Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
48 results
frieren preview

frieren

GitHubxchwarze/frieren

Frieren is a micro-framework designed for use in routers and Single Board Computers (SBCs). This framework is built to be lightweight, efficient, and…

embedded-systems-securityhardware-iot-securityiot-security+8
216
1 month ago
CVE-2021-4045 preview

CVE-2021-4045

GitHubhacefresko/cve-2021-4045

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera

binary-analysiscommand-and-controlembedded-systems-security+6
1191 year ago
Thunderstorm preview

Thunderstorm

GitHubjoelgmsec/thunderstorm

Modular framework to exploit UPS devices

exploitationexploit-frameworkshardware-iot-security+4
653 years ago
DIR8xx_PoC preview

DIR8xx_PoC

GitHubembedi/dir8xx_poc

Proof-of-Concept exploits for D-Link DIR8xx routers

binary-exploitationembedded-systems-securityexploitation+3
378 years ago
CVE-2022-25064 preview

CVE-2022-25064

GitHubmr-xn/cve-2022-25064

Python exploit for TP-Link TL-WR840N RCE (CVE-2022-25064) via crafted IPv6 address payload in the router's CGI interface, enabling remote command…

exploitationhardware-iot-securityiot-security+4
224 years ago
MSF-Testing-Scripts preview

MSF-Testing-Scripts

GitHubh00die/msf-testing-scripts

Metasploit modules in testing

exploitationexploit-frameworkshardware-iot-security+5
167 years ago
CVE-2022-29593 preview

CVE-2022-29593

GitHub9lyph/cve-2022-29593

Proof-of-concept exploit for authentication bypass via capture-replay in Dingtian DT-R002 relay, allowing unauthorized control of relays through HTTP…

authenticationexploitationfuzzing+8
81 year ago
netwave-dosvulnerability preview

netwave-dosvulnerability

GitHubdreadlocked/netwave-dosvulnerability

[CVE-2018-6479] Netwave IP Camera server vulnerable to Denial of Service via one single huge POST request.

exploitationhardware-iot-securityiot-security+2
58 years ago
CVE-2026-63563 preview

CVE-2026-63563

GitHubredr0nin/cve-2026-63563

Unauthenticated Address Book Modification on Sharp MX/BP Multifunction Printers

data-exfiltrationexploitationhardware-iot-security+3
29 days ago
cve-2025-29384 preview

cve-2025-29384

GitHubfomovet/cve-2025-29384

POC for CVE-2025-29384

binary-exploitationeducationembedded-systems-security+8
2 months ago
CVE-2024-54887-PoC preview

CVE-2024-54887-PoC

GitHubgumbraise/cve-2024-54887-poc

TypeScript PoC for CVE-2024-54887 (TP-Link TL-WR940N authenticated RCE)

exploitationhardware-iot-securityiot-security+4
2 months ago
CVE-2025-52688 preview

CVE-2025-52688

GitHubjoelczk/cve-2025-52688

Proof-of-concept exploits for CVE-2025-52688: unauthenticated command injection and arbitrary file read vulnerabilities in Alcatel AP13161 enterprise…

command-and-controlexploitationhardware-iot-security+3
21 year ago
Best-Practices-Cybersecurity-Otanata-Project preview

Best-Practices-Cybersecurity-Otanata-Project

GitHubaskhatov21/best-practices-cybersecurity-otanata-project

CVE-2024-3273 — Authorized Penetration Test Report D-Link DNS-320L NAS | Client: Otonata

command-and-controleducationembedded-systems-security+8
4 months ago
unknownpwn.github.io preview

unknownpwn.github.io

GitHubunknownpwn-zz/unknownpwn.github.io

infosec enthusiast and madman

exploitationhardware-iot-securityiot-security+3
28 years ago
XM_ONVIF_auth_bypass preview

XM_ONVIF_auth_bypass

GitHubkostasereksonas/xm_onvif_auth_bypass

Proof-of-concept code (Bash and Python) for CVE-2025-65856 where ONVIF implementation in in Xiongmai XM530 IP cameras allows for unauthenticated …

exploitationhardware-iot-securityiot-security+3
26 months ago
CVE-2020-35713 preview

CVE-2020-35713

GitHubal1ex/cve-2020-35713

CVE-2020-35713

exploitationhardware-iot-securityiot-security+3
15 years ago
CVE-2019-18370_XiaoMi_Mi_WIFI_RCE_analysis preview

CVE-2019-18370_XiaoMi_Mi_WIFI_RCE_analysis

GitHubfzbacon/cve-2019-18370_xiaomi_mi_wifi_rce_analysis
exploitationhardware-iot-securityiot-security+4
23 years ago
CVE-2025-63667 preview

CVE-2025-63667

GitHubremenis/cve-2025-63667

Vatilon-based IP camera firmwares issue Session-Id tokens without verifying credentials, allowing attackers to obtain sessions and retrieve plaintext…

api-securityauthenticationembedded-systems-security+4
19 months ago
Previous123Next