Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
210 results
CVE-2017-16778-Intercom-DTMF-Injection preview

CVE-2017-16778-Intercom-DTMF-Injection

GitHubbreaktoprotect/cve-2017-16778-intercom-dtmf-injection

A coordinated disclosure and security advisory on Fermax Intercom DTML Injection vulneraiblity. Special thanks to Fermax International for prompt…

embedded-systems-securityexploitationhardware-hacking+6
22
6 years ago
IoT-Vulnerability-Research-Public preview

IoT-Vulnerability-Research-Public

GitHubbadchemical/iot-vulnerability-research-public

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

cryptographyeducationembedded-systems-security+8
181 day ago
nrf24-injection preview

nrf24-injection

GitHubxswxm/nrf24-injection

A tool set for sniffing devices and launching attacks with Crazyradio

exploitationhardware-hackingpenetration-testing+1
188 years ago
wch-ch56x-lib preview

wch-ch56x-lib

GitHubhydrausb3/wch-ch56x-lib

Library for WCH CH56x-based boards with tested USB3/USB2/HSPI/SerDes drivers, logging and deferred interrupts

embedded-systems-securityfirmware-analysishardware-hacking+2
171 year ago
CVE-2024-42642 preview

CVE-2024-42642

GitHubvl4dr/cve-2024-42642

Proof-of-concept exploits for three vulnerabilities in Crucial MX500 SSD firmware update mechanism, enabling buffer overflows and potential code…

binary-analysisembedded-systems-securityexploitation+5
141 year ago
pwnKit preview

pwnKit

GitHubdrapl0n/pwnkit

USB Rubber Ducky payload that exploits CVE-2021-4034 to escalate privileges and spawn a root shell on Unix-like systems in under 10 seconds.

exploitationhardware-hackingpayload-development+3
114 years ago
shining-mask preview

shining-mask

GitHubbishopfox/shining-mask

BLE-based tool that automatically discovers and exploits Shining LED Masks by uploading a custom image without user interaction, proving security…

bluetooth-securityeducationembedded-systems-security+5
1210 months ago
cve-2019-6260 preview

cve-2019-6260

GitHubnikitapbst/cve-2019-6260

Low-level hardware debugging and security assessment tool for ASPEED BMC AHB interfaces. Probes PCIe, LPC, and UART interfaces to read/write…

binary-analysisembedded-systems-securityexploitation+5
65 years ago
CVE-research preview

CVE-research

GitHubjarrettgohxz/cve-research

A repository that contains all the working PoC I have crafted for known CVEs, and details on any ongoing research I am currently doing (mostly Iot…

exploitationexploit-frameworkshardware-hacking+3
11 month ago
SymaX5SW-Rx-Tx preview

SymaX5SW-Rx-Tx

GitHubinfobyte/symax5sw-rx-tx

Syma X5SW Telemetry and Transmissor

embedded-systems-securityhardware-hackingiot-security+3
47 years ago
Zhilly preview

Zhilly

GitLabsacriphanius/zhilly

🛡️ AI-powered portable cybersecurity & pentesting assistant built on ESP32-S3 (LilyGO T-Embed CC1101 & T-Watch S3). Features voice-controlled RF…

embedded-systems-securityhardware-hackingiot-security+6
11 month ago
CVE-2019-17147_Practice_Material preview

CVE-2019-17147_Practice_Material

GitHubdrmnsamoliu/cve-2019-17147_practice_material

This repo contains dumped flash partitions with firmware version vulnerable to CVE-2019-17147, and some useful binaries to downgrade and debug your…

binary-analysisdebuggerseducation+6
44 years ago
CVE-2019-17147 preview

CVE-2019-17147

GitHubimnot-ye/cve-2019-17147

Comprehensive reverse engineering and exploitation of CVE-2019-17147, a stack buffer overflow in TP-Link TL-WR841N routers. Includes firmware…

binary-exploitationeducationembedded-systems-security+9
47 months ago
CVE-2021-4045 preview

CVE-2021-4045

GitHubkaleth4/cve-2021-4045

Command injection exploit for TP-Link Tapo C200 camera (CVE-2021-4045) providing root shell access via UART and reverse-engineered uhttpd binary…

command-and-controlembedded-systems-securityexploitation+6
2 months ago
CVE-2026-22013-Hardware-Wallet-USB-Descriptor-Buffer-Overflow preview

CVE-2026-22013-Hardware-Wallet-USB-Descriptor-Buffer-Overflow

GitHubgeorge0papasotiriou/cve-2026-22013-hardware-wallet-usb-descriptor-buffer-overflow

Stack buffer overflow PoC for a hardware wallet USB descriptor parser (CVE-2026-22013), showing return-address overwrite and code execution via…

binary-exploitationembedded-systems-securityexploitation+3
1 month ago
esp32-cve-2025-27840-power-trace-experiment preview

esp32-cve-2025-27840-power-trace-experiment

GitHubjasonw88/esp32-cve-2025-27840-power-trace-experiment

Firmware for getting a power trace of the behavior of the bluetooth module on the ESP32 when the ESP32 is sent the undocumented hci bluetooth…

bluetooth-securityembedded-systems-securityhardware-hacking+2
1 month ago
CVE-2023-48034 preview

CVE-2023-48034

GitHubaprkr/cve-2023-48034

Weak encryption in Acer Wireless Keyboard SK-9662 allows attacker in physical proximity to both decrypt wireless keystrokes and inject wireless…

bluetooth-securitycryptographyembedded-systems-security+6
12 years ago
CVE-2025-51643 preview

CVE-2025-51643

GitHubnastycrow/cve-2025-51643

Documentation of CVE-2025-51643: physical SPI flash extraction on Meitrack T366G-L GPS tracker enabling firmware dump, plaintext credential…

data-exfiltrationembedded-systems-securityexploitation+6
11 year ago
Previous1…567…12Next