Hak5
Hak5 designs and sells hardware and software penetration testing tools — including WiFi Pineapple, USB Rubber Ducky, Bash Bunny, and O.MG covert implants — used by security professionals, red teams, enterprises, and educators across 100+ countries.
- Company typePrivate
- Founded2005
- HeadquartersDallas, United States
- Headcount—
- GTM typeB2B and B2C
- OfferingHardware or Manufacturing
What Hak5 does
Hak5 is a penetration testing equipment and software company founded in 2005 by Darren Kitchen and headquartered in Dallas, Texas, with fulfillment operated from a California warehouse and an EU regulatory presence in Tallinn, Estonia. The company designs, manufactures, and sells hardware devices and supporting software used by security professionals to perform authorized physical, WiFi, and network security assessments. Its product portfolio is organized into WiFi pentest platforms (WiFi Pineapple Mark VII, Enterprise, and the 2025 Pager), hotplug attack tools (USB Rubber Ducky, Bash Bunny Mark II, Shark Jack, Shark Jack Display), on-site implants and remote-access devices (Key Croc, Packet Squirrel Mark II, LAN Turtle, Screen Crab, Plunder Bug), and the O.MG line of covert implants (Cable, Adapter, UnBlocker, Plug). Supporting software includes Cloud C2, a self-hosted command-and-control platform sold in Community (free), Professional ($200), and Teams ($1,000-$2,000) tiers, and Payload Studio Pro, a browser-based IDE for the proprietary DuckyScript scripting language that spans the Hak5 hardware lineup.
Underlying technology spans embedded Linux devices, HID emulation, the PineAP WiFi attack suite (including the 8th-generation PineAP Engine), miniaturized implant hardware, and side-channel exfiltration techniques such as Keystroke Reflection. O.MG Elite implants add hardware keylogging, encrypted network C2, HIDX StealthLink, and geofencing. Bundled offerings (Essential, Elite, Red Team, and O.MG Field Kits) package devices for entry-level, professional, and red-team engagements, while the Advanced DuckyScript Online Course (2,568 enrollments) and accompanying textbooks monetize education.
Hak5's go-to-market is direct-to-consumer e-commerce via Shopify-powered shop.hak5.org, augmented by global authorized resellers and a B2B quote portal for enterprise and government buyers. Distribution covers more than 100 countries under US export classification ECCN 5D992.c with No License Required treatment to ENC favorable destinations. Customer segments are horizontal — individual pentesters, organized red teams and security firms, enterprise security teams, and educators/students — served across four primary personas. Revenue is primarily hardware unit sales ($40 to $850 ASP range) supplemented by recurring Cloud C2 software subscriptions, one-time Payload Studio Pro licenses, and educational products.
Hak5 firmographics
Firmographics- Name
- Hak5
- Legal name
- Hak5 LLC
- Website
- https://shop.hak5.org
- Company type
- Private
- Founded year
- 2005
- Operating status
- Operating
- Short description
- Hak5 designs and sells hardware and software penetration testing tools — including WiFi Pineapple, USB Rubber Ducky, Bash Bunny, and O.MG covert implants — used by security professionals, red teams, enterprises, and educators across 100+ countries.
- Ownership category
- akta.pro rank
Hak5 industry classification
Industry- Product category
- Penetration Testing Hardware
- NAICS
- Other Communications Equipment Manufacturing (334290), Security Systems Services (56162)
- SIC
- Computer Communications Equipment (3576), Services-Computer Programming Services (7371)
- akta.pro primary industry
- Confidential Computing & Hardware-backed Protection (TEE/HSM) (HDADAFAJ)
- akta.pro secondary industries
- Key Management, Encryption & Secrets Management (KMS/HSM/Vault) (HDABAHAG), Secure Elements & Trusted Execution Processors (TPM/TEE/Crypto MCUs) (HDAHAJAK)
Keywords
Where Hak5 is headquartered
LocationHeadquarters
- HQ city
- Dallas
- HQ country
- United States
- HQ region
- North America
Offices3 records
Markets served
Hak5 business model
Business model- GTM type
- B2B and B2C
- Offering type
- Hardware or Manufacturing
- Cost components
- Supply Chain, Operations, Technology or R&D, Personnel, Marketing or Sales, Infrastructure
Revenue model
- Hardware Sales: Primary revenue stream from selling penetration testing devices including WiFi Pineapple, USB Rubber Ducky, Bash Bunny, Key Croc, Packet Squirrel, Shark Jack, O.MG products, and accessories. Products range from $40 to $850.
