šŸ¦€

Screen Crab

HDMI Man-in-the-Middle Implant

The world's first video MITM device for pentesters. Sit covertly between any HDMI source and display to capture screenshots, record video, or live-stream — all with zero lag on the output.

HDMI CAPTURE VIDEO MITM CLOUD C² FULL HD 1080p WIFI ZERO LAG
See Everything. Miss Nothing.

The Screen Crab plugs inline between any HDMI source — a workstation, POS terminal, security console, gaming rig — and its display. A passive onboard signal splitter mirrors the video feed to the capture engine with zero interruption or latency on the output monitor. The target sees nothing unusual. Meanwhile, the Screen Crab captures screenshots at configurable intervals, records full-motion video, or streams live to Cloud C² from anywhere in the world.

šŸ’»
HDMI Source
Computer / Console
HDMI IN
šŸ¦€
Screen Crab
Passive Signal Split
HDMI OUT
šŸ–„ļø
Display
Zero lag passthrough
CAPTURE ↓
šŸ’¾
MicroSD
Local storage
STREAM ↓
ā˜ļø
Cloud C²
Live via WiFi
Three Ways to Grab the Screen
šŸ“ø
Screenshots
Periodic screenshots at configurable intervals (seconds). Saved as images to MicroSD. Default mode — works out of the box.
PLUG & PLAY
šŸŽ¬
Video Capture
Full-motion MPEG-4 recording at selectable quality: 2, 4, or 16 Mbps. Never miss a frame of the action.
MPEG-4
šŸ“”
Live Stream
Watch the target's screen in real time from any browser via Cloud C². Download captures and change settings remotely.
CLOUD C²
Specifications
šŸ”Œ
Video Interface
HDMI 1.4 / DVI 1.0
HDMI In + HDMI Out
šŸ“ŗ
Resolution
Full HD 1080p (1920Ɨ1080)
Auto up/downscale, 16:9
šŸ“¶
WiFi
802.11 b/g/n — 2.4 GHz
RP-SMA dipole antenna
šŸ’¾
Storage
MicroSD (FAT32 / exFAT)
SDXC support for months of capture
⚔
Power
5W (USB 5V 1A)
Micro-USB power port
šŸ“
Dimensions
105 Ɨ 51 Ɨ 21 mm
Compact inline form factor
šŸ’”
Indicator
RGB LED — color-coded status
Can be disabled for stealth
šŸŒ”ļø
Operating Temp
35°C – 45°C
0% – 90% humidity
Key Features
ā–ø
Passive Signal Splitting — The onboard video splitter mirrors the signal without altering it. Zero lag, zero artifacts, zero indication to the target user.
ā–ø
Cloud C² Remote Access — Self-hosted command and control. Watch live screenshots in-browser, download captures, change settings — from anywhere with an internet connection.
ā–ø
Storage Rotation — Loop recording mode overwrites the oldest files when the card is full. Deploy and forget — the Screen Crab never runs out of space.
ā–ø
Text File Configuration — All settings live in config.txt on the MicroSD. Capture mode, interval, video bitrate, WiFi credentials, storage policy — edit and go.
ā–ø
Plug & Play — Captures screenshots to MicroSD right out of the box with zero configuration. Auto-generates default config.txt on first boot.
ā–ø
Stealth LED Control — RGB LED provides status feedback during development but can be fully disabled for covert deployments where no light signature is acceptable.
ā–ø
Multi-Resolution Support — Handles most resolutions up to 1080p with automatic scaling. Backwards compatible with lower-resolution sources and DVI via adapter.
ā–ø
Large Capacity Storage — SDXC support means high-capacity cards can store months of periodic screenshots or days of continuous video recording.
config.txt — It's That Simple

Every setting is a key-value pair in a plain text file on the MicroSD card. Edit with any text editor, insert the card, and power on.

# Screen Crab Configuration

# Capture mode: IMAGE or VIDEO
CAPTURE_MODE=IMAGE

# Screenshot interval in seconds
CAPTURE_INTERVAL=10

# Video bitrate: 2, 4, or 16 (Mbps)
VIDEO_BITRATE=4

# Storage: STOP when full, or LOOP (overwrite oldest)
STORAGE_MODE=LOOP

# WiFi for Cloud C² streaming
WIFI_SSID=PentestNet
WIFI_PASS=**********

# LED: ON or OFF (stealth)
LED=OFF
Deployment Scenarios
šŸ¢
Executive Monitoring
Plant behind a target's monitor during a red team engagement. Capture every screen — emails, documents, credentials — without touching the machine.
šŸ”
Credential Capture
Record login screens, password managers, MFA codes, and VPN sessions as they appear on the display. No endpoint software needed.
šŸ“¹
Security Camera Audit
Tap into HDMI feeds from DVRs and NVRs. Record surveillance footage independently to verify integrity or detect tampering.
šŸ–„ļø
Kiosk / POS Recording
Monitor self-service kiosks, ATM interfaces, or point-of-sale terminals. Capture transaction screens for compliance or security audits.
šŸŽ®
Console Capture
Record gameplay, presentations, or conference room displays via HDMI without any software or drivers on the source device.
šŸŽ“
Security Training
Demonstrate how HDMI interception works. Show why physical security of display connections matters alongside endpoint hardening.