Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
59 results
CVE-2026-85769 preview

CVE-2026-85769

GitHubisukasanuj/cve-2026-85769

Proof-of-concept exploit for CVE-2026-85769, a heap out-of-bounds read in libtpms TPM 2.0 state deserialization, demonstrating denial of service via…

binary-analysisembedded-systems-securityexploitation+3
1 day ago
the-key-ships-with-the-lock-cve-2026-82876-phison-s11-ssd-firmware-signature-bypass preview

the-key-ships-with-the-lock-cve-2026-82876-phison-s11-ssd-firmware-signature-bypass

GitHubhunt-benito/the-key-ships-with-the-lock-cve-2026-82876-phison-s11-ssd-firmware-signature-bypass

Proof-of-concept demonstrating a firmware signature verification bypass in Phison S11 SSDs, allowing attackers to re-sign modified firmware by…

educationembedded-systems-securityexploitation+4
2 days ago
usb-ninja-detection-poc preview

usb-ninja-detection-poc

GitHubwithsecurelabs/usb-ninja-detection-poc

Detects USB Ninja keystroke injection attacks by logging keystrokes and application events, providing a proof-of-concept for defensive monitoring.

defensive-toolshardware-iot-securityhardware-security+1
76 years ago
Phoenix-Rowhammer-Attack-CVE-2025-6202 preview

Phoenix-Rowhammer-Attack-CVE-2025-6202

GitHubdemining/phoenix-rowhammer-attack-cve-2025-6202

Phoenix Rowhammer Attack: Systemic Risk of Bitcoin Wallet Private Key Compromise in Global Blockchain Infrastructure Due to a Critical SK Hynix DDR5…

binary-analysiscryptographyexploitation+2
510 months ago
mfoc preview

mfoc

GitHubnfc-tools/mfoc

Offline nested attack tool that recovers MIFARE Classic authentication keys using known default or user-supplied keys for assessing NFC/RFID card…

authenticationcryptographyhardware-hacking+3
1.4k2 years ago
libsignal preview

libsignal

GitHubsignalapp/libsignal

Home to the Signal Protocol as well as other cryptographic primitives which make Signal possible.

cryptographyencryption-decryption-toolshardware-security+2
6.0k9 days ago
Starlink-FI preview

Starlink-FI

GitHubkuleuven-cosic/starlink-fi

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

binary-analysisembedded-systems-securityexploitation+4
1.0k3 years ago
silifuzz preview

silifuzz

GitHubgoogle/silifuzz

Fuzzes CPU implementations by generating test inputs from software proxies, then executes them on real hardware to detect microarchitecture defects…

binary-analysisfuzzinghardware-security+1
4178 days ago
ExecASLR-ekoparty preview

ExecASLR-ekoparty

GitHubes0j/execaslr-ekoparty

Proof-of-concept exploit that bypasses ASLR on Intel CPUs by abusing branch target buffer and speculative execution to leak randomized addresses via…

adversarial-attackbinary-exploitationeducation+4
723 years ago
CVE-2025-4275 preview

CVE-2025-4275

GitHubthemalwareguardian/cve-2025-4275

Analysis and exploitation of CVE-2025-4275 (Hydr0ph0bia), a Secure Boot trust-chain weakness where firmware variables are used to introduce…

binary-analysiseducationexploitation+5
21 days ago
OpenSC.tokend preview

OpenSC.tokend

GitHubopensc/opensc.tokend

Tokend module for OS X with support for all cards supported by OpenSC

authenticationcryptographyhardware-security+1
362 years ago
routerfirmwares preview

routerfirmwares

Bitbucketdudux/routerfirmwares

A bunch of routers firmware images. Principally those that are not available and they do need to be extracted via JTAG, UART, desoldering flash or…

curated-resourcesembedded-systems-securityfirmware-analysis+2
11 years ago
EDIDFuzzer preview

EDIDFuzzer

GitHubnccgroup/edidfuzzer

EDID (Enhanced Display Identification Data) Fuzzer

binary-analysisembedded-systems-securityfuzzing+2
1912 years ago
LogoFail-PoC preview

LogoFail-PoC

GitHubd0rb/logofail-poc

This is a hypothetical demonstration of the process involved in exploiting LogoFail, it theoretically includes the necessary steps.

binary-exploitationeducationexploitation+5
82 years ago
CVE-2026-8863 preview

CVE-2026-8863

GitHub0xbekoo/cve-2026-8863

Hashes and shim versions for the UEFI Secure Boot shims affected by CVE-2026-8863

curated-resourcesfirmware-analysishardware-security+3
11 month ago
FrisbeeLite preview

FrisbeeLite

GitHubnccgroup/frisbeelite

A GUI-based USB device fuzzer

dynamic-analysis-sandboxingembedded-systems-securityfuzzing+2
658 years ago
wmi-static-spoofer preview

wmi-static-spoofer

GitHubalex3434/wmi-static-spoofer

Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking

exploitationhardware-hackinghardware-iot-security+4
5157 years ago
Am-I-affected-by-Meltdown preview

Am-I-affected-by-Meltdown

GitHubraphaelsc/am-i-affected-by-meltdown

Meltdown Exploit / Proof-of-concept / checks whether system is affected by Variant 3: rogue data cache load (CVE-2017-5754), a.k.a MELTDOWN.

binary-analysisexploitationhardware-security+1
5388 years ago
Previous1234Next