Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
46 results
CVE-2026-8888-Printer-Firmware-Unsigned-Update-via-HTTP preview

CVE-2026-8888-Printer-Firmware-Unsigned-Update-via-HTTP

GitHubgeorge0papasotiriou/cve-2026-8888-printer-firmware-unsigned-update-via-http

Demonstrates CVE-2026-8888, an unsigned printer firmware update over HTTP, including a malicious update server and vulnerable printer emulator for…

embedded-systems-securityexploitationfirmware-analysis+4
27 days ago
hikvision_CVE-2017-7921_auth_bypass_config_decryptor preview
Archived

hikvision_CVE-2017-7921_auth_bypass_config_decryptor

GitHubchrisjd20/hikvision_cve-2017-7921_auth_bypass_config_decryptor

This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.

encryption-decryption-toolsexploitationhardware-iot-security+3
1165 years ago
trommel preview
Archived

trommel

GitHubcertcc/trommel

TROMMEL: Sift Through Embedded Device Files to Identify Potential Vulnerable Indicators

embedded-systems-securityfirmware-analysishardware-security+6
2136 years ago
LinksysLeaks preview

LinksysLeaks

GitHubjollyjumbuckk/linksysleaks

Python3 script to scan for Linksys smart wifi devices that are vulnerable to CVE-2014-8244

educationexploitationinformation-gathering+5
63 years ago
internet-of-vulnerable-things preview

internet-of-vulnerable-things

GitHubotsmr/internet-of-vulnerable-things

The results of my small term paper on the topic of the Internet of Vulnerable Things and the exploit for CVE-2022-48194.

educationembedded-systems-securityexploitation+6
193 years ago
CVE-2019-9653 preview

CVE-2019-9653

GitHubgrayoneday/cve-2019-9653

Proof-of-concept exploit for CVE-2019-9653 demonstrating unauthenticated remote code execution as root on NUUO NVR devices via vulnerable PHP scripts.

embedded-systems-securityexploitationiot-security+3
7 years ago
Damn-Vulnerable-Drone preview

Damn-Vulnerable-Drone

GitHubnicholasaleks/damn-vulnerable-drone

Damn Vulnerable Drone is an intentionally vulnerable drone hacking simulator based on the popular ArduPilot/MAVLink architecture, providing a…

educationexploitationhardware-iot-security+7
7941 month ago
DVR-Exploiter preview

DVR-Exploiter

GitHubcyb0r9/dvr-exploiter

Bash script exploiting CVE-2018-9995 to extract credentials from vulnerable DVRs via web interface, supporting multiple DVR brands for automated…

exploitationiot-securityvulnerability-analysis+1
1127 years ago
CVE-2025-40634 preview

CVE-2025-40634

GitHubhacefresko/cve-2025-40634

Exploit for stack-based buffer overflow found in the conn-indicator binary in the TP-Link Archer AX50 router

binary-exploitationembedded-systems-securityexploitation+5
3110 months ago
HikVision-CVE-2017-7921 preview

HikVision-CVE-2017-7921

GitHubkooroshsanaei/hikvision-cve-2017-7921

Multi-threaded scanner to identify HikVision cameras vulnerable to CVE-2017-7921 by testing the ONVIF snapshot endpoint for unauthorized access.

exploitationinformation-gatheringiot-security+3
62 years ago
CVE-2025-55971-Blind-Unauthenticated-SSRF-in-TCL-Smart-TV-UPnP-DLNA-AVTransport preview

CVE-2025-55971-Blind-Unauthenticated-SSRF-in-TCL-Smart-TV-UPnP-DLNA-AVTransport

GitHubszym0n13k/cve-2025-55971-blind-unauthenticated-ssrf-in-tcl-smart-tv-upnp-dlna-avtransport

TCL 65C655 Smart TV, running firmware version V8-R75PT01-LF1V269.001116 (Android TV, Kernel 5.4.242+), is vulnerable to a blind, unauthenticated…

exploitationiot-securitynetwork-security+3
11 months ago
scan-cve-2026-24061 preview

scan-cve-2026-24061

GitHubkillsystema/scan-cve-2026-24061

Scans for CVE-2026-24061 telnetd auth bypass, generating payloads and verifying root access on vulnerable GNU inetutils telnetd devices.

exploitationiot-securitynetwork-security+3
6 months ago
CVE-2018-9995_dvr_credentials preview

CVE-2018-9995_dvr_credentials

GitHubabizchi/cve-2018-9995_dvr_credentials

Python exploit for CVE-2018-9995 that retrieves exposed DVR credentials by bypassing authentication on vulnerable web interfaces.

exploitationinformation-gatheringiot-security+3
7 years ago
hikvision_CVE-2017-7921_auth_bypass_config_decryptor preview

hikvision_CVE-2017-7921_auth_bypass_config_decryptor

GitHubp4tq/hikvision_cve-2017-7921_auth_bypass_config_decryptor

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

encryption-decryption-toolsexploitationinformation-gathering+3
4 years ago
Tenda-Router-VR-and-Exploit preview

Tenda-Router-VR-and-Exploit

GitHubjaden-bowers/tenda-router-vr-and-exploit

Writeup for Tenda AC15 router firmware rehosting and remote command execution (CVE-2020-10987) exploit replication.

binary-exploitationeducationembedded-systems-security+8
9 months ago
boa-detector preview

boa-detector

GitHubcorelight/boa-detector

A vulnerable Boa web server detector.

iot-securitynetwork-securitysupply-chain-security+3
3 years ago
CVE-2023-31595 preview

CVE-2023-31595

GitHubyozarseef95/cve-2023-31595

IC Realtime ICIP-P2012T is vulnerable to Incorrect Access Control via an open port

exploitationhardware-securityinformation-gathering+3
3 years ago
CVE-2026-2222-MQTT-Broker-CONNECT-Packet-Heap-Overflow preview

CVE-2026-2222-MQTT-Broker-CONNECT-Packet-Heap-Overflow

GitHubgeorge0papasotiriou/cve-2026-2222-mqtt-broker-connect-packet-heap-overflow

Demonstrates CVE-2026-2222 heap overflow in MQTT CONNECT packet handling with a simulated vulnerable broker and proof-of-concept exploit code for…

binary-exploitationeducationexploitation+2
27 days ago
Previous123Next