Professional-grade WiFi pentesting platform built on ESP32-C5. 4-node distributed architecture with iOS control app. Dual-band 2.4+5GHz, GPU-accelerated cracking, wardriving maps.
Everything you need for professional WiFi security assessments
Scan 2.4GHz and 5GHz simultaneously. The only ESP32 with WiFi 6 support. See every network in range with RSSI, channel, security analysis.
Capture WPA2 PMKIDs from beacons. Auto-crack on iPhone using Metal GPU acceleration. 200-500k passwords/second on A-series chips.
GPS-tagged AP scanning with real-time map overlay. Color-coded security levels. Export KML, CSV, hashcat formats. Full session recording.
Automated Evil Twin with captive portal. Router-branded phishing pages. DNS hijack + HTTP server. OUI-based brand detection.
Coordinate all 4 ESP32-C5 nodes from one iPhone. Dedicated roles: portal AP, deauth, beacon flood, IDS monitoring. Maximum coverage.
802.11 deauth flood, beacon spam, probe flood, BLE spam (Apple/Samsung/Google/Windows popups). Raw frame injection on dual-band.
Real-time IDS monitoring. Detect deauth attacks, evil twins, rogue APs. Distributed 4-node coverage across all channels.
Detect AirTags, SmartTags, Tile, Flipper Zero. Stalker detection alerts. BLE spam generator for all major vendors.
Visual attack script builder. Create, save, import/export JSON scripts. Variables, node targeting, delay control. 12 built-in scripts.
WiFi 6 HE20 channel state information. 245-subcarrier presence detection. See through walls. Hardware register control.
1.9MB onboard SPIFFS storage. Standard PCAP format (Wireshark-compatible). Download captures to iPhone. NVS persistent storage.
Full CLI terminal in the app. ping, portscan, arp, traceroute, DNS lookup. Network recon after connecting to captured networks.
5th node: ESP32-S3 AtomS3 USB HID injector. DuckyScript payloads, PIN brute-force (iOS/Android), Boot Drive, composite mode (HID+MSC). Controlled via BLE from iPhone.
Embedded Alpine Linux via iSH x86 emulator. Real kernel, real apk package manager. Install wireshark, nmap, python, aircrack-ng. 55+ native shell commands.
Pick .py/.ps1/.sh/.js/.bat from iPhone. AtomS3 opens terminal on target, writes the file, executes it. Auto-generated DuckyScript for macOS and Windows.
Hardware USB keyboard brute-force for iOS and Android PIN locks. Smart mode (top 100 common PINs first, ~30% hit rate). Automatic lockout timing. Requires optional MAX3421E USB Host Shield module.
AtomS3 as bootable USB drive. Upload .img/.iso via BLE. Target PC boots from AtomS3. Bypass OS-level security entirely. Composite: HID + Boot simultaneously.
Attacker IP auto-detected from iPhone WiFi. Webhook URL auto-generated. Zero manual setup — plug AtomS3 into target and tap Run.
5-node control from your iPhone. WiFi, BLE, USB HID, Linux terminal — every feature at your fingertips.
Direct CLI access to all pentesting tools
Choose your pentesting arsenal
1x ESP32-C5 with PHANTOM firmware pre-flashed
4x ESP32-C5 + 1x PHANTOM-USB — complete arsenal
For security teams and pentest firms
4x ESP32-C5 WiFi 6 nodes + 1x PHANTOM-USB (AtomS3) HID injector
Built on the most advanced ESP32 silicon
ESP32-C5 (RISC-V)
802.11ax (WiFi 6)
2.4 GHz + 5 GHz
21 dBm (adjustable)
Bluetooth 5.0 LE
4x WiFi + 1x USB
4MB (2MB app + 1.9MB PCAP)
RISC-V 240MHz
245 subcarriers (HE20)
Raw 802.11 frames
iOS app (BLE GATT)
Metal (200-500k pwd/s)
DuckyScript + AtomS3
Alpine (iSH x86 emu)
55+ native commands
ESP32-S3 (M5 AtomS3)
Join the waitlist. Limited first batch.
For authorized security testing only. By joining you agree to responsible use.