Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
eWeLink-QR-Code preview

eWeLink-QR-Code

GitHubsalgio/ewelink-qr-code

This repo describes a vulnerability affecting the QR code based pairing process of the eWeLink IoT devices (CVE-2020-12702).

cryptographyexploitationhardware-iot-security+3
1
5 years ago
XM_ONVIF_auth_bypass preview

XM_ONVIF_auth_bypass

GitHubkostasereksonas/xm_onvif_auth_bypass

Proof-of-concept code (Bash and Python) for CVE-2025-65856 where ONVIF implementation in in Xiongmai XM530 IP cameras allows for unauthenticated …

exploitationhardware-iot-securityiot-security+3
26 months ago
umap2 preview

umap2

GitHubnccgroup/umap2

Umap2 is the second revision of NCC Group's python based USB host security assessment tool.

dynamic-analysis-sandboxingembedded-systems-securityfuzzing+4
2834 years ago
fitness-app preview

fitness-app

GitHubseemoo-lab/fitness-app

BLE-based Fitbit research tool for authentication replay, encrypted activity dump decryption, memory/firmware extraction, and custom firmware…

bluetooth-securityembedded-systems-securityexploitation+5
797 years ago
ChameleonUltra preview

ChameleonUltra

GitHubrfidresearchgroup/chameleonultra

The new generation chameleon based on NRF52840 makes the performance of card emulation more stable. And gave the chameleon the ability to read,…

cryptographyembedded-systems-securityhardware-hacking+4
3.0k26 days ago
433Screen-SignalHacker preview

433Screen-SignalHacker

GitHubluispl77/433screen-signalhacker

Full duplex 433 MHz Signal jammer, recorder, decoder and hacking multitool device based on ESP32 microcontroller and RFM69HW radios. This version of…

embedded-systems-securityexploitationhardware-hacking+3
1221 month ago
CVE-2026-26399-Disclosure preview

CVE-2026-26399-Disclosure

GitHubacen28/cve-2026-26399-disclosure

Disclosure of a stack-based use-after-return vulnerability in Arduino_Core_STM32, detailing technical root cause, affected versions, and fix, with…

embedded-systems-securityfuzzinghardware-iot-security+1
14 months ago
accfly preview

accfly

GitHubtezeb/accfly

Disclosure of Accfly camera vulnerabilities: CVE-2020-25782, CVE-2020-25783, CVE-2020-25784, CVE-2020-25785.

binary-exploitationembedded-systems-securityexploitation+6
35 years ago
intercept preview

intercept

GitHubsmittix/intercept

iNTERCEPT, a free and open-source platform that unites the best signal intelligence tools into a single, accessible interface.

bluetooth-securityeducationembedded-systems-security+7
2.3k5 days ago
Antecursor preview

Antecursor

GitLabantecursor/antecursor

Autonomous and modular system for network based information gathering and exploitation. WEB interface here: https://antecursor.fr/ More info…

command-and-controlexploitationhardware-iot-security+5
57 years ago
CP-PLUS-EZ-P21-CVE-2026-65893-65894 preview

CP-PLUS-EZ-P21-CVE-2026-65893-65894

GitHubcybervinner/cp-plus-ez-p21-cve-2026-65893-65894

Documents CP PLUS EZ-P21 IP camera CVEs: arbitrary code execution via debug feature and improper authentication of HTTP endpoints, with responsible…

authenticationeducationembedded-systems-security+5
1 month ago
Arduino_mousejack preview

Arduino_mousejack

GitHubdnatividade/arduino_mousejack

Mousejack for Arduino UNO

embedded-systems-securityexploitationhardware-iot-security+2
767 years ago
cve-2025-29384 preview

cve-2025-29384

GitHubfomovet/cve-2025-29384

POC for CVE-2025-29384

binary-exploitationeducationembedded-systems-security+8
2 months ago
CVE-2024-5633 preview

CVE-2024-5633

GitHubadikso/cve-2024-5633

PoC for CVE-2024-5633

binary-analysisembedded-systems-securityexploitation+3
12 years ago
CVE-2025-67159 preview

CVE-2025-67159

GitHubremenis/cve-2025-67159

Vatilon-based IP camera firmware allows authentication bypass and plaintext credential exposure via web.cgi API requests.

authenticationexploitationhardware-iot-security+3
8 months ago