Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
300 results
CVE-2022-24693 preview

CVE-2022-24693

GitHublukejenkins/cve-2022-24693

Documentation and reproduction steps for CVE-2022-24693: hardcoded credentials in Baicells Nova436Q and Neutrino 430 firmware, enabling remote SSH…

embedded-systems-securityexploitationfirmware-analysis+6
3
1 year ago
CVE-2022-40363 preview

CVE-2022-40363

GitHubolafdaf/cve-2022-40363

A buffer overflow in the component nfc_device_load_mifare_ul_data of Flipper Devices Inc., Flipper Zero before v0.65.2 allows attackers to cause a…

binary-analysisembedded-systems-securityexploitation+3
53 years ago
zephyr-lwm2m-firmware-update-oob-read-cve-2026-10672-truncated-package-uri preview

zephyr-lwm2m-firmware-update-oob-read-cve-2026-10672-truncated-package-uri

GitHubhunt-benito/zephyr-lwm2m-firmware-update-oob-read-cve-2026-10672-truncated-package-uri

Proof-of-concept exploit for CVE-2026-10672, an out-of-bounds read in Zephyr RTOS LwM2M firmware-update pull client. Includes standalone C…

binary-exploitationeducationembedded-systems-security+5
1 month ago
CVE-2025-29338 preview

CVE-2025-29338

GitHubmasjadaan/cve-2025-29338

Technical advisory and proof-of-concept for a stack-based buffer overflow (CWE-121) in the NXP moal.ko Wi-Fi kernel driver, enabling local kernel…

binary-exploitationembedded-systems-securityexploitation+2
33 months ago
CVE-2017-13672 preview

CVE-2017-13672

GitHubdavidbuchanan314/cve-2017-13672

POCs for CVE-2017-13672 (OOB read in VGA Cirrus QEMU driver, causing DoS)

binary-analysisembedded-systems-securityexploitation+3
38 years ago
T3-Technology-CPE-Advisories preview

T3-Technology-CPE-Advisories

GitHubpwnonu/t3-technology-cpe-advisories

CVE-2026-35904 / CVE-2026-35905 / CVE-2026-35906 — Unauth RCE, Hardcoded Root Creds & Telnet Enable in T3 Technology CPE

embedded-systems-securityexploitationhardware-security+5
2 months ago
CVE-2026-36522 preview

CVE-2026-36522

GitHubdeepwoodssec/cve-2026-36522

Proof-of-concept exploit for CVE-2026-36522: unauthenticated NaN injection via MAVLink PARAM_SET in ArduPilot ArduPlane, causing DoS or silent…

embedded-systems-securityexploitationfuzzing+3
2 months ago
CVE-2025-63821 preview

CVE-2025-63821

GitHubxernary/cve-2025-63821

Proof-of-concept of vulnerability found in Totolink A720R router

embedded-systems-securityexploitationfirmware-analysis+3
2 months ago
POC-CVE-2025-31931 preview

POC-CVE-2025-31931

GitHubyohanes/poc-cve-2025-31931

Proof-of-concept exploit for CVE-2025-31931 demonstrating arbitrary shared library loading in Intel ITT API on Android, affecting OpenCV 4.10.

android-securitybinary-exploitationembedded-systems-security+3
49 months ago
cve-2015-1187-dir820l-firmware-reverse-engineering preview

cve-2015-1187-dir820l-firmware-reverse-engineering

GitHubchristopher-leese/cve-2015-1187-dir820l-firmware-reverse-engineering

Static firmware reverse engineering of CVE-2015-1187: unauthenticated command injection in D-Link DIR-820L. MIPS root filesystem extraction with…

embedded-systems-securityexploitationfirmware-analysis+5
1 month ago
Ripple20 preview

Ripple20

GitHubransc0rp1on/ripple20

This comprehensive package contains everything needed to detect, analyze, and remediate Ripple20 (CVE-2020-11898) vulnerabilities in your…

embedded-systems-securityfirmware-analysisiot-security+3
1 month ago
PX4-Military-UAV-Autopilot-1.12.3-Stack-Buffer-Overflow-Exploit-CVE-2025-5640- preview

PX4-Military-UAV-Autopilot-1.12.3-Stack-Buffer-Overflow-Exploit-CVE-2025-5640-

GitHubmbanyamer/px4-military-uav-autopilot-1.12.3-stack-buffer-overflow-exploit-cve-2025-5640-

Proof-of-concept exploit for CVE-2025-5640, a stack buffer overflow in PX4 Military UAV Autopilot <=1.12.3. Sends crafted MAVLink packets to trigger…

binary-exploitationembedded-systems-securityexploitation+3
41 year ago
CVE-2026-75616 preview

CVE-2026-75616

GitHubtotekuh/cve-2026-75616

Proof-of-concept exploit for authenticated OS command injection in TP-Link Archer C20 v6 web management interface, executing root commands via BPA…

embedded-systems-securityexploitationiot-security+1
10 days ago
doggie_workshop preview

doggie_workshop

GitHubinfobyte/doggie_workshop

CAN Bus vehicle simulator for practicing offensive automotive security attacks. Emulates multiple ECUs to enable sniffing, injection, and…

educationembedded-systems-securityfuzzing+4
21 year ago
CVE-2024-29973 preview

CVE-2024-29973

GitHubkernel364/cve-2024-29973

Proof-of-concept exploit for command injection vulnerability in Zyxel NAS devices. Demonstrates arbitrary command execution via crafted HTTP…

data-exfiltrationembedded-systems-securityexploitation+3
21 year ago
samsung-exynos-sms-stack-overflow-cve-2025-54328-critical-zero-click-baseband-rce preview

samsung-exynos-sms-stack-overflow-cve-2025-54328-critical-zero-click-baseband-rce

GitHubhunt-benito/samsung-exynos-sms-stack-overflow-cve-2025-54328-critical-zero-click-baseband-rce

Conceptual PoC for CVE-2025-54328, a critical zero-click stack buffer overflow in Samsung Exynos baseband firmware's SMS RP-DATA parser, enabling…

binary-exploitationeducationembedded-systems-security+5
12 months ago
CVE-2026-56111 preview

CVE-2026-56111

GitHubchristbowel/cve-2026-56111

Proof-of-concept exploit for CVE-2026-56111, an out-of-bounds write in the M421 G-code handler of Marlin Firmware, demonstrating constrained memory…

binary-exploitationembedded-systems-securityexploitation+3
12 months ago
Quiksand-CVE-2023-24012 preview

Quiksand-CVE-2023-24012

GitHubsafelock-d2e/quiksand-cve-2023-24012

Proof-of-concept demonstrating a permission bypass in ROS 2 SROS2 security framework, allowing unauthorized topic subscription via modified…

embedded-systems-securityexploitationiot-security+3
26 months ago
Previous1…456…17Next