Skip to contentSkip to Content
FAQ

FAQ

Draft — based on the device’s current design. This page will be refined once real user questions have been collected.

H1 is built for authorized security testing, blue-team training, and education. Only use it on devices and networks you own or have explicit written permission to test — unauthorized use may be illegal in your jurisdiction. See our responsible use policy.

Does H1 work on Windows, macOS and Linux?

Yes. Because H1 emulates a standard USB HID keyboard, it works with any OS that accepts a USB keyboard — no special drivers are needed on the host in Attack Mode.

Will antivirus or endpoint security software flag H1?

H1 identifies itself with a generic HID keyboard VID/PID, so it won’t be flagged just for being plugged in — but well-configured endpoint security may still flag unusual keystroke patterns it produces, which is exactly the kind of detection blue teams use H1 to train against.

Do I need to reflash the firmware every time I want to run a new script?

No. New scripts are uploaded straight to the onboard flash over USB in Upload Mode — the firmware itself never needs to be touched.

How is H1 different from a USB Rubber Ducky?

H1’s scripting language, HDC, uses Ducky-style syntax you’ll likely already be familiar with, but adds built-in serial (USB CDC) communication as a scripting feature, is significantly cheaper, and comes with its own free IDE and free base firmware.

Is there a paid / Pro version?

A Pro version is in development, adding features like SD card-based script storage for larger or swappable scripts. The base H1 and its firmware remain free.

Last updated on