with a WiFi device. Shared state file: /opt/net_alerter/ble_names.json
Description
Network drop implant — passive SOC + active exploitation. Deploy on any Debian host.
Languages
Python
89.2%
Shell
8.5%
HTML
1.1%
C
0.9%
Jinja
0.3%