THEN THE LIGHT TURNS GREEN, IT’S A HACKED MACHINE.
The best red teams know that with the right tools and a few seconds of physical access, all bets are off…
Compromise a locked machine, capture credentials, exfiltrate loot, plant backdoors…
Or perform vulnerability scans, offline patching — even fix printers… All with simple text-file payloads.
Combined with your favorite Linux pentest tools like nmap, metasploit, responder, impacket on this fast Debian box.
Exfiltrate en masse with new out-of-band techniques and ultra-high-capacity MicroSD cards.
Get gigs of loot (or the entire disk) to make a bold impression on the next engagement.
No traversing the firewall or triggering detection systems.
Limit the scope of engagement by preventing payloads from executing off-site.
Immobilize payloads until it enters the premises.
Even destroy loot based on the wireless environment.
Take social engineering to the next level and trigger multiple payload stages when the target’s back is turned.
Trigger from a phone app or any discreet bluetooth device.
Even automate tasks when a device is in proximity.
7 second boot with an 8 GB desktop-class SSD.
MicroSD XC for ultra-high-capacity exfiltration.
Bluetooth LE for remote triggers and geofencing.
Easy 3-way payload switch and RGB LED indicator.
Dedicated Serial interface to an unlocked root shell.
DuckyScript™ makes payloads quick, easy and fun. Toss in the power of bash with familiar Linux tools and it’s game on!
Mimic a HID keyboard and USB Ethernet adapter simultaneously? ATTACKMODE HID AUTO_ETHERNET
Need the target computer’s hostname?
GET TARGET_HOSTNAME
Pause the payload until your phone’s bluetooth is on?
WAIT_FOR_PRESENT my-device-name
How about injecting keystrokes into the run dialog?
RUN WIN cmd /K color a \& tree c:\\
Fancy a red light? LED R. Blue? LED B.
Seriously, that simple.
Looking for inspiration? Check out the growing library of community developed payloads from our repo!
Diverse targets? Carry multiple payloads and pick the perfect attack with the flick of a switch.
Keep this must-have tool at the ready for opportunistic loot grabbing on your next physical engagement or social engineering exercise.
Reviews
There are no reviews yet.