Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
infected-drones preview

infected-drones

GitHubnicholasaleks/infected-drones

A collection of vulnerabilities & exploits against modern GCS

educationembedded-systems-securityexploitation+5
21
13 days ago
CVE-2024-20154 preview

CVE-2024-20154

GitHubharbingerse7en/cve-2024-20154

Technical writeup analyzing CVE-2024-20154, a stack-based buffer overflow in MediaTek MT6769 NB-IoT baseband firmware, covering reverse engineering…

binary-analysiseducationembedded-systems-security+8
3 months ago
unleashed-firmware preview

unleashed-firmware

GitHubdarkflippers/unleashed-firmware

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

embedded-systems-securityfuzzinghardware-hacking+7
22.3k11h 26m ago
hi_my_name_is_keyboard preview

hi_my_name_is_keyboard

GitHubmarcnewlin/hi_my_name_is_keyboard

Bluetooth keystroke injection exploit PoCs for CVE-2023-45866, CVE-2024-21306, and CVE-2024-0230 targeting Android, Linux, macOS, and iOS via…

adversarial-attackandroid-securitybluetooth-security+5
7312 years ago
SIGINT_THROUGH_BROTHER_PRINTERS preview

SIGINT_THROUGH_BROTHER_PRINTERS

GitHubspiralbl0ck/sigint_through_brother_printers

Exploit vulnerable Brother printers via CVE-2017-7588, collect data, and develop custom firmware implants for attack simulation.

embedded-systems-securityexploitationfirmware-analysis+6
2 years ago
rickmote preview

rickmote

GitHubbishopfox/rickmote

The Rickmote Controller: Hijack TVs using Google Chromecast

hardware-iot-securityred-teamingwi-fi-auditing+1
2266 years ago
CVE-2024-57972 preview

CVE-2024-57972

GitHubtania-silva/cve-2024-57972

Denial of Service exploit for Microsoft HoloLens Device Portal via repeated API pairing requests, causing CPU overload and system unresponsiveness.

api-securityexploitationhardware-iot-security+2
1 year ago
CVE-2020-0022 preview

CVE-2020-0022

GitHubthemmokhtar/cve-2020-0022

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

android-securitybinary-exploitationbluetooth-security+7
222 years ago
CVE-2024-34463 preview

CVE-2024-34463

GitHubyash-chandna/cve-2024-34463

Proof-of-concept exploit for CVE-2024-34463 targeting insufficient Bluetooth security in BPL Smart Weighing Scale PWS-01-BT. Includes BLE scanner and…

bluetooth-securityexploitationhardware-iot-security+3
1 year ago
CVE-2022-24611 preview

CVE-2022-24611

GitHubitseclab-hsel/cve-2022-24611

Details regarding the Z-Wave S0-No-More attack

exploitationhardware-iot-securityiot-security+2
24 years ago
CVE-2020-25478--ASUS-RT-AC87U-TFTP-is-vulnerable-to-Denial-of-Service-DoS-attack preview

CVE-2020-25478--ASUS-RT-AC87U-TFTP-is-vulnerable-to-Denial-of-Service-DoS-attack

GitHubsantokum/cve-2020-25478--asus-rt-ac87u-tftp-is-vulnerable-to-denial-of-service-dos-attack

ASUS RT-AC87U TFTP is vulnerable to Denial of Service(DoS) attack

exploitationfuzzinghardware-iot-security+1
4 years ago
WhisperPair preview

WhisperPair

GitHubkuleuven-cosic/whisperpair

The official reference implementation & vulnerability verification of our attack WhisperPair (CVE-2025-36911) which affects Google's Fast Pair…

bluetooth-securityeducationexploitation+5
963 days ago
CVE-2017-9476 preview

CVE-2017-9476

GitHubwiire-a/cve-2017-9476

Hidden AP with Deterministic Credentials

exploitationhardware-iot-securitypassword-cracking+3
98 years ago
ESP32-DIV preview

ESP32-DIV

GitHubcifertech/esp32-div

ESP32DIV is a multi-purpose wireless offensive and defensive toolkit powered by an ESP32

bluetooth-securityeducationembedded-systems-security+8
4.1k23 days ago
Fault-Injection-Finder preview

Fault-Injection-Finder

GitHubgeeoon/fault-injection-finder

Automatically find and execute fault injection attacks

binary-analysisembedded-systems-securityexploitation+5
1424 days ago
GHOST preview

GHOST

GitHubrazkom/ghost

ESP32-S3 firmware for standalone WPA/WPA2 handshake capture and deauthentication testing via TFT UI, with pcap download over WiFi AP.

educationembedded-systems-securityhardware-iot-security+3
275 months ago
cve-2022-27255 preview

cve-2022-27255

GitHubinfobyte/cve-2022-27255

Automated firmware analysis and exploit toolkit for CVE-2022-27255, a Realtek eCos SDK SIP ALG buffer overflow affecting 30+ router models. Includes…

binary-analysisctfeducation+7
2844 years ago
cve-2025-2082 preview

cve-2025-2082

GitHubburak1320demiroz/cve-2025-2082

Interactive cybersecurity scenario simulating a Tesla TPMS to VCSEC to CAN Bus attack chain, teaching vehicle security concepts through gamified…

binary-exploitationctfeducation+5
21 year ago
Previous12Next