- Software Licenses (Cloud C2): Cloud C2 command and control software sold in tiers: Community (free), Professional ($200 perpetual), Teams ($1000-$2000). Provides remote access and management of Hak5 gear.
- Software Licenses (Payload Studio Pro): Browser-based IDE for DuckyScript payload development. Community edition free, Professional edition one-time purchase for enhanced debugging and compiler optimizations.
- Educational Courses: Advanced DuckyScript Online Course and textbooks for learning penetration testing techniques. Course includes 7+ hours of video instruction, 54 lessons, 42 exercises, 8 projects.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Unit Pricing | Pay-as-you-go | WiFi Pineapple Mark VII - $250, WiFi Pineapple Pager - $300, WiFi Pineapple Enterprise - $850 |
| Unit Pricing | Pay-as-you-go | USB Rubber Ducky - $100, Bash Bunny - $200, Shark Jack - $100-120, Shark Jack Display - $120 |
| Unit Pricing | Pay-as-you-go | Key Croc - $200, Packet Squirrel Mark II - $150, LAN Turtle - not listed, Screen Crab - $330 |
| Unit Pricing | Pay-as-you-go | O.MG Cable - from $150, O.MG Adapter - $200, O.MG Plug - $85, O.MG UnBlocker - $150 |
| Unit Pricing | Pay-as-you-go | Plunder Bug LAN Tap - $130, Malicious Cable Detector - $40 |
| Subscription | Annual | Cloud C2 Community - Free (up to 10 devices), Professional - $200 (up to 50 devices), Teams Silver - $1000 (5 users, 50 devices) |
| Freemium | Pay-as-you-go | Payload Studio Community - Free, Payload Studio Pro - one-time purchase |
| One time/ perpetual license | Pay-as-you-go | Advanced DuckyScript Course - $60, USB Rubber Ducky Textbook - $40, Pocket Guide - $10 |
Go-to-market motion3 records
Distribution channels3 records
Marketing channels7 records
Hak5 product offering
Product offeringCore offering
Hak5 designs, manufactures, and sells specialized penetration testing hardware devices (WiFi Pineapple, USB Rubber Ducky, Bash Bunny, Key Croc, Packet Squirrel, Shark Jack, LAN Turtle, O.MG implants) and supporting software platforms (Cloud C2 command-and-control, Payload Studio Pro IDE) for authorized security assessments. The company also delivers paid training content, including the Advanced DuckyScript Online Course. Its products enable physical access attacks, WiFi network auditing, covert implant deployment, and red team operations by individual pentesters, security firms, and enterprise security teams.
Product overview
Hak5 is a penetration testing equipment and software company founded in 2005 that offers a portfolio of hardware devices and software platforms for authorized security testing. The product ecosystem centers on Cloud C2 as the command and control platform, complemented by WiFi Pineapple devices (Mark VII, Enterprise, Pager) for WiFi pentesting, hotplug attack tools (USB Rubber Ducky, Bash Bunny Mark II, Shark Jack) for physical access scenarios, network implants (Key Croc, Packet Squirrel Mark II, LAN Turtle, Screen Crab, Plunder Bug) for covert deployments, and O.MG covert implants (Cable, Adapter, UnBlocker, Plug) for advanced adversarial simulation. Supporting software includes Payload Studio Pro for DuckyScript development and an Advanced DuckyScript training course. Field Kits bundle multiple products for different use cases from beginner to red team operations.
Differentiator
Problem solved
Functional benefit
Brands
- O.MG: A sub-brand line of extremely covert implants with advanced capabilities, including O.MG Cable, O.MG Adapter, O.MG Plug, and O.MG UnBlocker.
- WiFi Pineapple
- DuckyScript
- Cloud C2
Products and services
- WiFi Pineapple Mark VII Industry-standard WiFi pentest platform with browser-based interface for rogue access point attacks, automated campaign wizards with actionable intelligence reports, and Cloud C2 integration for remote management. Supports WPA-PSK and WPA Enterprise rogue AP attacks via the PineAP suite, targeting individual pentesters and security professionals.
