Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
27 results
bluez preview

bluez

GitHubbluez/bluez

Linux Bluetooth protocol stack with daemons, command-line clients, HCI monitor, and support for BR/EDR, LE, Mesh, audio profiles, providing device…

bluetooth-securitycryptographygeneral-purpose-utilities+3
1.1k
2 days ago
libfido2 preview

libfido2

GitHubyubico/libfido2

Provides library functionality for FIDO2, including communication with a device over USB or NFC.

authenticationcryptographyhardware-security+2
7261 month ago
cryptodev-linux preview

cryptodev-linux

GitHubcryptodev-linux/cryptodev-linux

Linux kernel device driver providing user-space access to hardware cryptographic accelerators, enabling reuse of kernel-space ciphers for accelerated…

cryptographyencryption-decryption-toolshardware-iot-security+1
17011 months ago
You-re-Doing-IoT-RNG preview

You-re-Doing-IoT-RNG

GitHubbishopfox/you-re-doing-iot-rng

Results and device code from the DEF CON 29 presentation "You're Doing IoT RNG"

cryptographyeducationembedded-systems-security+4
55 years ago
legion preview

legion

GitHubdeadends/legion

Passwordless zero-knowledge authentication fabric using Halo2 PLONK proofs, hardware-bound device ring signatures, and BIP-39 recovery phrases for…

authenticationcryptographyhardware-security+3
108 months ago
ESPTouchCatcher preview

ESPTouchCatcher

GitHubsalgio/esptouchcatcher

eWeLinkESPT is a tool that automatically decodes and decrypts the WiFi network credentials transmitted to a supported ESP-based IoT device by the…

cryptographyexploitationhardware-iot-security+4
55 years ago
the-same-key-opens-every-box-cve-2026-71960-hard-coded-jwt-secret-in-cudy-wr3000-mesh-mqtt preview

the-same-key-opens-every-box-cve-2026-71960-hard-coded-jwt-secret-in-cudy-wr3000-mesh-mqtt

GitHubhunt-benito/the-same-key-opens-every-box-cve-2026-71960-hard-coded-jwt-secret-in-cudy-wr3000-mesh-mqtt

PoC toolkit that unpacks router firmware, decrypts device secrets, forges JWT tokens, and exploits CVE-2026-71960/71961 to take over Cudy WR3000 mesh…

authenticationcryptographyexploitation+4
4 days ago
CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth- preview

CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth-

GitHubgeorge0papasotiriou/cve-2026-11109-bluetooth-classic-knob-attack-key-negotiation-of-bluetooth-

Python simulation of the Bluetooth Classic KNOB attack, showing encryption key-size downgrade and brute-force decryption of intercepted Bluetooth…

bluetooth-securitycryptographyeducation+3
21 days ago
power_analysis preview

power_analysis

GitHublord-feistel/power_analysis

Proof-of-concept demonstrating a power analysis side-channel attack against a vulnerable RSA implementation on Arduino (Atmega328P), with detailed…

cryptographyeducationembedded-systems-security+2
322 years ago
CVE-2026-21009-ECDSA-Nonce-Reuse-in-IoT-Firmware-Signing preview

CVE-2026-21009-ECDSA-Nonce-Reuse-in-IoT-Firmware-Signing

GitHubgeorge0papasotiriou/cve-2026-21009-ecdsa-nonce-reuse-in-iot-firmware-signing

Educational Python simulation demonstrating ECDSA nonce reuse in IoT firmware signing, showing how an attacker can recover private keys from two…

cryptographyeducationexploitation+3
21 days ago
CVE-2026-29114 preview

CVE-2026-29114

GitHubcrimsonfiedofficial/cve-2026-29114

Detailed CVE-2026-29114 advisory for Dahua IPC certificate exposure vulnerability, including CVSS 4.0 scoring, technical analysis, exploitation…

cryptographyeducationhardware-security+3
11 month ago
ssh-audit preview

ssh-audit

GitHubjtesta/ssh-audit

SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

configuration-auditingcryptographyinformation-gathering+6
4.3k1 month ago
zupt preview
Archived

zupt

GitHubcristiancmoises/zupt

Backup compression with AES-256 authenticated encryption and post-quantum key encapsulation.

cryptographydata-exfiltrationdata-recovery+3
158 days ago
scapy preview

scapy

GitHubsecdev/scapy

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

bluetooth-securitycryptographydata-exfiltration+23
12.5k6 days ago
proxmark3 preview

proxmark3

GitHubrfidresearchgroup/proxmark3

Hardware tool for RFID analysis, emulation, and penetration testing. Supports 125kHz, 13.56MHz protocols (MIFARE, iClass, ISO14443/15693) with key…

bluetooth-securitycryptographyembedded-systems-security+11
6.0k10h 16m ago
pythoncode-tutorials preview

pythoncode-tutorials

GitHubx4nth055/pythoncode-tutorials

Curated collection of Python tutorials covering ethical hacking, network security, cryptography, and machine learning with hands-on code examples for…

bluetooth-securitycryptographyeducation+8
3.0k1 month ago
crackle preview

crackle

GitHubmikeryan/crackle

Exploits a BLE pairing flaw to brute-force the Temporary Key (TK) and decrypt encrypted Bluetooth Smart communications from captured PCAP files.

bluetooth-securitycryptographyencryption-decryption-tools+2
9695 years ago
knob preview

knob

GitHubfrancozappa/knob

Research repository demonstrating Key Negotiation Of Bluetooth (KNOB) attacks on Bluetooth BR/EDR and BLE, including PoC exploit code, E0 encryption…

bluetooth-securitycryptographyexploitation+3
1854 years ago
Previous12Next