Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
40 results
CVE-2026-19586 preview

CVE-2026-19586

GitHubmattgsys/cve-2026-19586

Python PoC exploiting CVE-2026-19586, an unauthenticated command injection in TP-Link Omada SSL VPN that executes arbitrary commands as root via…

command-and-controlcryptographyembedded-systems-security+6
1
1 month ago
CVE-2026-93958 preview

CVE-2026-93958

GitHubhackspeak/cve-2026-93958

Authenticated command injection PoC for D-Link R95/BE9500 DHMAPI SetTimeSettings, achieving root RCE via NTPServer backtick injection, with full…

command-and-controlembedded-systems-securityexploitation+7
15 days ago
tapo-c260-rce preview

tapo-c260-rce

GitHubl0lsec/tapo-c260-rce

PoC exploit chain for TP-Link Tapo C260 camera — CVE-2026-0651/0652/0653. Research by @spaceraccoon.

command-and-controlembedded-systems-securityexploitation+7
26 months ago
thetick preview

thetick

GitHubnccgroup/thetick

A simple embedded Linux backdoor.

command-and-controlembedded-systems-securitypersistence-mechanisms+3
1985 years ago
my-little-honeypot preview

my-little-honeypot

GitHubpandipanda69/my-little-honeypot

Lightweight telnet honeypot for capturing IoT malware samples and identifying active command-and-control infrastructure, designed for educational…

command-and-controliot-securitymalware-analysis+2
179 years ago
RE11S_1.11-formAccept-CommandInjection preview

RE11S_1.11-formAccept-CommandInjection

GitHubpasswa11/re11s_1.11-formaccept-commandinjection

CVE-2025-22912

command-and-controlembedded-systems-securityexploitation+5
1 year ago
CVE-2021-41730 preview

CVE-2021-41730

GitHubyezeting/cve-2021-41730

Proof-of-concept exploit for CVE-2021-41730, demonstrating remote command execution in TENDA AC15/AC6 routers via unvalidated formSetIptv()…

command-and-controlembedded-systems-securityexploitation+5
4 years ago
TP-Link-ArcherC5-RCE preview

TP-Link-ArcherC5-RCE

GitHubjackdoan/tp-link-archerc5-rce

CVE-2018-19537

command-and-controlembedded-systems-securityexploitation+8
207 years ago
gardyn preview

gardyn

GitHubmselbrede/gardyn

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631

command-and-controlembedded-systems-securityexploitation+8
1 year ago
CVE-2024-48705 preview

CVE-2024-48705

GitHubl41kaa/cve-2024-48705

Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while…

binary-analysiscommand-and-controlembedded-systems-security+7
21 year ago
DSL-2750U-Full-chain preview

DSL-2750U-Full-chain

GitHubhadimed/dsl-2750u-full-chain

CVE-2021-3707 , CVE-2021-3708

command-and-controlembedded-systems-securityexploitation+3
214 years ago
CVE-2026-11834 preview

CVE-2026-11834

GitHubmattgsys/cve-2026-11834

Proof of Concept (PoC) for the TP-Link DHCP Option 66 Unauthenticated RCE (CVE-2026-11834)

command-and-controlexploitationpayload-generation+3
43 months ago
CVE-2025-63296 preview

CVE-2025-63296

GitHubt4e-3/cve-2025-63296

KERUI K259 5MP Wi-Fi (Tuya Smart Security Camera) contains a code execution vulnerability

binary-exploitationcommand-and-controldata-exfiltration+8
10 months ago
CVE-2025-60854 preview

CVE-2025-60854

GitHubk0n9-log/cve-2025-60854

D-link AX1500 Vulnerability

binary-analysiscommand-and-controlembedded-systems-security+7
9 months ago
CVE-2025-57174 preview

CVE-2025-57174

GitHubsemaja22/cve-2025-57174

CVE-2025-57174 Unauthenticated Remote Command Execution

command-and-controlexploitationiot-security+3
1 year ago
CVE-2023-40289 preview

CVE-2023-40289

GitHubs-hamann/cve-2023-40289

Exploit for CVE-2023-40289, a command injection vulnerability in several Baseband Management Controllers (BMC) by with firmware by ATEN

command-and-controlembedded-systems-securityexploitation+3
10 years ago
CVE-2023-36143 preview

CVE-2023-36143

GitHubleonardobg/cve-2023-36143

Proof-of-concept exploit for CVE-2023-36143 demonstrating command injection in Maxprint Maxlink 1200G v3.4.11E via the diagnostic tool web interface.

command-and-controlembedded-systems-securityexploitation+3
3 years ago
CVE-2023-33869-RCE-PoC preview

CVE-2023-33869-RCE-PoC

GitHubnap3xd/cve-2023-33869-rce-poc

Remote Code Execution (RCE) proof of concept on a enphase solar inverter

command-and-controlembedded-systems-securityexploitation+3
7 months ago
Previous123Next