Skip to contentSkip to Content
FAQ

FAQ

Note:

Draft — based on the device’s current design. This page will be refined once real user questions have been collected.

Mantis is built for authorized security testing, blue-team training, and education. Only use it on devices and networks you own or have explicit written permission to test — unauthorized use may be illegal in your jurisdiction. See our responsible use policy.

Does Mantis work on Windows, macOS and Linux?

Yes. Because Mantis emulates a standard USB HID keyboard, it works with any OS that accepts a USB keyboard — no special drivers are needed on the host in Attack Mode.

Will antivirus or endpoint security software flag Mantis?

Mantis identifies itself with a generic HID keyboard VID/PID, so it won’t be flagged just for being plugged in — but well-configured endpoint security may still flag unusual keystroke patterns it produces, which is exactly the kind of detection blue teams use Mantis to train against.

Do I need to reflash the firmware every time I want to run a new script?

No. New scripts are uploaded straight to the onboard flash over USB in Upload Mode — the firmware itself never needs to be touched.

How is Mantis different from a USB Rubber Ducky?

Mantis’s scripting language, Mantis, uses Ducky-style syntax you’ll likely already be familiar with, but adds built-in serial (USB CDC) communication as a scripting feature, is significantly cheaper, and comes with its own free IDE and free base firmware.

Is there a paid / Pro version?

A Pro version is in development, adding features like SD card-based script storage for larger or swappable scripts. The base Mantis and its firmware remain free.

Last updated on