Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
94 results
PoC preview

PoC

GitHubmcw0/poc

Publicly disclosed PoCs for IoT devices (IP cameras) focusing on authentication bypass, RCE, and stack overflow vulnerabilities.

binary-exploitationembedded-systems-securityexploitation+5
781
3 years ago
exploits preview

exploits

GitHubhackerhouse-opensource/exploits

Collection of proof-of-concept exploits covering local and remote code execution, privilege escalation, web application flaws, and mobile/embedded…

binary-exploitationcurated-resourcesembedded-systems-security+7
4706 months ago
pwn-hisilicon-dvr preview

pwn-hisilicon-dvr

GitHubtothi/pwn-hisilicon-dvr

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

binary-analysisembedded-systems-securityexploitation+8
3833 years ago
sagemcom-fast-3890-exploit preview

sagemcom-fast-3890-exploit

GitHublyrebirds/sagemcom-fast-3890-exploit

Exploit for Sagemcom F@ST 3890 cable modem implementing Cable Haunt vulnerability to achieve remote code execution via WebSocket-based buffer…

binary-exploitationembedded-systems-securityexploitation+4
2246 years ago
CVE-2022-30075 preview

CVE-2022-30075

GitHubaaronsvk/cve-2022-30075

Authenticated remote code execution exploit for Tp-Link Archer AX50 routers, leveraging backup file manipulation to inject commands and start a…

embedded-systems-securityexploitationhardware-security+3
2354 years ago
CVE-2021-4045 preview

CVE-2021-4045

GitHubhacefresko/cve-2021-4045

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera

binary-analysiscommand-and-controlembedded-systems-security+6
1181 year ago
PS4-webkit-exploit-6.XX preview

PS4-webkit-exploit-6.XX

GitHubsynacktiv/ps4-webkit-exploit-6.xx

Webkit exploit that give arbitrary R/W on 6.XX PS4 firmwares

binary-exploitationembedded-systems-securityexploitation+1
605 years ago
duckLogger preview

duckLogger

GitHubitsmmdoha/ducklogger

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

command-and-controldata-exfiltrationembedded-systems-security+8
874 months ago
CVE-2018-18852 preview

CVE-2018-18852

GitHubhook-s3c/cve-2018-18852

Authenticated remote code execution exploit for CERIO routers (DT300N, DT100G, AMR-3204, WMR-200N) using vendor default credentials. Python PoC…

embedded-systems-securityexploitationiot-security+4
457 years ago
DIR8xx_PoC preview

DIR8xx_PoC

GitHubembedi/dir8xx_poc

Proof-of-Concept exploits for D-Link DIR8xx routers

binary-exploitationembedded-systems-securityexploitation+3
378 years ago
CVE-2023-35086-POC preview

CVE-2023-35086-POC

GitHubtin-z/cve-2023-35086-poc

Proof-of-concept exploit for CVE-2023-35086, a format string vulnerability in ASUS router httpd service enabling remote code execution via crafted…

embedded-systems-securityexploitationfuzzing+3
443 years ago
FlashHax preview

FlashHax

GitHubfullmetal5/flashhax

An implementation of CVE-2016-0974 for the Nintendo Wii.

embedded-systems-securityexploitationhardware-iot-security+2
492 years ago
TP-Link-ArcherC5-RCE preview

TP-Link-ArcherC5-RCE

GitHubjackdoan/tp-link-archerc5-rce

Authenticated remote code execution exploit for TP-Link Archer C5 routers via malicious configuration file upload. Injects OS commands with root…

command-and-controlembedded-systems-securityexploitation+8
207 years ago
CVE-2020-36109-POC preview

CVE-2020-36109-POC

GitHubsunn1day/cve-2020-36109-poc

Proof-of-concept exploit for a buffer overflow vulnerability in ASUS RT-AX86U router firmware's httpd module, causing denial of service via crafted…

embedded-systems-securityexploitationfuzzing+3
174 years ago
CVE-2018-16119 preview

CVE-2018-16119

GitHubhdbreaker/cve-2018-16119

TP-Link TL-WR1043ND - Authenticated Remote Code Execution

educationembedded-systems-securityexploitation+6
161 year ago
watchTowr-vs-SonicWall-PreAuth-RCE-Chain preview

watchTowr-vs-SonicWall-PreAuth-RCE-Chain

GitHubwatchtowrlabs/watchtowr-vs-sonicwall-preauth-rce-chain

PoC exploit chain for pre-authentication remote code execution on SonicWall SMA 100 appliances exploiting CVE-2023-44221 and CVE-2024-38475.

embedded-systems-securityexploitationpenetration-testing+3
191 year ago
CVE-2020-10558 preview

CVE-2020-10558

GitHubnullze/cve-2020-10558

Documentation of CVE-2020-10558: a remote DoS vulnerability in Tesla Model S/3/X infotainment systems via crafted web pages, with technical analysis,…

educationembedded-systems-securityexploitation+4
156 months ago
CVE-2025-2620-poc preview

CVE-2025-2620-poc

GitHubotsmane-ahmed/cve-2025-2620-poc

Proof-of-concept exploit for CVE-2025-2620, a critical stack-based buffer overflow in D-Link DAP-1620 routers enabling unauthenticated remote code…

binary-exploitationembedded-systems-securityexploitation+8
161 year ago
Previous123456Next