Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
16 results
gustave preview

gustave

GitHubairbus-seclab/gustave

GUSTAVE is a fuzzing platform for embedded OS kernels. It is based on QEMU and AFL (and all of its forkserver siblings). It allows to fuzz OS kernels…

binary-analysisembedded-systems-securityfuzzing
2035 years ago
mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce preview

mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

GitHubhunt-benito/mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

Proof-of-concept exploit for CVE-2026-20452, a heap-based buffer overflow in MediaTek WLAN AP drivers. Uses scapy to send crafted Wi-Fi management…

binary-exploitationeducationembedded-systems-security+5
32 months ago
unicorn preview

unicorn

GitHubunicorn-engine/unicorn

Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)

ai-assisted-reversingbinary-analysisbinary-exploitation+7
9.3k6 months ago
ghidralligator preview

ghidralligator

GitHubairbus-cyber/ghidralligator

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

binary-analysisdynamic-analysis-sandboxingembedded-systems-security+3
3312 years ago
umap2 preview

umap2

GitHubnccgroup/umap2

Umap2 is the second revision of NCC Group's python based USB host security assessment tool.

dynamic-analysis-sandboxingembedded-systems-securityfuzzing+4
2824 years ago
FrisbeeLite preview

FrisbeeLite

GitHubnccgroup/frisbeelite

A GUI-based USB device fuzzer

dynamic-analysis-sandboxingembedded-systems-securityfuzzing+2
658 years ago
CVE-2026-26399-Disclosure preview

CVE-2026-26399-Disclosure

GitHubacen28/cve-2026-26399-disclosure

Disclosure of a stack-based use-after-return vulnerability in Arduino_Core_STM32, detailing technical root cause, affected versions, and fix, with…

embedded-systems-securityfuzzinghardware-iot-security+1
14 months ago
ESP-RFID-Tool preview

ESP-RFID-Tool

GitHubrfidtool/esp-rfid-tool

A tool for logging data/testing devices with a Wiegand Interface. Can be used to create a portable RFID reader or installed directly into an existing…

embedded-systems-securityfuzzinghardware-hacking+5
5823 years ago
uniFuzzer preview

uniFuzzer

GitHubpagalaxylab/unifuzzer

A fuzzing tool for closed-source binaries based on Unicorn and LibFuzzer

binary-analysisembedded-systems-securityfuzzing+1
3467 years ago
CVE-2025-40634 preview

CVE-2025-40634

GitHubhacefresko/cve-2025-40634

Exploit for stack-based buffer overflow found in the conn-indicator binary in the TP-Link Archer AX50 router

binary-exploitationembedded-systems-securityexploitation+5
3110 months ago
CECster preview

CECster

GitHubnccgroup/cecster

A GUI-based tool to perform security testing against the HDMI CEC (Consumer Electronics Control) and HEC (HDMI Ethernet Channel) protocols

embedded-systems-securityfuzzinghardware-security+3
3112 years ago
libmsm_acdb_exploit preview

libmsm_acdb_exploit

GitHubfi01/libmsm_acdb_exploit

Exploit for CVE-2013-2597, a stack-based buffer overflow in the Qualcomm ACDB audio driver, enabling privilege escalation on affected Android devices.

binary-exploitationembedded-systems-securityexploitation+2
1212 years ago
lwip-snmpv3-stack-overflow-cve-2026-8836-critical-embedded-rce preview

lwip-snmpv3-stack-overflow-cve-2026-8836-critical-embedded-rce

GitHubhunt-benito/lwip-snmpv3-stack-overflow-cve-2026-8836-critical-embedded-rce

CVE-2026-8836 — lwIP SNMPv3 stack-based buffer overflow PoC (CVSS 9.8)

binary-exploitationembedded-systems-securityexploitation+4
2 months ago
fips203 preview

fips203

GitHubnccgroup/fips203

Pure Rust implementation of (draft) FIPS 203 Module-Lattice-based Key-Encapsulation Mechanism Standard for server, desktop, browser and embedded…

cryptographyembedded-systems-securityencryption-decryption-tools
192 years ago
accfly preview

accfly

GitHubtezeb/accfly

Disclosure of Accfly camera vulnerabilities: CVE-2020-25782, CVE-2020-25783, CVE-2020-25784, CVE-2020-25785.

binary-exploitationembedded-systems-securityexploitation+6
35 years ago
CVE-2025-63667 preview

CVE-2025-63667

GitHubremenis/cve-2025-63667

Vatilon-based IP camera firmwares issue Session-Id tokens without verifying credentials, allowing attackers to obtain sessions and retrieve plaintext…

api-securityauthenticationembedded-systems-security+4
19 months ago