- WiFi Pineapple Enterprise Enterprise-focused WiFi pentest appliance with quad-core Qualcomm ARM CPU, 5 dedicated dual-band radios, 2x Gigabit Ethernet, AC power, and metal rack-mount enclosure. Supports up to 100 DHCP clients and high-traffic environments with thousands of stations for enterprise security teams and demanding multi-client engagements.
- WiFi Pineapple Pager Pocket-sized standalone pentest device with Tri-Band WiFi (2.4/5/6 GHz), Bluetooth 5.2, 2.4-inch color display, 2000 mAh battery with USB-C charging, and integrated Ethernet adapter. Runs DuckyScript and Bash payloads for WiFi attacks and alert-based automation, targeting mobile pentesters.
- Cloud C2 Self-hosted cloud command-and-control platform for remote deployment and management of Hak5 penetration testing gear including WiFi Pineapple, LAN Turtle, Packet Squirrel, Screen Crab, Shark Jack, and Key Croc. Available in Community (free), Professional ($200 perpetual), and Teams editions with role-based access control for distributed red team operations.
- Payload Studio Pro Browser-based integrated development environment for DuckyScript and Bash-based payloads with syntax highlighting, auto-completion, live error-checking, extension syncing, and intelligent debugger with breakpoints. Supports USB Rubber Ducky, Bash Bunny, Key Croc, Shark Jack, Packet Squirrel, LAN Turtle, and O.MG Gear, with Community edition free and Pro as a one-time purchase.
- Advanced DuckyScript Online Course Online training course with 7+ hours of video instruction covering 54 lessons, 42 exercises, and 8 projects. Covers Advanced DuckyScript 3.0 including keystroke injection attacks, payload development, obfuscation, randomization, exfiltration, and extensions. Includes professional certificate upon completion, taught by founder Darren Kitchen.
- USB Rubber Ducky Hotplug attack tool disguised as a USB flash drive that emulates a keyboard for keystroke injection attacks. Runs DuckyScript 3.0 payloads at superhuman speeds with variables, flow control, loops, functions, randomization, extensions, keystroke reflection for side-channel exfiltration, OS detection, and hardware ID cloning. The category-defining keystroke injection device for authorized security assessments.
- Bash Bunny Mark II Multi-vector USB attack platform running Linux that performs hotplug attacks in 7 seconds. Mimics multiple USB device types (HID, storage, Ethernet) simultaneously with MicroSD XC expansion up to 2TB, Bluetooth LE for remote triggers and geofencing, 8 GB SSD, quad-core CPU, and DuckyScript/Bash payload support for physical access penetration testing.
- Shark Jack Pocket-sized Linux pentest box for network assessments running DuckyScript payloads powered by Bash. Features fast network scanner with RGB LED feedback, arming mode for online payload library access, and USB-C Serial connectivity for live in-shell interaction, targeting field pentesters conducting on-site network testing.
- Shark Jack Display Network assessment tool with 1.2-inch OLED display (128x64 pixels), RGB LED RJ45 Ethernet plug, USB-C charging, and interactive DuckyScript payloads with on-device menus. Includes over a dozen built-in payloads, SharkLink feature for dual-device network port verification, and 30+ minute battery runtime, priced at $120.
- Plunder Bug LAN Tap Pocket-sized LAN Tap for Ethernet packet capture with USB-C convenience. Features auto-negotiating 10/100 Base-T Fast Ethernet, ASIX AX88772C USB Ethernet chipset, passive recording and active scanning capabilities, and cross-platform scripts for Windows, Mac, and Linux. Outputs PCAP format compatible with Wireshark.
- Key Croc Keylogging pentest implant that triggers multi-vector attacks when keywords are typed. Features pattern matching payloads with regex support, automatic hardware ID cloning, simultaneous USB device emulation (serial, storage, HID, Ethernet), quad-core 1.2 GHz ARM CPU, 8 GB SSD, integrated 2.4 GHz WiFi, and Cloud C2 integration for covert on-site keylogging engagements.
- Packet Squirrel Mark II Matchbook-sized Linux network multi-tool for inline man-in-the-middle attacks. Features DYNAMICPROXY for TCP traffic interception, KILLPORT and KILLSTREAM for traffic termination, SPOOFDNS for DNS manipulation, OpenVPN and Wireguard support, packet sniffing in PCAP format, and USB-C power at 0.2 amps. Advanced TAA SKU available for government agencies.
