Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
24 results
OpenSC preview

OpenSC

GitHubopensc/opensc

Open source smart card tools and middleware. PKCS#11/MiniDriver

authenticationcryptographyencryption-decryption-tools+2
3.1k4 days ago
CVE-2022-34303 preview

CVE-2022-34303

GitHubthemalwareguardian/cve-2022-34303

Demonstrates CVE-2022-34303 Secure Boot bypass via CryptoPro signed UEFI Shell, using the mm command to nullify gSecurity2 and load unsigned UEFI…

binary-exploitationeducationexploitation+7
24 days ago
CVE-2022-34301 preview

CVE-2022-34301

GitHubthemalwareguardian/cve-2022-34301

Demonstrates CVE-2022-34301 Secure Boot bypass via Eurosoft signed UEFI Shell (esdiags.efi), using the mm command to nullify gSecurity2 and load…

binary-exploitationeducationexploitation+4
124 days ago
cve-2015-1187-dir820l-firmware-reverse-engineering preview

cve-2015-1187-dir820l-firmware-reverse-engineering

GitHubchristopher-leese/cve-2015-1187-dir820l-firmware-reverse-engineering

Static firmware reverse engineering of CVE-2015-1187: unauthenticated command injection in D-Link DIR-820L. MIPS root filesystem extraction with…

embedded-systems-securityexploitationfirmware-analysis+5
1 month ago
CVE-2026-56111 preview

CVE-2026-56111

GitHubchristbowel/cve-2026-56111

Proof-of-concept exploit for CVE-2026-56111, an out-of-bounds write in the M421 G-code handler of Marlin Firmware, demonstrating constrained memory…

binary-exploitationembedded-systems-securityexploitation+3
13 months ago
pivit preview

pivit

GitHubcashapp/pivit

Manage x509 certificates on PIV-enabled YubiKeys, generate keys and certificate requests, and sign or verify git commits and files.

authenticationcryptographyhardware-security
1003 months ago
mtk_bp preview

mtk_bp

GitHubnccgroup/mtk_bp

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

binary-analysisembedded-systems-securityfirmware-analysis+4
814 months ago
trevex preview

trevex

GitHubcispa/trevex

Automated Vulnerability Detection Framework for Transient Execution Vulnerabilities (IEEE S&P '26)

binary-analysiseducationexploitation+4
385 months ago
CVE-2025-9961 preview

CVE-2025-9961

GitHubyt2w/cve-2025-9961

Exploit for TP-Link AX10/AX1500 stack buffer overflow in CWMP (TR-069) enabling remote code execution via ret2libc with ASLR bypass. Includes…

binary-exploitationembedded-systems-securityexploitation+5
69 months ago
CVE-2025-60854 preview

CVE-2025-60854

GitHubk0n9-log/cve-2025-60854

D-link AX1500 Vulnerability

binary-analysiscommand-and-controlembedded-systems-security+7
10 months ago
Tenda-Router-VR-and-Exploit preview

Tenda-Router-VR-and-Exploit

GitHubjaden-bowers/tenda-router-vr-and-exploit

Writeup for Tenda AC15 router firmware rehosting and remote command execution (CVE-2020-10987) exploit replication.

binary-exploitationeducationembedded-systems-security+8
10 months ago
cpufetch preview

cpufetch

GitHubdr-noob/cpufetch

Simple yet fancy CPU architecture fetching tool

general-purpose-utilitieshardware-security
2.2k11 months ago
CVE-2023-40289 preview

CVE-2023-40289

GitHubs-hamann/cve-2023-40289

Exploit for CVE-2023-40289, a command injection vulnerability in several Baseband Management Controllers (BMC) by with firmware by ATEN

command-and-controlembedded-systems-securityexploitation+3
11 year ago
gardyn-hack preview

gardyn-hack

GitHubkristof-mattei/gardyn-hack

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631

command-and-controlembedded-systems-securityexploitation+8
1 year ago
gardyn preview

gardyn

GitHubmselbrede/gardyn

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631

command-and-controlembedded-systems-securityexploitation+8
1 year ago
CVE-2024-53375 preview

CVE-2024-53375

GitHubthottysploity/cve-2024-53375

TP-Link Archer AXE75 Authenticated Command Injection

command-and-controlexploitationhardware-security+4
211 year ago
PcanExploit preview

PcanExploit

GitHubbertoldvdb/pcanexploit

CVE-2024-44610: Authenticated remote root exploit in Peak PCAN-Ethernet CAN-(FD) gateways

command-and-controlembedded-systems-securityexploitation+3
12 years ago
CVE-2024-42642 preview

CVE-2024-42642

GitHubvl4dr/cve-2024-42642

Proof-of-concept exploits for three vulnerabilities in Crucial MX500 SSD firmware update mechanism, enabling buffer overflows and potential code…

binary-analysisembedded-systems-securityexploitation+5
142 years ago
Previous12Next