Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
94 results
kl-security-key preview

kl-security-key

GitHubkaraaslanlabs/kl-security-key

Experimental RP2040 FIDO2/WebAuthn authenticator with packed attestation and documented Windows/Entra interoperability

authenticationcryptographyeducation+6
4
2 days ago
CVE-2024-20154 preview

CVE-2024-20154

GitHubharbingerse7en/cve-2024-20154

Technical writeup analyzing CVE-2024-20154, a stack-based buffer overflow in MediaTek MT6769 NB-IoT baseband firmware, covering reverse engineering…

binary-analysiseducationembedded-systems-security+8
3 months ago
CVE-2026-2035703-x300 preview

CVE-2026-2035703-x300

GitHubdanish1162/cve-2026-2035703-x300

Tozed ZLT X300 5G CPE — Remote Root Code Execution via SDR Rogue Base Station (CVE-2026-2035703, CWE-78, CVSS 9.8) — Coordinated Disclosure

binary-analysiseducationexploitation+4
1 month ago
zyxel-p870hn-hardware-hacking preview

zyxel-p870hn-hardware-hacking

GitHubdanyw24/zyxel-p870hn-hardware-hacking

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

educationembedded-systems-securityexploitation+6
1 month ago
awesome-connected-things-sec preview

awesome-connected-things-sec

GitHubv33ru/awesome-connected-things-sec

A Curated list of Security Resources for all connected things

ctfcurated-resourceseducation+9
3.6k1 month ago
blackbox-fuzzing preview

blackbox-fuzzing

GitHubotsmr/blackbox-fuzzing

Fuzzing IoT Devices Using the Router TL-WR902AC as Example

binary-analysiseducationexploitation+6
13310 months ago
meshtastic-cve-2025-52464-poc preview

meshtastic-cve-2025-52464-poc

GitHubmsdmehdipour/meshtastic-cve-2025-52464-poc

Software-only proof of concept for CVE-2025-52464 in Meshtastic Direct Messages

cryptographyeducationembedded-systems-security+4
12 months ago
CVE-2026-21009-ECDSA-Nonce-Reuse-in-IoT-Firmware-Signing preview

CVE-2026-21009-ECDSA-Nonce-Reuse-in-IoT-Firmware-Signing

GitHubgeorge0papasotiriou/cve-2026-21009-ecdsa-nonce-reuse-in-iot-firmware-signing

Educational Python simulation demonstrating ECDSA nonce reuse in IoT firmware signing, showing how an attacker can recover private keys from two…

cryptographyeducationexploitation+3
2 months ago
CVE-2026-2222-MQTT-Broker-CONNECT-Packet-Heap-Overflow preview

CVE-2026-2222-MQTT-Broker-CONNECT-Packet-Heap-Overflow

GitHubgeorge0papasotiriou/cve-2026-2222-mqtt-broker-connect-packet-heap-overflow

Demonstrates CVE-2026-2222 heap overflow in MQTT CONNECT packet handling with a simulated vulnerable broker and proof-of-concept exploit code for…

binary-exploitationeducationexploitation+2
2 months ago
CVE-2026-6789-Stack-Buffer-Overflow-in-Embedded-TLS-Certificate-Parser preview

CVE-2026-6789-Stack-Buffer-Overflow-in-Embedded-TLS-Certificate-Parser

GitHubgeorge0papasotiriou/cve-2026-6789-stack-buffer-overflow-in-embedded-tls-certificate-parser

Stack buffer overflow PoC in an embedded TLS certificate parser using a crafted X.509 SAN extension for remote code execution on IoT and industrial…

binary-exploitationeducationembedded-systems-security+3
2 months ago
hikihack preview

hikihack

GitHubxjghnxhlh/hikihack

Hikvision CVE-2017-7921 hack

educationexploitationinformation-gathering+3
2 months ago
Exploits preview

Exploits

GitHubsadfud/exploits

Real world and CTFs exploiting web/binary POCs.

binary-exploitationctfexploitation+3
796 years ago
routers-exploit preview

routers-exploit

GitHubelbertavares/routers-exploit

Proof-of-concept exploits for TP-Link routers, including remote command execution and authentication bypass vulnerabilities.

educationexploitationfirmware-analysis+4
116 years ago
Cappriciosec-University preview

Cappriciosec-University

GitHubcappricio-securities/cappriciosec-university

A Hacker's E-learning App for Tamil People

api-securityeducationiot-security+6
123 days ago
CVE-2026-53921 preview

CVE-2026-53921

GitHub0xblackash/cve-2026-53921

CVE-2026-53921

educationiot-securitypapers-research+1
22 months ago
CP-PLUS-EZ-P21-CVE-2026-65893-65894 preview

CP-PLUS-EZ-P21-CVE-2026-65893-65894

GitHubcybervinner/cp-plus-ez-p21-cve-2026-65893-65894

Documents CP PLUS EZ-P21 IP camera CVEs: arbitrary code execution via debug feature and improper authentication of HTTP endpoints, with responsible…

authenticationeducationembedded-systems-security+5
2 months ago
IoTGoat preview

IoTGoat

GitHubowasp/iotgoat

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

educationembedded-systems-securityfirmware-analysis+8
9431 year ago
ezviz_lan_rce preview

ezviz_lan_rce

GitHubinfobyte/ezviz_lan_rce

PoC exploits and Docker build environment for CVE-2023-34551 and CVE-2023-34552 targeting EZVIZ IP cameras, with DEF CON 31 Hardware Hacking Village…

ctfeducationembedded-systems-security+6
143 years ago
Previous123456Next