Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
95 results
awind-research preview

awind-research

GitHubqkaiser/awind-research

This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

embedded-systems-securityexploitationhardware-iot-security+5
13
5 years ago
shining-mask preview

shining-mask

GitHubbishopfox/shining-mask

BLE-based tool that automatically discovers and exploits Shining LED Masks by uploading a custom image without user interaction, proving security…

bluetooth-securityeducationembedded-systems-security+5
1210 months ago
netgear_r6700v3_circled preview

netgear_r6700v3_circled

GitHubcyber-defence-campus/netgear_r6700v3_circled

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

binary-exploitationeducationembedded-systems-security+4
81 year ago
routeros-CVE-2018-14847-bytheway preview

routeros-CVE-2018-14847-bytheway

GitHubbabyshen/routeros-cve-2018-14847-bytheway

By the Way is an exploit that enables a root shell on Mikrotik devices running RouterOS versions:

embedded-systems-securityexploitationiot-security+3
43 years ago
Zhilly preview

Zhilly

GitLabsacriphanius/zhilly

🛡️ AI-powered portable cybersecurity & pentesting assistant built on ESP32-S3 (LilyGO T-Embed CC1101 & T-Watch S3). Features voice-controlled RF…

embedded-systems-securityhardware-hackingiot-security+6
11 month ago
IvantiInitrdDecryptor preview

IvantiInitrdDecryptor

GitHubwatchtowrlabs/ivantiinitrddecryptor

A tool for decrypting Ivanti device initrd images by reverse-engineering the kernel's bzImage to locate and use the embedded AES key.

cryptographyembedded-systems-securityfirmware-analysis+1
42 years ago
CVE-2022-40363 preview

CVE-2022-40363

GitHubolafdaf/cve-2022-40363

A buffer overflow in the component nfc_device_load_mifare_ul_data of Flipper Devices Inc., Flipper Zero before v0.65.2 allows attackers to cause a…

binary-analysisembedded-systems-securityexploitation+3
53 years ago
dinkleberry preview

dinkleberry

GitHubaliask/dinkleberry

Patch your D-Link device affected by CVE-2024-3272

binary-analysisembedded-systems-securityexploitation+4
31 year ago
CVE-2024-36821 preview

CVE-2024-36821

GitHubivanglinkin/cve-2024-36821

The public reference that contains the minimum require information for the vulnerability covered by CVE-2024-36821

embedded-systems-securityexploitationhardware-iot-security+3
32 years ago
buds-audit preview

buds-audit

GitHubspiritualmachines/buds-audit

No-dongle, no-root Bluetooth security assessment tool for wireless earbuds affected by the Airoha SDK vulnerability chain (CVE-2025-20700/20701/20702)

bluetooth-securityembedded-systems-securityexploitation+8
11 month ago
tapo-c260-rce preview

tapo-c260-rce

GitHubl0lsec/tapo-c260-rce

PoC exploit chain for TP-Link Tapo C260 camera — CVE-2026-0651/0652/0653. Research by @spaceraccoon.

command-and-controlembedded-systems-securityexploitation+7
16 months ago
PoC_CVE-2025-48507 preview

PoC_CVE-2025-48507

GitHubjdbonfils/poc_cve-2025-48507

Proof of Concept of CVE-2025-48507. The security flaw can be leveraged by Non-Secure software (e.g., Linux) to break Trust Zone and gain access to…

binary-exploitationembedded-systems-securityexploitation+5
29 months ago
NXLoader preview

NXLoader

GitHubresi-le/nxloader

An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

embedded-systems-securityexploitationhardware-hacking+2
18 months ago
Poc preview

Poc

GitHubspiralbl0ck/poc

Idk Figure it out by name fuck you L$user

binary-exploitationembedded-systems-securityexploitation+2
11 year ago
CVE-2023-40289 preview

CVE-2023-40289

GitHubs-hamann/cve-2023-40289

Exploit for CVE-2023-40289, a command injection vulnerability in several Baseband Management Controllers (BMC) by with firmware by ATEN

command-and-controlembedded-systems-securityexploitation+3
111 months ago
MIPS-CVE-2014-9222 preview

MIPS-CVE-2014-9222

GitHubmercul1ninna/mips-cve-2014-9222

Lets have fun by digging into a Zyxel router firmware and MIPS Arch

binary-analysiseducationembedded-systems-security+5
7 years ago
MIPS-CVE-2014-9222 preview

MIPS-CVE-2014-9222

GitHubdonfanning/mips-cve-2014-9222

Lets have fun by digging into a Zyxel router firmware and MIPS Arch

binary-analysiseducationembedded-systems-security+5
7 years ago
routerfirmwares preview

routerfirmwares

Bitbucketdudux/routerfirmwares

A bunch of routers firmware images. Principally those that are not available and they do need to be extracted via JTAG, UART, desoldering flash or…

curated-resourcesembedded-systems-securityfirmware-analysis+2
11 years ago
Previous123456Next