Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
28 results
Xiaomi-C200-Firmware-Analysis preview

Xiaomi-C200-Firmware-Analysis

GitHubh3xdum/xiaomi-c200-firmware-analysis

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

data-recoveryembedded-systems-securityexploitation+6
11
9 months ago
KNX-Bus-Dump preview

KNX-Bus-Dump

GitHubchrism09/knx-bus-dump

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

digital-forensicsforensicshardware-iot-security+3
124 years ago
Mini_httpd-CVE-2018-18778 preview

Mini_httpd-CVE-2018-18778

GitHubcyberharsh/mini_httpd-cve-2018-18778

PoC exploit for CVE-2018-18778: arbitrary file read in mini_httpd 1.29 via empty Host header, affecting IoT devices from Huawei, Zyxel, and others.

embedded-systems-securityexploitationfuzzing+3
6 years ago
Routeglass preview

Routeglass

GitHubk3ystr0k3r/routeglass

Multi-threaded router fingerprinting tool that identifies web-exposed network devices by analyzing HTTP responses, headers, and favicon hashes for…

information-gatheringiot-securitynetwork-mapping+3
22 months ago
PSO - Printer Security Offensive preview

PSO - Printer Security Offensive

GitLabhivesecurity/pso-printer-security-offensive

Offensive security tool for printer pentesting

exploitationhardware-securityinformation-gathering+4
8 months ago
CVE-2026-38426 preview

CVE-2026-38426

GitHubsermikr0/cve-2026-38426

CVE-2026-38426 — strcpy() Stack Buffer Overflow in Tasmota fetch_jpg() boundary[40] (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+4
4 months ago
EvilCrowRF_Custom_Firmware_CC1101_FlipperZero preview

EvilCrowRF_Custom_Firmware_CC1101_FlipperZero

GitHubh-rat/evilcrowrf_custom_firmware_cc1101_flipperzero

This firmware is an alternative to the EvilCrowRF default firmware. Module: CC1101 - Compatible Flipper Zero file.

embedded-systems-securityhardware-hackinghardware-iot-security+5
6042 years ago
CVE-2026-90847 preview

CVE-2026-90847

GitHubshlln/cve-2026-90847

Proof-of-concept for CVE-2026-90847, an authenticated RCE in iux_set.cgi via malicious .cfg tar upload that writes commands into crontab for…

embedded-systems-securityexploitationiot-security+5
3 days ago
CVE-2024-33676 preview

CVE-2024-33676

GitHubdersecure/cve-2024-33676

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

authentication-authorizationeducationembedded-systems-security+9
1 year ago
hikvision_CVE-2017-7921_auth_bypass_config_decryptor preview
Archived

hikvision_CVE-2017-7921_auth_bypass_config_decryptor

GitHubchrisjd20/hikvision_cve-2017-7921_auth_bypass_config_decryptor

This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.

encryption-decryption-toolsexploitationhardware-iot-security+3
1175 years ago
Arlo preview

Arlo

GitHubsynacktiv/arlo

Arlo file format helper

binary-analysiscryptographyembedded-systems-security+5
182 years ago
RTSPbrute preview

RTSPbrute

GitLabwoolf/rtspbrute

Tool for RTSP that brute-forces routes and credentials, makes screenshots!

information-gatheringiot-securitypassword-attacks+1
275 years ago
duckLogger preview

duckLogger

GitHubitsmmdoha/ducklogger

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

command-and-controldata-exfiltrationembedded-systems-security+8
915 months ago
hikvision_CVE-2017-7921_auth_bypass_config_decryptor preview

hikvision_CVE-2017-7921_auth_bypass_config_decryptor

GitHubp4tq/hikvision_cve-2017-7921_auth_bypass_config_decryptor

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

encryption-decryption-toolsexploitationinformation-gathering+3
4 years ago
Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC preview

Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC

GitHubdarknesschieftain/injection-vulnerability-in-paradox-security-systems-ipr512-cve-2023-24709-poc

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…

exploitationiot-securitypenetration-testing+3
3 years ago
CVE-2018-9995_Batch_scanning_exp preview

CVE-2018-9995_Batch_scanning_exp

GitHubzzh217/cve-2018-9995_batch_scanning_exp

CVE-2018-9995_Batch_scanning_exp

exploitationiot-securitypassword-attacks+3
48 years ago
CVE-2023-33768 preview

CVE-2023-33768

GitHubfr0stm0urne/cve-2023-33768

DoS against Belkin smart plugs via crafted firmware injection

exploitationfirmware-analysishardware-iot-security+2
13 years ago
CVE-2023-33768 preview

CVE-2023-33768

GitHubpurseclab/cve-2023-33768

DoS against Belkin smart plugs via crafted firmware injection

android-securityexploitationfirmware-analysis+4
13 years ago
Previous12Next