PlunderPIN

PlunderPIN
Download Copy
Title: PlunderPIN
Author: OSINTI4L

PlunderPIN is a mobile PIN phishing payload that replaces a user's Google Chrome browser homepage with a malicious imitation homepage that creates prompts to capture the user's PIN and log it to a self hosted Apache webserver.

🏆   Recognized with a Payload Award in January 2026

 

This payload is for the USB Rubber Ducky — a "flash drive" that types keystroke injection payloads into unsuspecting computers at incredible speeds. It's no wonder this little quacker has made appearances on Mr. Robot, FBI, Blacklist, National Geography and more!

Submit your own payload, or browse more featured USB Rubber Ducky Payloads.

 

 

Related Payloads

NullSec System Profiler
NullSec System Profiler
Comprehensive system reconnaissance, Collects hardware, software, network and security configuration details. Saves repo
Read More
NullSec Network Mapper
NullSec Network Mapper
Automated network discovery and mapping without external tools. Uses native Windows commands only.
Read More
EVILEN FROGGIN
EVILEN FROGGIN
This DuckyScript payload will execute a powershell command to disable task manager, then, backdoor entry by disabling Wi
Read More