Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
143 results
AutoPiff preview

AutoPiff

GitHubsplintersfury/autopiff

Semantic analysis engine for detecting vulnerability fixes in Windows kernel driver patches — 58 YAML rules, Ghidra decompilation, reachability…

binary-analysisexploitationfirmware-analysis+4
67
7 months ago
CVE-2019-10915 preview

CVE-2019-10915

GitHubjiansiting/cve-2019-10915

Proof-of-concept exploit for CVE-2019-10915 targeting an authentication bypass in Siemens TIA Administrator, enabling remote command execution via…

authentication-authorizationexploitationfirmware-analysis+3
47 years ago
CVE-2026-79298 preview

CVE-2026-79298

GitHubthemalwareguardian/cve-2026-79298

Research repository documenting CVE-2026-79298, an incomplete UEFI Secure Boot bypass remediation in Howyar SysReturn's IA-32 boot path, with reverse…

binary-analysisexploitationfirmware-analysis+4
226 days ago
CVE-2026-73673 preview

CVE-2026-73673

GitHubozcanpng/cve-2026-73673

Non-destructive PoC and technical write-up for CVE-2026-73673, an unauthenticated firmware-update flaw in Netis NC63 router, with reproduction and…

authentication-authorizationembedded-systems-securityexploitation+3
31 month ago
CVE-2026-15469 preview

CVE-2026-15469

GitHubtony102741/cve-2026-15469

Advisory and technical analysis of CVE-2026-15469, a hard-coded RSA-512 mesh group private key in TP-Link Deco routers, including root cause, impact,…

authenticationcryptographyexploitation+5
21 month ago
CVE-2024-0762 preview

CVE-2024-0762

GitHubabandon1337/cve-2024-0762

Proof-of-concept exploit for CVE-2024-0762, a buffer overflow vulnerability in UEFI firmware, demonstrating exploitation techniques for security…

binary-exploitationexploitationfirmware-analysis+3
1 year ago
skitter-creek-bath-salts preview

skitter-creek-bath-salts

GitHubxoreaxeaxeax/skitter-creek-bath-salts

Unlocking _everything_ on the CPU with DRAM scrambling

exploitationfirmware-analysishardware-hacking+3
2.1k1 month ago
CVE-2025-70962 preview

CVE-2025-70962

GitHubnamaek2/cve-2025-70962

CVE-2025-70962 PoC

exploitationfirmware-analysishardware-iot-security+3
2 months ago
CVE-2021-26258 preview

CVE-2021-26258

GitHubzwclose/cve-2021-26258

Files and tools for CVE-2021-26258

exploitationfirmware-analysismalware-analysis+3
33 years ago
CVE-2024-1781 preview

CVE-2024-1781

GitHubicycu123/cve-2024-1781

CVE-2024-1781

exploitationfirmware-analysishardware-iot-security+2
2 years ago
idasql preview

idasql

GitHuballthingsida/idasql

Vibe Reverse Engineer with IDA SQL: An interface for IDA in SQL via live virtual tables

ai-assisted-reversingbinary-analysisdebuggers+4
4112 months ago
kaiju preview

kaiju

GitHubcmu-sei/kaiju

CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- please file…

binary-analysisfirmware-analysismalware-analysis+2
1477 months ago
cpu_rec_rs preview

cpu_rec_rs

GitHubtrou/cpu_rec_rs

Determine which CPU architecture is used in a binary file.

binary-analysisembedded-systems-securityfirmware-analysis+2
1295 months ago
usbsnoop preview

usbsnoop

GitHubyeet-src/usbsnoop

Live, system-wide USB transfer sniffer in eBPF — decodes USB traffic inline (control SETUP, SCSI, HID) from two universal URB hooks. No usbmon, no…

debuggersdynamic-analysis-sandboxingembedded-systems-security+7
871 month ago
CVE-2026-3227-TP-Link-authenticated-RCE preview

CVE-2026-3227-TP-Link-authenticated-RCE

GitHubdo4choo/cve-2026-3227-tp-link-authenticated-rce

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

binary-exploitationeducationexploitation+6
433 months ago
vulns-2026-fatfs-chance preview

vulns-2026-fatfs-chance

GitHubrunzeroinc/vulns-2026-fatfs-chance

Documented security vulnerabilities in the FatFs embedded filesystem library with CVE details, fuzzing harness, exploit disk-image generator, and…

binary-analysiseducationembedded-systems-security+8
412 months ago
die-in-browser preview

die-in-browser

GitHubxoreaxlmbdx/die-in-browser

Static binary analysis with Detect It Easy — 100% in your browser, no uploads.

binary-analysisfirmware-analysishash-analysis+3
702 months ago
yamaha-smaf-player preview

yamaha-smaf-player

GitHubakustikrausch/yamaha-smaf-player

A dependency-free C++ PLAYER for Yamaha SMAF (.mmf) ringtones: the polyphonic-ringtone format of the 2000s MA-3 / MA-5 phone chips, rebuilt with its…

embedded-systems-securityfirmware-analysishardware-security+1
703 months ago
Previous1…456…8Next