Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
disclosure-thinkware-u3000 preview

disclosure-thinkware-u3000

GitHubturretsec/disclosure-thinkware-u3000

Three unauthenticated vulnerabilities in the Thinkware U3000 dashcam's local WiFi control protocol: arbitrary file write, arbitrary file read, and…

cryptographyembedded-systems-securityhardware-iot-security+5
8 days ago
u3000py preview

u3000py

GitHubturretsec/u3000py

Python client for the Thinkware U3000 dashcam's local WiFi control protocol, reverse-engineered from the official Android app. PoC tooling behind…

embedded-systems-securityexploitationhardware-iot-security+7
8 days ago
CVE-2026-77812 preview

CVE-2026-77812

GitHubwh02m1/cve-2026-77812

Proof-of-concept that passively sniffs cleartext BLE DUML traffic from DJI drones to recover Wi-Fi PSK and trusted session UUIDs, demonstrating…

bluetooth-securityexploitationhardware-iot-security+4
113 days ago
flipper-mcp preview

flipper-mcp

GitHubroostercoopllc/flipper-mcp

AI-powered MCP server for Flipper Zero. Control SubGHz, NFC, RFID, IR, BLE, GPIO, and more over WiFi using Claude or any MCP client.

ai-securitybluetooth-securitycommand-and-control+9
277 months ago
CVE-2026-78306 preview

CVE-2026-78306

GitHubwh02m1/cve-2026-78306

Proof-of-concept exploiting DJI drone Bluetooth DUML command injection, sending unauthenticated commands to read credentials, alter Wi-Fi config, and…

bluetooth-securityembedded-systems-securityexploitation+6
177 days ago
nexmon preview

nexmon

GitHubseemoo-lab/nexmon

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

embedded-systems-securityfirmware-analysishardware-hacking+6
2.9k12 days ago
skylift preview

skylift

GitHubawesome-pentest-gadgets/skylift

WiFi Geolocation Spoofing with the ESP8266

embedded-systems-securityexploitationhardware-iot-security+3
838 years ago
skylift preview

skylift

GitHubadamhrv/skylift

Wi-Fi Geolocation Spoofing with ESP8266 / ESP32

embedded-systems-securityhardware-iot-securityimpersonation-tools+3
5262 years ago
Google-Nest-Cam-Bug-Disclosures preview

Google-Nest-Cam-Bug-Disclosures

GitHubjasondoyle/google-nest-cam-bug-disclosures

PoC vulnerability disclosures for consumer IoT cameras, detailing BLE buffer overflow and WiFi disassociation attacks that can take devices offline.

bluetooth-securityembedded-systems-securityexploitation+3
389 years ago
rickmote preview

rickmote

GitHubbishopfox/rickmote

The Rickmote Controller: Hijack TVs using Google Chromecast

hardware-iot-securityred-teamingwi-fi-auditing+1
2266 years ago
CVE-2024-35106-POC preview

CVE-2024-35106-POC

GitHublaskdjlaskdj12/cve-2024-35106-poc

Proof-of-concept exploit for CVE-2024-35106, a stack buffer overflow in NEXTU FLETA AX1500 Wi-Fi 6 router. Demonstrates denial-of-service and…

binary-exploitationembedded-systems-securityexploitation+5
1 year ago
mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce preview

mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

GitHubhunt-benito/mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

Proof-of-concept exploit for CVE-2026-20452, a heap-based buffer overflow in MediaTek WLAN AP drivers. Uses scapy to send crafted Wi-Fi management…

binary-exploitationeducationembedded-systems-security+5
33 months ago
ESPTouchCatcher preview

ESPTouchCatcher

GitHubsalgio/esptouchcatcher

eWeLinkESPT is a tool that automatically decodes and decrypts the WiFi network credentials transmitted to a supported ESP-based IoT device by the…

cryptographyexploitationhardware-iot-security+4
55 years ago
CVE-2025-63296 preview

CVE-2025-63296

GitHubt4e-3/cve-2025-63296

KERUI K259 5MP Wi-Fi (Tuya Smart Security Camera) contains a code execution vulnerability

binary-exploitationcommand-and-controldata-exfiltration+8
11 months ago
tplink-smartplug preview

tplink-smartplug

GitHubsoftscheck/tplink-smartplug

TP-Link WiFi SmartPlug Client and Wireshark Dissector

encryption-decryption-toolsfirmware-analysishardware-iot-security+6
1.2k1 year ago
esp_wifi_repeater preview

esp_wifi_repeater

GitHubmartin-ger/esp_wifi_repeater

A full functional WiFi NAT Router (and now also a WiFi Repeater)

dns-analysisembedded-systems-securityhardware-iot-security+5
5.3k4 months ago
ESP32-DIV preview

ESP32-DIV

GitHubcifertech/esp32-div

ESP32DIV is a multi-purpose wireless offensive and defensive toolkit powered by an ESP32

bluetooth-securityeducationembedded-systems-security+8
4.1k1 month ago
GHOST preview

GHOST

GitHubrazkom/ghost

ESP32-S3 firmware for standalone WPA/WPA2 handshake capture and deauthentication testing via TFT UI, with pcap download over WiFi AP.

educationembedded-systems-securityhardware-iot-security+3
275 months ago
Previous12Next