Community BadUSB script collection
Educational USB automation payload collection for controlled lab systems and owned computers.
Security-lab projects are for controlled learning on systems you own or are explicitly authorized to test. The catalogue ranges from Flipper Zero BadUSB payloads, through Bruce’s multi-function ESP32 toolkit on Cardputer, T-Embed, and T-Deck, to NEMO’s Wi-Fi diagnostics and captive-portal demonstrations on Cardputer or M5StickC PLUS2. These are not equivalent: keyboard injection targets a host, Bruce features vary with external radio modules, and NEMO mixes monitoring with active demonstrations. Review source and payload behavior before execution, replace any exfiltration endpoint with a lab sink, and isolate test equipment. Board support never grants legal permission; radio transmissions, credential capture, interference, and access to third-party systems can be unlawful or harmful. Compare compatible devices, explore original projects and use the linked guides to get moving.
4 entriesOriginal project pages, manufacturer documentation and repositories used while preparing this page. Last reviewed .