- Screen Crab Video man-in-the-middle device that captures screenshots or videos to disk and streams live to the Internet for remote viewing. Enables covert screen capture and live monitoring for red team operations, priced at $330.
- LAN Turtle Remote access toolkit disguised as a USB Ethernet adapter. Provides stealth remote access, network intelligence gathering, and man-in-the-middle surveillance with MicroSD storage, module-based architecture, and Cloud C2 integration, used by red teams for persistent remote access and network penetration testing.
- O.MG Cable USB cable with hidden WiFi-enabled implant for keystroke injection attacks. Available in Basic (Gen 1) and Elite (Gen 3) tiers. Elite features DuckyScript 3, 890 keys/sec speed, 300 payload slots, hardware keylogger (650,000 keystrokes), HIDX StealthLink, encrypted network C2, geo-fencing, and extended WiFi range, starting at $150.
- O.MG Adapter USB adapter with hidden implant for keystroke injection, available in Basic and Elite tiers. USB-C connector is the active side for payload delivery. Supports USB 2.0 data passthrough while implant stays undetectable, and OTG adapter functionality for mobile devices, priced at $200.
- O.MG UnBlocker Malicious USB data blocker with hidden wireless O.MG implant inside. Functions as a data blocker but contains dormant implant for payload delivery. Available in Ember-Red, Charcoal-Black, and Ash-White colors with customizable labels, priced at $150.
- O.MG Plug Electrical plug form factor with hidden O.MG implant for covert penetration testing scenarios, priced at $85. Blends into standard electrical outlet environments for long-term covert deployments.
- Malicious Cable Detector by O.MG USB cable detection device that uses side-channel power analysis (200,000 times per second) to detect malicious USB cables including O.MG Cables. Functions as a data blocker for safe charging when not detecting threats, priced at $40. Defensive countermeasure for security teams protecting against O.MG-style covert implants.
- Glytch Crash Kit 26-piece portable soldering and electronics toolkit including USB-C rechargeable soldering iron with three temperature modes (330-450C), Wowstick screwdriver with 20 bit set, tweezers, flush cutters, and lead-free solder. Designed for field repairs and hardware hacking adventures.
- Essential Field Kit Entry-level bundle including best-selling Hak5 products along with educational materials and software for getting started with penetration testing, targeting new users entering the InfoSec field.
- Elite Field Kit Comprehensive bundle including on-site implants, hotplug attack tools, WiFi Pineapple, and pentest software for complete control and advanced penetration testing engagements, targeting professional red team operators.
- O.MG Field Kit Field kit containing multiple O.MG Cable variants (USB-A/C to Lightning, USB-C, Micro) and O.MG Adapter in both white and black color options, along with O.MG Programmer and Hak5 Elite Gear Organizer, for advanced covert implant operations.
Quantifiable outcome
- 2,568 course enrollments demonstrating strong market adoption of educational offerings
- +2 more outcomes
Companies that use Hak5
Customer profileNamed customers1 record
Segments4 records
Ideal customer profiles4 records
Hak5 technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration3 records
Feature6 records
Hak5 partnerships and signals
Strategic signalPartnerships
Two partnerships are on record, tiered minor and core.
- National Upcycled Computing Collective (NUCC)minorNon-profit organization that supports hacking community initiatives by donating decommissioned hardware for student and participant use. Partnered with DEF CON Scavenger Hunt.
- DEF CONcoreAnnual hacker conference where Hak5 products are featured in Scavenger Hunt activities. Major community engagement event for the company.
Scale indicators6 records
Recent moves6 records
Expansion highlights6 records
Hak5 competitors and assessment
Company assessmentBroad incumbents
- Rapid7 (Metasploit): Rapid7 owns Metasploit, the leading open-source exploitation framework, and InsightVM for vulnerability management. Comparable to Hak5 as a broad incumbent offensive-security tooling vendor serving red teams and penetration testers with both free and commercial offerings.
- CrowdStrike: CrowdStrike is a leading endpoint detection and response (EDR) platform whose Falcon product line is the typical enterprise defender Hak5 gear is used to test. Comparable as a broader cybersecurity incumbent that anchors buyer relationships and shapes the offensive security tooling ecosystem around it.
