Crowdfunding Page History

This page is an archive of the original crowdfunding campaign for this project. It may not be up-to-date with the latest updates and product availability.
Return to the current project page.

UNIT 72784
Security & Privacy

Diabolic Drive

Stealthy, modern, wireless keystroke-injection tool in a universal, four-layer, double-sided flash-drive PCB form factor with 64 GB of storage

$9,083 raised

of $5,000 goal

181% Funded! Order Below

Funding ended on Sep 07, 2023 at 04:59 PM PDT.

Recent Updates

You'll be notified about news and stock updates for this project.

Diabolic Drive is a stealthy, wireless keystroke-injection tool that can send payloads over Wi-Fi while disguised as a regular 64 GB USB flash drive. Diabolic Drive is excellent for use in cybersecurity, particularly when red teaming, as it behaves like a typical flash drive until it is wirelessly instructed to deploy keystrokes.

Diabolic Drive adheres to the standard form factor of a "universal" USB drive, allowing it to be easily concealed with an inconspicuous flash-drive enclosure. When plugged in, anyone can interact with it like a normal flash drive, and it performs just like a genuine device, with average read speeds of up to 20 Mbps and write speeds of up to 10 Mbps. This behavior helps mask its wireless keystroke-injection features. Diabolic Drive is the first off-the-shelf product that combines all of these features into a single device. As such, it opens up untold social engineering attack possibilities.

Diabolic Drive on the left, standard flash drive on the right

Diabolic drive can be accessed remotely over Wi-Fi. Fire your payload remotely and precisely, or pre-program the drive to deliver keystrokes when plugged in.

Deliberately Stealthy

When plugged into a host computer, Diabolic Drive acts like a regular USB flash drive, including any audio notifications you would normally hear when plugging in a new USB device. Your computer will identify Diabolic Drive as a flash drive, HID device, and virtual COM port simultaneously, but will only trigger an audio notification once, which is how a standard drive would behave. The COM port permits reprogramming through the Arduino IDE, though this feature can be disabled when Diabolic Drives is in "Stealth mode," to enhance its covert usability.

Hardware IDs are spoofable

Diabolic Drive flash-storage hardware IDs can be spoofed for maximum stealthiness. These IDs include VID, PID, vendor info, product info, rev info, vendor string, product string, and SN. This makes distinguishing Diabolic Drive from a regular flash drive extremely difficult.

Features & Specifications

Diabolic Drive was designed for maximum capability and stealth, with an eye toward openness, flexibility, control, and future proofing. It contains the following components:

Comparisons

Diabolic DriveRubber DuckyO.MG CABLE BasicUSBNinja
Form Factor Flash drive USB stick USB cable USB cable
USB Type-C Availability No Yes Available Available
Flash StorageYes (64 GB) No No No
Self-DestructNo No Yes No
Keystroke Reflection ExfiltrationNo Yes No No
Wireless ControlWi-Fi No Wi-Fi Bluetooth
Payload Over the Air (OTA)Yes No Yes No
OTA Firmware UpgradableYes No No No
Different Enclosures SupportYes No No No
Price$99 $79.99 $119.99 $99
Diabolic Drive in a commercially available Flash drive enclosure

Programming Options

ESP8266

ATmega32U4

Upload Arduino Sketches by directly plugging your Diabolic Drive into your computer, as ATmega32U4 has native USB support through a built-in USB transceiver that handles the USB connection.

Access ATmega32U4 Bootloader

This unique bootloader feature gives you full control over Diabolic Drive’s ATmega32U4 through the USB 3.0 pins. Diabolic Drive uses a modified version of the Caterina-promicro16 bootloader by default, and is also compatible with the Arduino Leonardo bootloader. youtube: L3nXUaHzDiY

Support & Documentation

You can find project information, programming instructions and a list of firmware options in our Github repository. The design files will be released once the orders are dispatched to our backers.

Manufacturing Plan

Crafted in the spirit of hardware hackers who use minimal technology and rely more on their knowledge and experience to get the job done, this device provides a unique set of features. We have carefully designed our hardware to be as stealthy as possible when deploying wireless payloads, to operate without specific software dependencies, and to be compatible with a wide variety of open-source firmwares. We will meticulously test each device to ensure that it operates at 100% effectiveness before shipping units to backers. Using the Arduino IDE, you can program your Diabolic Drive with the firmware of your choice in under two minutes.

Fulfillment & Logistics

During the campaign, we are covering all US domestic shipping costs and subsidizing international shipping costs, so be sure to reserve yours while it’s available at the lowest total price.

After our production run is complete, we will box everything up and send it along to Crowd Supply’s fulfillment partner, Mouser Electronics, who will handle distribution to backers worldwide. You can learn more about Crowd Supply’s fulfillment services under Ordering, Paying, and Shipping in their guide.

Risks & Challenges

The most significant hazard lies in the supply chain, due to potential delays caused by component shortages. While such issues are sometimes unavoidable, we have worked hard to mitigate any risks of component shortages by minimizing the likelihood and potential impact should a shortage occur. We pledge to maintain transparency and candor regarding our manufacturing progress.

In the Press

CNX Software

"UNIT 72784 says their cyber security tool enables Red Teaming – the practice of rigorously identifying an attack path to breach a device’s security – as it behaves like a flash drive while being able to deploy keyboard strokes wirelessly...."


Produced by UNIT 72784 in Cairo, Egypt.

Sold and shipped by Crowd Supply.

Diabolic Drive

stealthy wireless keystroke injection tool with 64 GB storage

$99 $8 US Shipping / $18 Worldwide

Want to buy this item? Check the current project page for the latest information.

About the Team

UNIT 72784

Cairo, Egypt  ·   unit72784

Cybersecurity hardware company developing unique Red Teaming and Penetration Testing hardware devices.

See Also

Subscribe to the Crowd Supply newsletter, highlighting the latest creators and projects