Ghost Knock is a professional TCP port knocking tool designed for authorized penetration testing and network administration. Send configurable TCP SYN port sequences to unlock hidden services, then verify if the target port becomes reachable — all without root access.
KEY FEATURES:
Profile Management – Create, edit, duplicate, and organize multiple knock profiles for different targets with custom names and hosts.
Custom Port Sequences – Define ordered lists of TCP ports with configurable inter-knock delays. Add, remove, or reorder ports freely.
Service Verification – After the knock sequence, automatically attempt a full TCP connection on a user-defined port to confirm the service is now reachable.
Real-Time Progress – Live step-by-step indicators show the status of each port: sent, timeout, or refused. A progress bar tracks overall completion. Cancel at any time.
History Log – Every knock session is automatically recorded with timestamps, results, and details. Expand entries to see full information including service reachability.
Dark Theme – Built-in dark mode for comfortable use in low-light environments. Toggle it in settings and it persists across sessions.
No Root Required – Uses standard Java TCP sockets. No raw sockets, no root access, no special permissions needed.
Privacy First – All profiles, settings, and history logs are stored exclusively on your device. No data is collected, transmitted, or shared. No analytics or advertising SDKs are included.
INTENDED USE:
This tool is designed exclusively for legitimate security testing on systems you own or have explicit written permission to test. Unauthorized use may violate applicable laws. The developers assume no liability for misuse.
Authorized penetration testing
Network administration
Educational security research