root@esp32:~$ ./subrabbit --scan

Sub‑1 GHzSwiss army knife

Sniff, record, replay, and brute‑force signals. Wide frequency coverage, multiple modulations, and a full packet engine on ESP32 + CC1101.

stars
forks
latest
MITlicense
drag to rotate
ls features/

Everything RF, one tool

Packet sniffer, frequency analyzer, raw capture/replay, jamming, brute‑force, and more.

Packet Sniffer

Receive and log RF packets with live RSSI monitoring and link quality.

Frequency Analyzer

Scan and detect active channels across the Sub‑GHz spectrum.

RAW Capture / Replay

Record raw RF samples (recraw) and replay (playraw) with precision.

Fixed‑Code Replay

Capture and replay fixed‑code signals (recsig, playsig) for remotes.

Multi‑Modulation

2‑FSK, GFSK, ASK/OOK, 4‑FSK, MSK — full configurable radio parameters.

Jamming & Brute‑Force

Continuous jamming (jam) and timing‑based brute‑force (brute) modes.

./flash --help

Pick your method

Choose the flashing approach that fits your workflow.

latest release
Loading...

Web Flasher

Real ESP32 protocol via Web Serial — no toolchain needed. Connect, select firmware, flash.

CLI Tool

Use the built‑in Serial.py from the /Serial folder. Interactive or direct mode.

Source & IDE

Download the source, open SubRabbit.ino in Arduino IDE, and upload to your board.

cat hardware.md

PCB & breadboard

Official PCB, schematics, Gerber, and BOM — plus breadboard wiring for ESP32 + CC1101.

PCB v1

Atmega32u4 + CC1101, USB‑C, SMA antenna. All files in PCB/.

Breadboard

ESP32 + CC1101 module — wiring diagram in the Wiki.