Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
424 results
CVE-2020-8597 preview

CVE-2020-8597

GitHublakwsh/cve-2020-8597

Exploit for CVE-2020-8597 targeting RM2100 routers, providing proof-of-concept code for remote code execution via buffer overflow in the router's web…

binary-exploitationembedded-systems-securityexploitation+3
55 years ago
UnisocBootROMs preview

UnisocBootROMs

GitHubmutur4/unisocbootroms

This is a collection of Unisoc BootROMs dumped from various Unisoc chipsets via CVE-2022-38694

curated-resourcesembedded-systems-securityfirmware-analysis+3
28 days ago
protectimus-slim-proxmark3 preview

protectimus-slim-proxmark3

GitHubsyss-research/protectimus-slim-proxmark3

Proxmark3 Lua script for attacking vulnerable Protectimus SLIM NFC TOTP hardware tokens

educationexploitationhardware-hacking+4
55 years ago
CVE-2018-16706 preview

CVE-2018-16706

GitHubnurdilin/cve-2018-16706

Or how I turn off my TV via a cronjob

exploitationhardware-iot-securityiot-security+3
67 years ago
ghidra-mtk-loader preview

ghidra-mtk-loader

GitHubnccgroup/ghidra-mtk-loader

Ghidra loader for the MediaTek md1img modem firmware image format

binary-analysisembedded-systems-securityfirmware-analysis+3
73 months ago
xperia_5_bl_unlocker_poc preview

xperia_5_bl_unlocker_poc

GitHubaomsin2526/xperia_5_bl_unlocker_poc

My take on unlocking Xperia 5 SO-01M for p42 bootloader using CVE-2021-1931

binary-exploitationembedded-systems-securityexploitation+3
22 months ago
CVE-2025-65857 preview

CVE-2025-65857

GitHubluismirandaacebedo/cve-2025-65857

Xiongmai XM530 IP Camera Hardcoded RTSP Credentials Exposure

embedded-systems-securityexploitationhardware-iot-security+3
58 months ago
CVE-2022-28906-POC preview

CVE-2022-28906-POC

GitHubfinnvle/cve-2022-28906-poc

Python proof-of-concept for unauthenticated OS command injection in TOTOLINK N600R, exploiting the langType parameter to execute arbitrary commands…

command-and-controlexploitationhardware-iot-security+3
114 days ago
CVE-2024-22894 preview

CVE-2024-22894

GitHubjaarden/cve-2024-22894

Proof-of-concept exploit for CVE-2024-22894, demonstrating 3DES-encrypted root password extraction from Alpha Innotec/Novelan heatpump firmware,…

cryptographyembedded-systems-securityexploitation+6
32 years ago
WebcamViewer preview

WebcamViewer

GitHubosy/webcamviewer

Proof-of-concept demonstrating CVE-2021-30731, allowing unauthorized USB webcam access on macOS. Built with libuvc, it previews connected webcams on…

exploitationhardware-iot-securitypenetration-testing+2
54 years ago
accfly preview

accfly

GitHubtezeb/accfly

Disclosure of Accfly camera vulnerabilities: CVE-2020-25782, CVE-2020-25783, CVE-2020-25784, CVE-2020-25785.

binary-exploitationembedded-systems-securityexploitation+6
35 years ago
Poc-CVE-2024-57040 preview

Poc-CVE-2024-57040

GitHubabsholi7ly/poc-cve-2024-57040

CVE-2024-57040 is a security vulnerability found in certain TP-Link TL-WR845N router models. Specifically, it involves a "hardcoded" password for the…

embedded-systems-securityexploitationhardware-iot-security+3
21 year ago
CVE-2026-22017-Firmware-Update-via-BLE-Without-Authentication preview

CVE-2026-22017-Firmware-Update-via-BLE-Without-Authentication

GitHubgeorge0papasotiriou/cve-2026-22017-firmware-update-via-ble-without-authentication

Simulated BLE peripheral exposing an unauthenticated GATT firmware-update characteristic; demonstrates critical CVE-2026-22017 device-takeover…

bluetooth-securityembedded-systems-securityexploitation+4
1 month ago
CVE-2026-9090-Modbus-TCP-Write-to-Read-Only-Coils-via-Function-Code-Spoofing preview

CVE-2026-9090-Modbus-TCP-Write-to-Read-Only-Coils-via-Function-Code-Spoofing

GitHubgeorge0papasotiriou/cve-2026-9090-modbus-tcp-write-to-read-only-coils-via-function-code-spoofing

PoC Modbus TCP exploit demonstrating spoofed writes to read-only coils in simulated PLCs, highlighting SCADA/ICS access control flaws.

exploitationhardware-iot-securitymisconfiguration+4
1 month ago
cve-2025-29384 preview

cve-2025-29384

GitHubfomovet/cve-2025-29384

POC for CVE-2025-29384

binary-exploitationeducationembedded-systems-security+8
2 months ago
CVE-2024-24488 preview

CVE-2024-24488

GitHublegacyobj/cve-2024-24488

An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component.

embedded-systems-securityexploitationhardware-iot-security+3
42 years ago
CVE-2025-70962 preview

CVE-2025-70962

GitHubnamaek2/cve-2025-70962

CVE-2025-70962 PoC

exploitationfirmware-analysishardware-iot-security+3
1 month ago
bandexploit preview

bandexploit

GitHubcoleshelly/bandexploit

M1 Band Smart Watch Bluetooth Low Energy Exploit python script (CVE-2018-11631)

bluetooth-securityexploitationhardware-iot-security+3
26 years ago
Previous1…192021…24Next