ducky payload artifacts
Baked for 192.168.206.133 (listener :1337, http :8080). This address is a
DHCP lease - if the Pi reboots and gets a new one, these files are stale. Re-run
rebuild_payloads.sh before use.
- SHA256SUMS - checksums for everything below (get this first)
- inject_fetch.bin (242 B) - recommended: typed stage-1 fetch, 90-char Run line
- inject_oneshot.bin (556 B) - whole shell typed inline, 247-char Run line
- inject_persistent.bin (2092 B) - admin user + auto-logon + Run key
- sh.txt (1083 B) - stage-2 body with a 15 s reconnect loop (required by inject_fetch and inject_persistent)
How to use
- Download the one you want. Rename it to exactly
inject.bin.
- Copy it to the root of the ducky's SD card.
- Verify the sha256 against
SHA256SUMS - on the card, after sync.
- Card into the ducky, ducky into the target. Watch the listener first.