An collection of optimized PowerShell one-liners and scripts specifically designed to be typed into the Windows Run Window (Win+R) via HID devices (BadUSB).
Warning
Educational Purposes Only. This tool is intended for security research and authorized penetration testing. Use it only on systems you own or have explicit permission to test. The author is not responsible for any misuse.
The goal of this project is to provide highly compressed and efficient PowerShell commands that can be executed quickly through the Windows Run dialog. These scripts are tailored for HID attacks (Rubber Ducky, Flipper Zero, Digispark, etc.) where typing speed and payload length matter.
- Short & Stealthy: Payloads optimized to fit within the character limits of the Run window.
- Bypass-Oriented: Includes flags to bypass execution policies and hide windows.
- Versatile: Scripts for information gathering, reverse shells, and system tweaks.
To use these in your HID device, wrap the commands in DuckyScript or your device's native language.
Standard Run Window Template:
GUI r(Opens Run window)DELAY 500STRING powershell -w h -NoP -Ep Bypass -c "YOUR_PAYLOAD_HERE"ENTER
- Target OS: Windows 10/11
- HID-compatible device (e.g., Flipper Zero, Arduino Pro Micro, Rubber Ducky)
- Basic knowledge of PowerShell and DuckyScript
Contributions are welcome! If you have a clever one-liner or a new script:
- Fork the repo.
- Create your feature branch.
- Submit a Pull Request.