Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
80 results
mdk4 preview

mdk4

GitHubaircrack-ng/mdk4

IEEE 802.11 Wi-Fi testing tool for protocol weakness exploitation, including beacon flooding, deauthentication, packet fuzzing, and IDS evasion.…

exploitationfuzzingids-ips-evasion+5
8124 months ago
ESPTouchCatcher preview

ESPTouchCatcher

GitHubsalgio/esptouchcatcher

eWeLinkESPT is a tool that automatically decodes and decrypts the WiFi network credentials transmitted to a supported ESP-based IoT device by the…

cryptographyexploitationhardware-iot-security+4
55 years ago
esp32-wifi-penetration-tool preview

esp32-wifi-penetration-tool

GitHubrisinek/esp32-wifi-penetration-tool

Exploring possibilities of ESP32 platform to attack on nearby Wi-Fi networks.

educationexploitationhardware-hacking+6
3.1k3 years ago
Apple-Remote-Crash-Tool-CVE-2018-4407 preview

Apple-Remote-Crash-Tool-CVE-2018-4407

GitHubanonymouz4/apple-remote-crash-tool-cve-2018-4407

Crashes any macOS High Sierra or iOS 11 device that is on the same WiFi network

exploitationnetwork-securitypenetration-testing+3
47 years ago
reaver-wps-fork-t6x preview

reaver-wps-fork-t6x

GitHubt6x/reaver-wps-fork-t6x

Brute-force attack tool against WPS registrar PINs to recover WPA/WPA2 passphrases, supporting online brute force and offline Pixie Dust attacks on…

exploitationpassword-attackswi-fi-auditing+1
2.0k11 months ago
KTO preview

KTO

GitHubymsniper/kto

Automated Wi-Fi deauthentication tool that continuously scans for clients on a target SSID and kicks non-whitelisted devices. Features whitelist…

exploitationids-ips-evasionnetwork-security+4
26815 days ago
CVE-2020-28148 preview

CVE-2020-28148

GitHubfengchenzxc/cve-2020-28148

Wi-Fi portal authentication bypass exploit using MAC address spoofing to gain unauthorized network access, demonstrated on enterprise AC and AP…

authentication-authorizationexploitationnetwork-security+4
174 years ago
CVE-2022-43704 preview

CVE-2022-43704

GitHub9lyph/cve-2022-43704

Sinilink XY-WFTX Wifi Remote Thermostat Module Temperature Controller

authentication-authorizationembedded-systems-securityexploitation+7
52 years ago
fragattacks preview

fragattacks

GitHubvanhoefm/fragattacks

Automated vulnerability tester for Wi-Fi clients and access points, detecting FragAttacks fragmentation/aggregation flaws through frame injection,…

exploitationnetwork-securitypenetration-testing+3
1.3k1 year ago
pinecone preview

pinecone

GitHubpinecone-wifi/pinecone

Modular WLAN auditing framework for red teams with deauthentication, rogue AP, and WPA handshake capture modules. Features a Metasploit-like CLI for…

exploitationinformation-gatheringpenetration-testing+3
1637 months ago
radio-hackbox preview

radio-hackbox

GitHubsyss-research/radio-hackbox

PoC tool to demonstrate vulnerabilities in wireless input devices

exploitationhardware-iot-securitywireless-security
919 years ago
nrf24-injection preview

nrf24-injection

GitHubxswxm/nrf24-injection

A tool set for sniffing devices and launching attacks with Crazyradio

exploitationhardware-hackingpenetration-testing+1
188 years ago
CVE-2026-77812 preview

CVE-2026-77812

GitHubwh02m1/cve-2026-77812

Proof-of-concept that passively sniffs cleartext BLE DUML traffic from DJI drones to recover Wi-Fi PSK and trusted session UUIDs, demonstrating…

bluetooth-securityexploitationhardware-iot-security+4
113 days ago
Komfy-Switch-Wifi-Password-Disclosure preview

Komfy-Switch-Wifi-Password-Disclosure

GitHubjasondoyle/komfy-switch-wifi-password-disclosure

Proof-of-concept and writeup showing how to retrieve Wi-Fi SSID/password from a D-Link Komfy smart switch over BLE by reversing the iOS app’s custom…

bluetooth-securityexploitationiot-security+3
19 years ago
mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce preview

mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

GitHubhunt-benito/mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

Proof-of-concept exploit for CVE-2026-20452, a heap-based buffer overflow in MediaTek WLAN AP drivers. Uses scapy to send crafted Wi-Fi management…

binary-exploitationeducationembedded-systems-security+5
33 months ago
webkit-vulnerability preview

webkit-vulnerability

GitHubviai957/webkit-vulnerability

CVE-2016-4657 web-kit vulnerability for ios 9.3, nintendo switch browser vulnerability

binary-exploitationexploitationios-security+3
97 years ago
AirStrike preview

AirStrike

GitHubmahmoud-sadder/airstrike

AirStrike is an advanced wireless security assessment framework designed to simplify and enhance Wi-Fi penetration testing through an integrated,…

exploitationnetwork-securitypenetration-testing+3
42 months ago
CVE-2026-78306 preview

CVE-2026-78306

GitHubwh02m1/cve-2026-78306

Proof-of-concept exploiting DJI drone Bluetooth DUML command injection, sending unauthenticated commands to read credentials, alter Wi-Fi config, and…

bluetooth-securityembedded-systems-securityexploitation+6
177 days ago
Previous12345Next