Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
133 results
XM_ONVIF_auth_bypass preview

XM_ONVIF_auth_bypass

GitHubkostasereksonas/xm_onvif_auth_bypass

Proof-of-concept code (Bash and Python) for CVE-2025-65856 where ONVIF implementation in in Xiongmai XM530 IP cameras allows for unauthenticated …

exploitationhardware-iot-securityiot-security+3
2
6 months ago
CVE-2024-20137 preview

CVE-2024-20137

GitHubtakistmr/cve-2024-20137

Python code for expoiting of vulnerability in wlan driver of MediaTek SOCs MT6890, MT7622, MT7915, MT7916, MT7981, MT7986

binary-exploitationembedded-systems-securityexploitation+3
11 year ago
CVE-2020-11539 preview

CVE-2020-11539

GitHubthe-girl-who-lived/cve-2020-11539

Improper Access Control in Tata Sonata Smartband

bluetooth-securityexploitationhardware-iot-security+3
16 years ago
CVE-2026-38426 preview

CVE-2026-38426

GitHubsermikr0/cve-2026-38426

CVE-2026-38426 — strcpy() Stack Buffer Overflow in Tasmota fetch_jpg() boundary[40] (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+4
3 months ago
CVE-2025-70994 preview

CVE-2025-70994

GitHubktauchathuranga/cve-2025-70994

Passive RF signal analyzer for EV1527 fixed-code protocol, demonstrating CVE-2025-70994 replay vulnerability in Yadea T5 keyless entry systems.…

educationembedded-systems-securityexploitation+5
3 months ago
CVE-2026-38422 preview

CVE-2026-38422

GitHubsermikr0/cve-2026-38422

CVE-2026-38422 — Remote Code Execution via Combined Buffer Overflows in Tasmota fetch_jpg() (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+5
3 months ago
CVE-2026-38427 preview

CVE-2026-38427

GitHubsermikr0/cve-2026-38427

CVE-2026-38427 — Integer Wraparound → Heap Buffer Overflow in Tasmota fetch_jpg() uint16_t (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+4
3 months ago
CNVD-2022-27366__CVE-2023-37621 preview

CNVD-2022-27366__CVE-2023-37621

GitHubmy0723/cnvd-2022-27366__cve-2023-37621

Exploit for CVE-2023-37621 targeting unauthorized access in Fronius Datalogger Web 2.0.5-4, allowing attackers to retrieve sensitive device…

exploitationhardware-iot-securityinformation-gathering+3
12 years ago
ZeroPair preview

ZeroPair

GitHubcbkb-deadlydata/zeropair

Proof-of-concept tool demonstrating zero-authentication Bluetooth RFCOMM access bypass in vulnerable thermal printers

bluetooth-securityexploitationhardware-iot-security+3
16 months ago
-CVE-2024-45352 preview

-CVE-2024-45352

GitHubedwins907/-cve-2024-45352

Technical report about a critical vulnerability in Xiaomi (CVE-2024-45352)

exploitationhardware-iot-securityiot-security+3
11 year ago
CVE-2024-6333 preview

CVE-2024-6333

GitHub0xqrx/cve-2024-6333

Authenticated Remote Code Execution vulnerability in Xerox WorkCentre printers via the Network Troubleshooting Log feature.

embedded-systems-securityexploitationhardware-iot-security+2
6 months ago
CVE-2025-63820 preview

CVE-2025-63820

GitHubxernary/cve-2025-63820

Proof-of-concept of vulnerability found in Totolink A720R router

embedded-systems-securityexploitationhardware-iot-security+3
9 months ago
CVE-2021-41730 preview

CVE-2021-41730

GitHubyezeting/cve-2021-41730

Proof-of-concept exploit for CVE-2021-41730, demonstrating remote command execution in TENDA AC15/AC6 routers via unvalidated formSetIptv()…

command-and-controlembedded-systems-securityexploitation+5
4 years ago
CVE-2018-20162-digi-lr54-restricted-shell-escape preview

CVE-2018-20162-digi-lr54-restricted-shell-escape

GitHubstigtsp/cve-2018-20162-digi-lr54-restricted-shell-escape

Proof-of-concept exploit for CVE-2018-20162: sandbox escape in Digi TransPort LR54 LTE router via SIGINT handling flaw, yielding root shell access.

embedded-systems-securityexploitationhardware-iot-security+5
7 years ago
CVE-2024-34463 preview

CVE-2024-34463

GitHubyash-chandna/cve-2024-34463

Proof-of-concept exploit for CVE-2024-34463 targeting insufficient Bluetooth security in BPL Smart Weighing Scale PWS-01-BT. Includes BLE scanner and…

bluetooth-securityexploitationhardware-iot-security+3
1 year ago
CVE-2023-48194 preview

CVE-2023-48194

GitHubzt20xx/cve-2023-48194

Proof-of-concept exploit for a buffer overflow vulnerability in Tenda AC8v4 router firmware (V16.03.34.09) via the SetNetControlList endpoint,…

binary-exploitationembedded-systems-securityexploitation+4
2 years ago
CVE-2024-35106-POC preview

CVE-2024-35106-POC

GitHublaskdjlaskdj12/cve-2024-35106-poc

Proof-of-concept exploit for CVE-2024-35106, a stack buffer overflow in NEXTU FLETA AX1500 Wi-Fi 6 router. Demonstrates denial-of-service and…

binary-exploitationembedded-systems-securityexploitation+5
1 year ago
Netis-N5VN-AC1200-DOS preview

Netis-N5VN-AC1200-DOS

GitHubvanlam2001/netis-n5vn-ac1200-dos

Proof-of-concept exploit for a buffer overflow vulnerability (CVE-2024-44596) in Netis N5VN AC1200 routers, causing a denial of service by crashing…

exploitationfuzzinghardware-iot-security+3
1 year ago
Previous1234…8Next