Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17 results
frieren preview

frieren

GitHubxchwarze/frieren

Frieren is a micro-framework designed for use in routers and Single Board Computers (SBCs). This framework is built to be lightweight, efficient, and…

embedded-systems-securityhardware-iot-securityiot-security+8
218
1 month ago
Kautilya preview

Kautilya

GitHubsamratashok/kautilya

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

command-and-controldata-exfiltrationhardware-iot-security+6
8719 years ago
IronFox preview

IronFox

GitLabironfox-oss/ironfox

Hardened Android web browser forked from Mull/Firefox with privacy-focused patches, anti-fingerprinting, telemetry removal, and secure defaults for…

android-securityeducationhardware-iot-security+2
37611h 10m ago
ca-clone preview

ca-clone

GitHubbishopfox/ca-clone

Scripts to clone CA certificates for use in HTTPS client attacks.

hardware-iot-securityimpersonation-toolspenetration-testing+4
366 years ago
kcmd preview

kcmd

Bitbucketaseemjakhar/kcmd

Kankun Smart Socket Hijacker and Sniffer. The kankun smart socket and its mobile app use a hardcoded AES 256 bit key to encrypt and decrypt…

cryptographyexploitationhardware-iot-security+4
11 years ago
bleah preview
Archived

bleah

GitHubevilsocket/bleah

This repository is DEPRECATED, please use bettercap as this tool has been ported to its BLE modules.

bluetooth-securityhardware-iot-securityinformation-gathering+3
1.1k7 years ago
kali-arm preview

kali-arm

GitLabkalilinux/build-scripts/kali-arm

Kali Linux ARM build scripts https://arm.kali.org/

embedded-systems-securityhardware-iot-securitypenetration-testing+1
2133 months ago
Lock-Picking-Robot preview

Lock-Picking-Robot

GitHubetinaude/lock-picking-robot

Lock picking robot

ctfeducationembedded-systems-security+3
3907 months ago
skylift preview

skylift

GitHubawesome-pentest-gadgets/skylift

WiFi Geolocation Spoofing with the ESP8266

embedded-systems-securityexploitationhardware-iot-security+3
838 years ago
365cam-stream preview

365cam-stream

GitHubinartin/365cam-stream

Local streaming tool for cheap WiFi cameras that bypasses cloud services and phone apps. Discovers cameras on your network, authenticates via PPPP…

hardware-iot-securityiot-securitynetwork-security+3
165 months ago
CVE-2025-70962 preview

CVE-2025-70962

GitHubnamaek2/cve-2025-70962

CVE-2025-70962 PoC

exploitationfirmware-analysishardware-iot-security+3
1 month ago
xperia_5_bl_unlocker_poc preview

xperia_5_bl_unlocker_poc

GitHubaomsin2526/xperia_5_bl_unlocker_poc

My take on unlocking Xperia 5 SO-01M for p42 bootloader using CVE-2021-1931

binary-exploitationembedded-systems-securityexploitation+3
22 months ago
UniBLEed preview

UniBLEed

GitHubolivierlaflamme/unibleed

Unitree G1 RCE PoC & Scripts (CVE-2026-76639 / CVE-2026-76640) technical details at boschko.ca/g1-ble-rce/

bluetooth-securityexploitationexploit-frameworks+4
18 days ago
CVE-2025-10681 preview

CVE-2025-10681

GitHubmichaeladamgroberman/cve-2025-10681

CVE-2025-10681: Hardcoded Azure Blob Storage Account Key — Gardyn Home Kit (ICSA-26-055-03)

cloud-securitydata-exfiltrationembedded-systems-security+8
3 months ago
CVE-2026-26399-Disclosure preview

CVE-2026-26399-Disclosure

GitHubacen28/cve-2026-26399-disclosure

Disclosure of a stack-based use-after-return vulnerability in Arduino_Core_STM32, detailing technical root cause, affected versions, and fix, with…

embedded-systems-securityfuzzinghardware-iot-security+1
14 months ago
CVE-2021-27289 preview

CVE-2021-27289

GitHubthemalwareguardian/cve-2021-27289

CVE-2021-27289: Playback Protection Bypass on Ksix Zigbee devices

educationexploitationhardware-iot-security+3
11 year ago
cve-2026-8697 preview

cve-2026-8697

GitHubitzmetanjim/cve-2026-8697

Detailed CVE-2026-8697 writeup with POC exploit for a login rate-limit bypass on TP-Link Archer C64 routers via a debug SSH service, enabling…

educationexploitationhardware-iot-security+7
13 months ago