Professional security tools
you actually own.
Hand-built in Germany. Runs offline. Yours for life — no subscriptions, no logs, no cloud account between you and your work. HID, OSINT, and firmware tools trusted by researchers in 52 countries.
Explore ZeroTrace Tools
Hardware and software for authorized security testing.
Unmatched Versatility
What's inside every ZeroTrace device.
Remote Control
Remote keystroke & mouse injection via web interface, from a distance is always safer than anything else
Scripting Engine
Execute advanced automation scripts with ease, from simple keystrokes to complex macros, the possibilities are endless
RGB LED System
Fully customizable RGB LED system with scriptable effects
Low Latency
Powered by ESP32-S3 for fast and reliable performance any where you go
240MHz
Live Control
Virtual keyboard and joystick for real-time input control in the wild
OS Detection
Automatically detects target OS to which it is connected
Plug in any AI. Local-first, by default.
Built into the AirLeak desktop app and the OSINT app. Pick OpenAI, Anthropic, Ollama, LMStudio, or a custom endpoint inside the app — or hook ChatGPT, Claude Desktop, or Cursor in via the built-in MCP server. Privacy-first by default.
Threat is approaching with red alerts tracking 90 devices, including airtag (D2:14:3B:9E:EB:D2) and iPhone devices. Persistent IoT sensors and 11 new BLE entries are active. Definitely tracking 90 devices, with 4 persistent IoT sensors.
- All clear with 89 tracked devices showing increasing trends.
- Concerning device:
38:A5:C9:2C:3D:A1iot_sensor (Tuya Smart Inc.) rssi=−81, observed 296 windows. - Persistent windows: 296, 532, 59, 106 persist across 2 sessions — repeat traffic.
- Practical takeaway: Monitor the iot_sensor for potential IoT threats.
list_devices(class: airtag|tile|generic_ble)Found 3 candidates. The persistent BLE entry 18:20:F2:70:86:5B (296 windows, weak RSSI) is most consistent with a tracker. Recommend whitelisting if known — otherwise flag.
A different set of criteria
Hak5 wins on hardware breadth and ecosystem maturity — we're honest about that. The criteria below are the ones a procurement officer, an ethics committee, and a working professional all care about. They favour the vendor that didn't compromise.
EU jurisdiction
Vendor + manufacturing + customer data all under EU jurisdiction. Schrems II / GDPR clean.
No required cloud account
Device works fully offline. No vendor-side telemetry routed through someone else's infrastructure.
No subscription on core
One purchase, lifetime device function. Recurring fees only on optional services, never on hardware or firmware.
No-log architecture
Customer operational data (testing activity, OSINT queries, payloads) never leaves your machine.
Lifetime firmware updates
Same kit works the same way in five years. Documented sunset notice if any device line ends.
Hand-assembled in Germany
Verifiable provenance. Component-tested. Not contract-manufactured under brand-only labeling.
Native OSINT toolkit
70+ OSINT tools and investigation profiles in the same workflow as the HID and firmware tools.
Procurement-ready license
Plain-language EULA addendum, authorized-testing language template, single-PO invoicing.
Custom firmware on request
Lab and Operator orders ship with a tuned firmware variant — recon-heavy, payload-fast, or audit-clean.
Integrated end-to-end workflow
HID hardware + OSINT + Proxy + firmware + Companion app sold as one stack, designed to compose.
Loved by Unknown Humans
Join the growing community of security professionals who trust ZeroTrace for their pentesting needs.
Trusted by Security Professionals
Used in labs, engagements, and competitions worldwide.
The firmware is really intuitive and the owner shipped fast. Outstanding quality for the price - you can tell this was built by people who actually use these tools.
Penetration Tester
Germany
The no-subscription model alone made this the obvious choice. Competitor cloud costs add up fast. One purchase and everything works - dashboard, firmware updates, all of it.
Red Team Operator
Netherlands
Got two ZeroTrace devices at work now. Checking laptops is a breeze - I can do all my checkups across multiple devices without being next to them. Saved hours every week.
IT Security Professional
United Kingdom
I've never written HID scripts before. ZeroTrace made it easy to pick up. Way more polished and responsive than anything I've used previously - great job.
Security Researcher
United States
The OSINT toolkit is very complete. Community ease of use is top notch. Clean, useful products when used right - exactly what I needed for authorized assessments.
OSINT Analyst
France
Needed to press F2 on two devices simultaneously that weren't next to each other. ZeroTrace handled it perfectly. Live keyboard control is underrated.
Systems Administrator
Switzerland
Ready for the next lab run?
Find the right ZeroTrace setup.
Hardware, OSINT software, and firmware tools for authorized security work, with direct help when you need to pick a setup.
Frequently Asked Questions
Everything you need to know about ZeroTrace products and services