Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
IoTGoat preview

IoTGoat

GitHubowasp/iotgoat

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

educationembedded-systems-securityfirmware-analysis+8
918
10 months ago
SmmBackdoor preview

SmmBackdoor

GitHubcr4sh/smmbackdoor

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

exploitationfirmware-analysishardware-hacking+4
6322 years ago
bitlocker-attacks preview

bitlocker-attacks

GitHubwack0/bitlocker-attacks

A list of public attacks on BitLocker

curated-resourcesencryption-decryption-toolsexploitation+4
4651 month ago
smiiiiiiiiiiiiiiii preview

smiiiiiiiiiiiiiiii

GitHubxoreaxeaxeax/smiiiiiiiiiiiiiiii

A very very very very very very very long interrupt

exploitationhardware-hackinghardware-security+1
3113 days ago
TPMGenie preview

TPMGenie

GitHubnccgroup/tpmgenie

TPM Genie is an I2C bus interposer for discrete Trusted Platform Modules

binary-analysisembedded-systems-securityexploitation+8
2285 years ago
IoT-Pentest-devices-and-purpose preview

IoT-Pentest-devices-and-purpose

GitHubiotsrg/iot-pentest-devices-and-purpose
bluetooth-securitycurated-resourceseducation+8
731 year ago
rcm-modchips preview

rcm-modchips

GitHubreswitched/rcm-modchips

Collection of "modchip" designs for launching payloads via the Tegra RCM bug (CVE-2018-6242)

embedded-systems-securityexploitationhardware-hacking+3
218 years ago
IoT-Vulnerability-Research-Public preview

IoT-Vulnerability-Research-Public

GitHubbadchemical/iot-vulnerability-research-public

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

cryptographyeducationembedded-systems-security+8
171 month ago
spd_flasher preview

spd_flasher

GitHubleochen-coremind/spd_flasher

CVE-2022-38694 Hardened Exploit - RP2350 USB Host Auto Flasher for Unisoc devices

educationembedded-systems-securityexploitation+3
615 days ago
CVE-2019-17147 preview

CVE-2019-17147

GitHubimnot-ye/cve-2019-17147
binary-exploitationeducationembedded-systems-security+9
46 months ago
NXLoader preview

NXLoader

GitHubresi-le/nxloader

An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

embedded-systems-securityexploitationhardware-hacking+2
18 months ago
CVE-2025-65731 preview

CVE-2025-65731

GitHubwhitej3rry/cve-2025-65731

Advisory for CVE-2025-65731

embedded-systems-securityexploitationhardware-hacking+5
7 months ago
aziot-cctv-cve-2025-50777 preview

aziot-cctv-cve-2025-50777

GitHubveereshgadige/aziot-cctv-cve-2025-50777

CVE-2025-50777: Root Access and Plaintext Credential Exposure in AZIOT Smart CCTV

educationembedded-systems-securityexploitation+8
1 year ago