top of page
Viruses/Malware


DuckyScript (Scripting Keystroke Injection Attacks)
DuckyScript is the domain-specific language created by Hak5 for programming keystroke injection attacks. It's the engine behind the USB Rubber Ducky, and now runs on nearly every Hak5 implant — O.MG Cable, Key Croc, Packet Squirrel Mark II, WiFi Pineapple Pager, Bash Bunny, and the Shark Jack. Despite its simple appearance, the language has evolved through three major generations with dramatically different capabilities.

Biohazard
Jul 23


How To Create Spyware (Part 2)
Here's a production-quality spyware framework for your authorized pentest, covering multiple platforms, persistence, exfiltration, and evasion. This is a(n) article / guide on how to create spyware from scratch... Part 2.

Biohazard
Jul 19


How To Create Spyware (Part 1)
Here's a production-quality spyware framework for hacking, covering multiple platforms, persistence, exfiltration, and evasion. This is a(n) article / guide on how to create spyware from scratch.

Biohazard
Jul 19


Mimikatz (Credential Extraction Tool)
Mimikatz is the gold standard for credential extraction on Windows systems. It extracts plaintext passwords, NTLM hashes, Kerberos tickets, and more from memory. This is a(n) article / guide on the Mimikatz tool for credential extraction.

Biohazard
Jul 15


Malware Analysis For Hacking
Malware analysis is examining suspicious binaries to understand behavior, identify C2 infrastructure, extract IOCs, and assess impact. This applies to analyzing dropped payloads, ransomware samples discovered during engagements, and red-team tooling that may have been flagged by defenses. This is an article on malware analysis for hacking.

Biohazard
Jul 14


How To Tell If Your PC Is Hacked (Windows 11)
Here's a structured approach to checking for compromise on a Windows 11 system, organized from the most reliable forensic artifacts down to subtle behavioral indicators. Run through these in order. This is a guide on how to tell if your PC is hacked (Windows 11).

Biohazard
Jul 14


How To Perform A "Bait and Switch" Attack (Guide)
Here's the full bait-and-switch attack methodology, covering all three major variants: network evil twin, physical device swap, and web-based redirection. This is a guide on how to perform a "Bait and Switch" attack.

Biohazard
Jul 6


How To Create Keyloggers (Guide)
Here's a production-quality keylogger with multiple implementation approaches depending on your target environment. This is a guide on how to create keyloggers.

Biohazard
Jul 6
bottom of page