- PortSwigger (Burp Suite): PortSwigger's Burp Suite is the category standard for web application penetration testing. While web-focused rather than physical/wireless like Hak5, PortSwigger is a comparable 'must-have' professional pentest tool vendor with a strong community and recurring license revenue.
- Keysight (formerly Ixia BreakingPoint): Keysight acquired BreakingPoint (formerly Pwnie Express's parent) and offers enterprise-grade security testing hardware and traffic generators. Comparable to Hak5's WiFi Pineapple Enterprise and Packet Squirrel as a larger, established player in the same security testing appliance category.
Direct peers
- Flipper Devices: Flipper Devices makes the Flipper Zero, a multi-tool hacker device covering RFID, NFC, infrared, sub-GHz radio, and USB HID attacks. It is the closest direct competitor to Hak5's portable pentest hardware category and competes head-to-head for hobbyist and professional buyers.
- Pwnie Express: Pwnie Express built wireless pentest appliances and remote sensor hardware that competed directly with the WiFi Pineapple line. Now part of Keysight/BreakingPoint, it remains a historical direct competitor and category benchmark for Hak5's flagship product.
- Great Scott Gadgets: Great Scott Gadgets designs open-source hardware for wireless security research, including HackRF One, Ubertooth One, and Yard Stick One. Comparable to Hak5's WiFi Pineapple and Packet Squirrel in the wireless/RF pentesting hardware niche, with overlapping security researcher customers.
Emerging players
- Cymulate: Cymulate provides a SaaS-based BAS platform covering email, web, endpoint, and cloud attack scenarios. Comparable to Hak5 in serving red and blue teams that need to simulate real-world attacks, but as a software-only subscription rather than physical pentest hardware.
- Offensive Security: Offensive Security (Kali Linux, OSCP certification) is the dominant training and open-source tool ecosystem in offensive security. Comparable to Hak5's Advanced DuckyScript course and PayloadHub community because both companies monetize around hands-on pentest education and tooling.
- SafeBreach: SafeBreach is a breach-and-attack simulation (BAS) platform that continuously validates enterprise defenses using an attack playbook. Comparable to Hak5 as a vendor simulating adversary techniques against customer environments, though delivered as enterprise SaaS rather than hardware.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks5 records
Key highlights7 records
Customer concentration
Hak5 social profiles
Digital presenceHak5 financial estimates
Financial estimateRevenue estimate
Valuation estimate
Hak5 leadership team
Management profileNumber of profiles
Profiles1 record
Hak5 funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Hak5 M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Hak5
What does Hak5 do?
Hak5 designs, manufactures, and sells specialized penetration testing hardware devices (WiFi Pineapple, USB Rubber Ducky, Bash Bunny, Key Croc, Packet Squirrel, Shark Jack, LAN Turtle, O.MG implants) and supporting software platforms (Cloud C2 command-and-control, Payload Studio Pro IDE) for authorized security assessments. The company also delivers paid training content, including the Advanced DuckyScript Online Course. Its products enable physical access attacks, WiFi network auditing, covert implant deployment, and red team operations by individual pentesters, security firms, and enterprise security teams.
Is Hak5 a public or private company?
Hak5 is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Hak5 founded?
Hak5 was founded in 2005.
Where is Hak5 based?
Hak5 is headquartered in Dallas, United States, in the North America region.
How does Hak5 make money?
Four revenue lines are on record. Hardware Sales are the primary driver. The others are software Licenses (Cloud C2), software Licenses (Payload Studio Pro) and educational Courses.
Who are Hak5's main competitors?
Broad incumbents on record are Rapid7 (Metasploit), CrowdStrike, PortSwigger (Burp Suite) and Keysight (formerly Ixia BreakingPoint). Direct peers are Flipper Devices, Pwnie Express and Great Scott Gadgets. Emerging players are Cymulate, Offensive Security and SafeBreach.
Does Hak5 have an API?
No public API is recorded for Hak5.
What industry is Hak5 in?
Hak5's product category is Penetration Testing Hardware. Its primary akta.pro industry code is HDADAFAJ, Confidential Computing & Hardware-backed Protection (TEE/HSM), with a secondary code of HDABAHAG, Key Management, Encryption & Secrets Management (KMS/HSM/Vault). Its NAICS code is 334290 and its SIC code is 3576.