Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
51 results
hackEmbedded preview

hackEmbedded

GitHubdoudoudedi/hackembedded

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

command-and-controlembedded-systems-securityencryption-decryption-tools+8
206
1 month ago
CVE-2026-22226 preview

CVE-2026-22226

GitHublucasvanhaaren/cve-2026-22226

Blind OS command injection proof-of-concept exploiting weak input validation in TP-Link Archer router VPN client, achieving root shell via telnetd.

command-and-controlexploitationiot-security+4
11 month ago
CVE-2021-4045 preview

CVE-2021-4045

GitHubkaleth4/cve-2021-4045

Command injection exploit for TP-Link Tapo C200 camera (CVE-2021-4045) providing root shell access via UART and reverse-engineered uhttpd binary…

command-and-controlembedded-systems-securityexploitation+6
2 months ago
CVE-2026-36356 preview

CVE-2026-36356

GitHubtotekuh/cve-2026-36356

Proof-of-concept exploit for CVE-2026-36356: unauthenticated OS command injection in MeiG Smart FORGE_SLT711 GoAhead web server, enabling root-level…

command-and-controlexploitationiot-security+4
13 months ago
CVE-2023-33869-RCE-PoC preview

CVE-2023-33869-RCE-PoC

GitHubnap3xd/cve-2023-33869-rce-poc

Remote Code Execution (RCE) proof of concept on a enphase solar inverter

command-and-controlembedded-systems-securityexploitation+3
6 months ago
CVE-2025-15545 preview

CVE-2025-15545

GitHubxernary/cve-2025-15545

Proof-of-concept exploit for CVE-2025-15545, chaining hardcoded cryptographic keys and command injection to achieve remote code execution as root on…

command-and-controlembedded-systems-securityexploitation+3
16 months ago
CVE-2021-36260-hikvision preview

CVE-2021-36260-hikvision

GitHubshubtheone/cve-2021-36260-hikvision

Python exploit for CVE-2021-36260 command injection in Hikvision web servers. Supports safe/unsafe vulnerability verification, remote command…

command-and-controlexploitationiot-security+3
7 months ago
CVE-2024-30167 preview

CVE-2024-30167

GitHubrizzziom/cve-2024-30167

Proof-of-concept exploit for authenticated command injection in Atlona AT-OME-RX21, allowing root-level command execution via the time configuration…

command-and-controlembedded-systems-securityexploitation+3
18 months ago
CVE-2025-60854 preview

CVE-2025-60854

GitHubk0n9-log/cve-2025-60854

Technical analysis and proof-of-concept exploit for a command injection vulnerability (CVE-2025-60854) in D-Link AX1500 routers, enabling…

binary-analysiscommand-and-controlembedded-systems-security+7
8 months ago
CVE-2023-40289 preview

CVE-2023-40289

GitHubs-hamann/cve-2023-40289

Exploit for CVE-2023-40289 command injection in ATEN BMC firmware. Enables remote file retrieval, upload, and command execution on affected…

command-and-controlembedded-systems-securityexploitation+3
111 months ago
CVE-2025-57174 preview

CVE-2025-57174

GitHubsemaja22/cve-2025-57174

Python exploit for CVE-2025-57174 enabling unauthenticated remote command execution on Siklu EtherHaul series devices (firmware 7.4.0–10.7.3).

command-and-controlexploitationiot-security+3
11 months ago
CVE-2024-57366 preview

CVE-2024-57366

GitHubh4ckusaur/cve-2024-57366

Remote code execution exploit for CVE-2024-57366 targeting WAVLINK routers via MAC address validation bypass and command injection, with automatic…

command-and-controlexploitationiot-security+6
11 months ago
CVE-2025-9090 preview
Archived

CVE-2025-9090

GitHubbytereaper77/cve-2025-9090

Command Injection in Tenda AC20 16.03.08.12 (/goform/telnet)

command-and-controlexploitationiot-security+3
11 year ago
CVE-2025-52688 preview

CVE-2025-52688

GitHubjoelczk/cve-2025-52688

Proof-of-concept exploits for CVE-2025-52688: unauthenticated command injection and arbitrary file read vulnerabilities in Alcatel AP13161 enterprise…

command-and-controlexploitationhardware-iot-security+3
21 year ago
gardyn preview

gardyn

GitHubmselbrede/gardyn

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631

command-and-controlembedded-systems-securityexploitation+8
1 year ago
gardyn-hack preview

gardyn-hack

GitHubkristof-mattei/gardyn-hack

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631

command-and-controlembedded-systems-securityexploitation+8
1 year ago
backdoor.mirai.helloworld preview

backdoor.mirai.helloworld

GitHubtpdlshdmlrkfmcla/backdoor.mirai.helloworld

Exploit tool targeting Dasan GPON routers via CVE-2018-20561 and CVE-2018-10562, with backdoor command-and-control capabilities for IoT device…

command-and-controlexploitationiot-security+3
1 year ago
cve-2024-10914 preview

cve-2024-10914

GitHubyenyangmjaze/cve-2024-10914

Proof-of-concept exploit for CVE-2024-10914, a command injection vulnerability in D-Link NAS devices via the account_mgr.cgi script. Includes…

command-and-controlexploitationiot-security+3
11 year ago
Previous123Next