# aleff-github/my-flipper-shits

Free and libre source BadUSB payloads for Flipper Zero. [Windows, GNU/Linux, iOS]

Repository: https://github.com/aleff-github/my-flipper-shits
Canonical: https://ross.abutalabs.com/products/my-flipper-shits
Homepage: https://aleff-github.github.io/my-flipper-shits/
Language: HTML
License: GPL-3.0
License Family: copyleft
Topics: flipper-zero, flipperzero, flipper-badusb, flipper-zero-payload, hak5, rubberducky, badusb, duckyscript, linux, open-source, windows, free, badusb-payloads, free-payloads, ios, iphone
Last push: 2026-07-01T18:21:50+00:00

## Health v2 (maintenance only)
Score: 72/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 90, release rhythm 35, longevity 95
- inputs: {"age_days": 1337, "days_push": 63, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1824, forks 149 (observed 2026-08-28T04:05:41.215153+00:00)

## What it is
A curated collection of free and open-source BadUSB payloads written in DuckyScript for the Flipper Zero device, covering Windows, GNU/Linux, iOS, and macOS. Payloads span credential extraction, data exfiltration, phishing, and execution scenarios, with a PlugAndPlay rating indicating setup effort.

## Use cases
- find badusb payloads for flipper zero
- test usb hid attack defenses on windows
- exfiltrate wifi passwords with flipper zero for pentest
- learn ducky scripting examples
- convert hak5 rubber ducky payloads to flipper zero
- demonstrate badusb risks in security awareness training

## When to choose
- you own a Flipper Zero and want ready-made, plug-and-play BadUSB payloads
- you need cross-platform (Windows/Linux/iOS/macOS) payload examples for authorized penetration testing
- you want open-source, GPL-licensed DuckyScript payloads you can modify

## When to avoid
- you need a general-purpose scripting framework rather than a payload collection
- your target platforms are Android or embedded systems, which are not covered
- you lack authorization to test the target systems - these payloads are for legitimate security work only

## Facets
- artifact type: dataset
- maturity: active
- function: security, penetration-testing, developer-tools
- domain: security, penetration-testing, hardware
- platform: windows, cross-platform
- tags: flipper-zero, badusb, duckyscript, payloads, hak5, rubber-ducky, usb-hid-attacks, pentest-payloads, security-testing, linux, ios, macos

## Member repositories
- aleff-github/my-flipper-shits (main) score 72

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:41.215153+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:19:42.902196+00:00, confidence not recorded.
  - readme: https://github.com/aleff-github/my-flipper-shits (fetched 2026-08-28T04:05:41.215153+00:00, sha 36f521352b69)
  - homepage: https://aleff-github.github.io/my-flipper-shits/ (fetched 2026-08-29T10:58:35.799005+00:00, sha e50215d91c53)
- Data as of 2026-08-30T08:39:29.467469+00:00.
