
Useful links:
USB Rubber Ducky is the tool that originated the keystroke-injection technique in 2010 and remains the reference in the field. This 2022 version modernises the hardware with a dual USB-A/C connector to attack everything from desktops to mobile devices. Programmable in DuckyScript 3.0, a full language developed by Hak5 with variables, conditionals, loops, functions and extensions. MicroSD storage for swappable payloads and data exfiltration. Passive OS fingerprinting identifies the target system in a second to run platform-specific payloads. VID/PID spoofing lets you impersonate the identifier of any trusted USB device. Keystroke Reflection offers an exfiltration path that bypasses endpoint restrictions, firewalls and air gaps. Dual HID+Storage mode, hot-switchable. Backwards-compatible with thousands of existing DuckyScript 1.0 payloads. Works on Windows, macOS, Linux and Android. Tool designed for authorised security audits and HID vulnerability analysis.
Main features:
- DuckyScript 3.0 (variables, conditionals, loops, functions, extensions)
- Dual USB-A/C connector
- Swappable MicroSD storage
- Keystroke injection at superhuman speed
- Passive OS fingerprinting (identifies OS in ~1 second)
- VID/PID spoofing (impersonates any USB device)
- Keystroke Reflection (network-less exfiltration, bypasses firewalls and air gaps)
- Dual HID + Storage mode, hot-switchable
- Status LED indicator
- Backwards-compatible with DuckyScript 1.0 payloads

