Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
284 results
ShadeBIOS preview

ShadeBIOS

GitHubffri/shadebios

PoC code of Shade BIOS (stripped) presented at Black Hat USA 2025

binary-analysiseducationembedded-systems-security+5
68
1 year ago
Starlink-FI preview

Starlink-FI

GitHubkuleuven-cosic/starlink-fi

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

binary-analysisembedded-systems-securityexploitation+4
1.0k3 years ago
qualcomm_baseband_scripts preview

qualcomm_baseband_scripts

GitHubmzakocs/qualcomm_baseband_scripts

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware

binary-analysisembedded-systems-securityfirmware-analysis+2
1933 years ago
CVE-2023-33768 preview

CVE-2023-33768

GitHubpurseclab/cve-2023-33768

DoS against Belkin smart plugs via crafted firmware injection

android-securityexploitationfirmware-analysis+4
13 years ago
CVE-2023-33768 preview

CVE-2023-33768

GitHubfr0stm0urne/cve-2023-33768

DoS against Belkin smart plugs via crafted firmware injection

exploitationfirmware-analysishardware-iot-security+2
13 years ago
Sensitive-Information-disclosure-via-SPI-flash-firmware-for-Hathway-router-CVE-2024-46383 preview

Sensitive-Information-disclosure-via-SPI-flash-firmware-for-Hathway-router-CVE-2024-46383

GitHubnitinronge91/sensitive-information-disclosure-via-spi-flash-firmware-for-hathway-router-cve-2024-46383

CVE-2024-46383

embedded-systems-securityexploitationfirmware-analysis+6
1 year ago
CVE-2023-6241-Pixel7_Adaptation preview

CVE-2023-6241-Pixel7_Adaptation

GitHubilgobbo00/cve-2023-6241-pixel7_adaptation

Adaptation of CVE-2023-6241 for Google Pixel 7 from Google Pixel 8 taken from securitylab/SecurityExploits/Android/Mali/CVE_2023_6241

android-securitybinary-exploitationdebuggers+5
151 year ago
cve-2023-31346-poc preview

cve-2023-31346-poc

GitHubfreax13/cve-2023-31346-poc

Proof-of-concept demonstrating memory leaks in AMD SEV-SNP firmware guest message headers and CPUID request, enabling extraction of sensitive guest…

binary-exploitationexploitationfirmware-analysis+3
13 years ago
super-tart-vphone-writeup preview

super-tart-vphone-writeup

GitHubwh1te4ever/super-tart-vphone-writeup

Guide to building a virtual iPhone using VPHONE600AP components from Apple's PCC firmware, with firmware patching, bootchain modification, and kernel…

binary-exploitationdebuggersexploitation+7
1.2k6 months ago
rpef preview

rpef

GitHubmncoppola/rpef

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

embedded-systems-securityexploitationfirmware-analysis+6
12412 years ago
fitness-app preview

fitness-app

GitHubseemoo-lab/fitness-app

BLE-based Fitbit research tool for authentication replay, encrypted activity dump decryption, memory/firmware extraction, and custom firmware…

bluetooth-securityembedded-systems-securityexploitation+5
797 years ago
cve-2015-1187-dir820l-firmware-reverse-engineering preview

cve-2015-1187-dir820l-firmware-reverse-engineering

GitHubchristopher-leese/cve-2015-1187-dir820l-firmware-reverse-engineering

Static firmware reverse engineering of CVE-2015-1187: unauthenticated command injection in D-Link DIR-820L. MIPS root filesystem extraction with…

embedded-systems-securityexploitationfirmware-analysis+5
13 days ago
routerfirmwares preview

routerfirmwares

Bitbucketdudux/routerfirmwares

A bunch of routers firmware images. Principally those that are not available and they do need to be extracted via JTAG, UART, desoldering flash or…

curated-resourcesembedded-systems-securityfirmware-analysis+2
11 years ago
CVE-2022-22063 preview

CVE-2022-22063

GitHubmsm8916-mainline/cve-2022-22063

Security issue in the hypervisor firmware of some older Qualcomm chipsets

binary-exploitationeducationembedded-systems-security+6
463 years ago
owasp-istg preview

owasp-istg

GitHubowasp/owasp-istg

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

curated-resourceseducationembedded-systems-security+9
1291 month ago
IIITA-IoT-Security-Research preview

IIITA-IoT-Security-Research

GitHubivmks74/iiita-iot-security-research

IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note…

digital-forensicsembedded-systems-securityfirmware-analysis+4
1 month ago
CVE-2022-20607 preview

CVE-2022-20607

GitHubsumeetit/cve-2022-20607

In the Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with…

android-securityembedded-systems-securityexploitation+3
3 years ago
CVE-2024-22894 preview

CVE-2024-22894

GitHubjaarden/cve-2024-22894

Proof-of-concept exploit for CVE-2024-22894, demonstrating 3DES-encrypted root password extraction from Alpha Innotec/Novelan heatpump firmware,…

cryptographyembedded-systems-securityexploitation+6
32 years ago
Previous1234…16Next