Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
24 results
reverse-skill preview

reverse-skill

GitHubzhaoxuya520/reverse-skill

AI-powered skill router pack for reverse engineering, penetration testing, and security research. Routes AI agents to correct methodologies and…

ai-securitybinary-analysisctf+8
27.5k
1 day ago
blackbox-fuzzing preview

blackbox-fuzzing

GitHubotsmr/blackbox-fuzzing

Fuzzing IoT Devices Using the Router TL-WR902AC as Example

binary-analysiseducationexploitation+6
1329 months ago
Sweet-Pineapple-Builder preview

Sweet-Pineapple-Builder

GitLab0xsamy/sweet-pineapple-builder

Build your own custom WiFi Pineapple Tetra firmware tailored to any based MIPS 24Kc architecture router. (WiFi Pineapple Tetra DIY)

embedded-systems-securityfirmware-analysishardware-security+4
393 years ago
CVE-2026-73673 preview

CVE-2026-73673

GitHubozcanpng/cve-2026-73673

Non-destructive PoC and technical write-up for CVE-2026-73673, an unauthenticated firmware-update flaw in Netis NC63 router, with reproduction and…

authentication-authorizationembedded-systems-securityexploitation+3
29 days ago
Linksys-WRT54GL-Exploitation preview

Linksys-WRT54GL-Exploitation

GitHubumbertodellamonica/linksys-wrt54gl-exploitation

From Solder to Shell: Full Hardware Exploitation of the Linksys WRT54GL Router (CVE-2022-43973)

binary-analysisdebuggerseducation+9
23 months ago
CVE-2019-17147_Practice_Material preview

CVE-2019-17147_Practice_Material

GitHubdrmnsamoliu/cve-2019-17147_practice_material

This repo contains dumped flash partitions with firmware version vulnerable to CVE-2019-17147, and some useful binaries to downgrade and debug your…

binary-analysisdebuggerseducation+6
44 years ago
CVE-2025-63821 preview

CVE-2025-63821

GitHubxernary/cve-2025-63821

Proof-of-concept of vulnerability found in Totolink A720R router

embedded-systems-securityexploitationfirmware-analysis+3
2 months ago
cve-2026-34473-unauthenticated-dos-zte-routers preview

cve-2026-34473-unauthenticated-dos-zte-routers

GitHubminanagehsalalma/cve-2026-34473-unauthenticated-dos-zte-routers

Technical breakdown of CVE-2026-34473, an unauthenticated denial of service affecting 17+ ZTE router models.

embedded-systems-securityexploitationfirmware-analysis+2
23 months ago
MIPS-CVE-2014-9222 preview

MIPS-CVE-2014-9222

GitHubmercul1ninna/mips-cve-2014-9222

Lets have fun by digging into a Zyxel router firmware and MIPS Arch

binary-analysiseducationembedded-systems-security+5
7 years ago
MIPS-CVE-2014-9222 preview

MIPS-CVE-2014-9222

GitHubdonfanning/mips-cve-2014-9222

Lets have fun by digging into a Zyxel router firmware and MIPS Arch

binary-analysiseducationembedded-systems-security+5
7 years ago
Tenda-Router-VR-and-Exploit preview

Tenda-Router-VR-and-Exploit

GitHubjaden-bowers/tenda-router-vr-and-exploit

Writeup for Tenda AC15 router firmware rehosting and remote command execution (CVE-2020-10987) exploit replication.

binary-exploitationeducationembedded-systems-security+8
9 months ago
the-same-key-opens-every-box-cve-2026-71960-hard-coded-jwt-secret-in-cudy-wr3000-mesh-mqtt preview

the-same-key-opens-every-box-cve-2026-71960-hard-coded-jwt-secret-in-cudy-wr3000-mesh-mqtt

GitHubhunt-benito/the-same-key-opens-every-box-cve-2026-71960-hard-coded-jwt-secret-in-cudy-wr3000-mesh-mqtt

PoC toolkit that unpacks router firmware, decrypts device secrets, forges JWT tokens, and exploits CVE-2026-71960/71961 to take over Cudy WR3000 mesh…

authenticationcryptographyexploitation+4
2 days ago
Tenda-F3-V4 preview

Tenda-F3-V4

GitHub4d000/tenda-f3-v4

Python script to exploit CVE-2020-35391 on Tenda F3 V3/V4 routers, enabling unauthorized download of configuration, flash, and syslog files.

embedded-systems-securityexploitationfirmware-analysis+4
311 months ago
rpef preview

rpef

GitHubmncoppola/rpef

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

embedded-systems-securityexploitationfirmware-analysis+6
12412 years ago
CVE-2026-3227-TP-Link-authenticated-RCE preview

CVE-2026-3227-TP-Link-authenticated-RCE

GitHubdo4choo/cve-2026-3227-tp-link-authenticated-rce
binary-exploitationeducationexploitation+6
421 month ago
zyxel-p870hn-hardware-hacking preview

zyxel-p870hn-hardware-hacking

GitHubdanyw24/zyxel-p870hn-hardware-hacking

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

educationembedded-systems-securityexploitation+6
9 days ago
CVE-2019-17147 preview

CVE-2019-17147

GitHubimnot-ye/cve-2019-17147
binary-exploitationeducationembedded-systems-security+9
46 months ago
blogpost_cve-2018-19987-analysis preview

blogpost_cve-2018-19987-analysis

GitHubnahueldsanchez/blogpost_cve-2018-19987-analysis

This repo has a blog post about my analysis for CVE-2018-19987 an authenticated OS command injection affecting multiple D-Link routers

educationexploitationfirmware-analysis+4
25 years ago
Previous12Next