Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
53 results
sonos preview

sonos

GitHubblasty/sonos

Exploit and tooling for Amlogic-based Sonos devices: dumps OTP/eFUSE via an EL3 exploit, extracts LUKS decryption keys, and fetches/decrypts OTA…

embedded-systems-securityencryption-decryption-toolsexploitation+5
64
3 years ago
dconstruct preview

dconstruct

GitHubdeepquantum/dconstruct

A disassembler & experimental decompiler for TLOU2 DC Scripts.

binary-analysisdebuggersfirmware-analysis+2
2323 days ago
sonicrack preview

sonicrack

GitHubbishopfox/sonicrack

Decrypt encrypted SonicOSX firmware images

embedded-systems-securityencryption-decryption-toolsfirmware-analysis+1
251 year ago
netgear_r6700v3_circled preview

netgear_r6700v3_circled

GitHubcyber-defence-campus/netgear_r6700v3_circled

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

binary-exploitationeducationembedded-systems-security+4
81 year ago
Tenda-F3-V4 preview

Tenda-F3-V4

GitHub4d000/tenda-f3-v4

Python script to exploit CVE-2020-35391 on Tenda F3 V3/V4 routers, enabling unauthorized download of configuration, flash, and syslog files.

embedded-systems-securityexploitationfirmware-analysis+4
311 months ago
Watchguard_WebUI_Unpacker preview

Watchguard_WebUI_Unpacker

GitHubret5et/watchguard_webui_unpacker

Watchguard Sysa-dl file format

binary-analysisembedded-systems-securityfirmware-analysis+2
32 years ago
RMASmoke preview

RMASmoke

GitHubfwnavy/rmasmoke

RMASmoke main repo. CVE-2025-1122

binary-exploitationembedded-systems-securityexploitation+3
22 years ago
embark preview

embark

GitHube-m-b-a/embark

Centralized firmware scanning and reporting platform with a web UI, REST API, and automated analysis workflows for securing embedded/IoT devices.

embedded-systems-securityfirmware-analysishardware-iot-security+3
39428 days ago
tplink-smartplug preview

tplink-smartplug

GitHubsoftscheck/tplink-smartplug

TP-Link WiFi SmartPlug Client and Wireshark Dissector

encryption-decryption-toolsfirmware-analysishardware-iot-security+6
1.2k1 year ago
aeota preview

aeota

GitHubdhinakg/aeota

AEA OTA/IPSW decryption

cryptographyencryption-decryption-toolsfirmware-analysis+2
3101 year ago
CVE-2026-73673 preview

CVE-2026-73673

GitHubozcanpng/cve-2026-73673

Non-destructive PoC and technical write-up for CVE-2026-73673, an unauthenticated firmware-update flaw in Netis NC63 router, with reproduction and…

authentication-authorizationembedded-systems-securityexploitation+3
315 days ago
CVE-2019-10915 preview

CVE-2019-10915

GitHubjiansiting/cve-2019-10915

Proof-of-concept exploit for CVE-2019-10915 targeting an authentication bypass in Siemens TIA Administrator, enabling remote command execution via…

authentication-authorizationexploitationfirmware-analysis+3
47 years ago
cve-2023-31355-poc preview

cve-2023-31355-poc

GitHubfreax13/cve-2023-31355-poc

Exploit for AMD SEV-SNP firmware vulnerability (CVE-2023-31355) that decrypts arbitrary memory of decommissioned guests by corrupting the UMC key…

binary-exploitationencryption-decryption-toolsexploitation+4
82 years ago
CVE-2024-54085 preview

CVE-2024-54085

GitHubmr-zapi/cve-2024-54085

Just poc for CVE 2024-54085

authentication-authorizationembedded-systems-securityexploitation+5
21 year ago
CVE-2024-55211 preview

CVE-2024-55211

GitHubmicaelmaciel/cve-2024-55211

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

authentication-authorizationdns-analysisexploitation+3
210 months ago
CVE-2024-33676 preview

CVE-2024-33676

GitHubdersecure/cve-2024-33676

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

authentication-authorizationeducationembedded-systems-security+9
1 year ago
CVE-2020-10759-poc preview

CVE-2020-10759-poc

GitHubjustinsteven/cve-2020-10759-poc

Proof of Concept for CVE-2020-10759 (fwupd signature validation bypass)

encryption-decryption-toolsexploitationfirmware-analysis+2
6 years ago
Previous123Next