Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
62 results
CVE-2026-73296 preview

CVE-2026-73296

GitHub0xblackash/cve-2026-73296

Non-destructive security assessment tool for CVE-2026-73296, checking authentication boundaries on exposed Mobile MCP HTTP servers (ports 8020/8021)…

android-securityexploitationiot-security+3
1 month ago
Terrminus-CVE-2026-2406 preview

Terrminus-CVE-2026-2406

GitHubridpath/terrminus-cve-2026-2406

AsyncIO Scanner & Exploitation Framework for CVE-2026-24061 (Telnet NEW_ENVIRON Auth Bypass). Features high-concurrency discovery, passive…

exploitationinformation-gatheringiot-security+8
28 months ago
untitledgoosetool preview

untitledgoosetool

GitHubcisagov/untitledgoosetool

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

cloud-securitydefensive-toolsdigital-forensics+4
9657 months ago
proxmark3 preview

proxmark3

GitHubproxmark/proxmark3

Proxmark 3

embedded-systems-securityhardware-hackinghardware-security+3
3.6k9 months ago
urgent11-detector preview

urgent11-detector

GitHubarmissecurity/urgent11-detector

URGENT/11 detection tool by Armis

embedded-systems-securityinformation-gatheringiot-security+5
647 years ago
tinydtls preview

tinydtls

GitHubcontiki-ng/tinydtls

A version of tinyDTLS that is refactored to be more easy to use "standalone" (e.g. without bindings to a specific IP-stack).

cryptographyencryption-decryption-toolsiot-security+1
84 years ago
BLEBoy preview

BLEBoy

GitHubnccgroup/bleboy

BLEBoy is a training tool to teach users about BLE security by providing a single BLE peripheral that can be used to experiment with each BLE pairing…

bluetooth-securityeducationembedded-systems-security+3
496 years ago
DahuaConsole preview

DahuaConsole

GitHubmcw0/dahuaconsole

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

authentication-authorizationembedded-systems-securityexploitation+5
3211 year ago
HikPasswordHelper preview

HikPasswordHelper

GitHubbp2008/hikpasswordhelper

A tool which exploits a backdoor in Hikvision camera firmwares circa 2014-2016 to help the owner change a forgotten password.

embedded-systems-securityexploitationhardware-security+2
2696 years ago
fcn- preview

fcn-

GitHublongzai2651/fcn-

Free tool to connect private networks securely using encryption (AES/ChaCha20) with TLS authentication, supporting multi-platform remote access and…

encryption-decryption-toolsiot-securitynetwork-security+2
38 years ago
FOFA-API-Threaded-Searcher preview

FOFA-API-Threaded-Searcher

GitHubjenderal92/fofa-api-threaded-searcher

Multi‑threaded Python tool to query FOFA API, extract custom fields (IP, port, cert, TLS, etc.), deduplicate results, and resume interrupted searches.

information-gatheringiot-securityosint+1
4 months ago
Tool_Exploit_Password_Camera_CVE-2018-9995 preview

Tool_Exploit_Password_Camera_CVE-2018-9995

GitHublequockhanh2k/tool_exploit_password_camera_cve-2018-9995

Exploit tool for CVE-2018-9995 that extracts credentials from vulnerable DVR devices via Google dorking and direct IP access.

exploitationiot-securitypassword-attacks+3
4 years ago
Tool_Camera_Exploit_Netwave_CVE-2018-6479 preview

Tool_Camera_Exploit_Netwave_CVE-2018-6479

GitHublequockhanh2k/tool_camera_exploit_netwave_cve-2018-6479

Exploit tool for CVE-2018-6479, a denial-of-service vulnerability in Netwave IP cameras. Targets IoT devices to trigger temporary service disruption…

exploitationhardware-iot-securityiot-security+1
4 years ago
sparkplugFuzzer preview

sparkplugFuzzer

GitHubbishopfox/sparkplugfuzzer

Fuzzer for the Sparkplug B IIoT protocol

authenticationdynamic-analysis-sandboxingfuzzing+5
23 months ago
CECster preview

CECster

GitHubnccgroup/cecster

A GUI-based tool to perform security testing against the HDMI CEC (Consumer Electronics Control) and HEC (HDMI Ethernet Channel) protocols

embedded-systems-securityfuzzinghardware-security+3
3112 years ago
CVE-2018-9995_dvr_credentials-dev_tool preview

CVE-2018-9995_dvr_credentials-dev_tool

GitHublikaifeng0/cve-2018-9995_dvr_credentials-dev_tool

Exploit tool for CVE-2018-9995 that extracts credentials from exposed DVR devices via HTTP request with cookie bypass, targeting multiple vendor…

exploitationinformation-gatheringiot-security+3
7 years ago
HikvisionExploiter preview

HikvisionExploiter

GitHubtamim1089/hikvisionexploiter

HikvisionExploiter is a Python-based utility designed to automate exploitation and directory accessibility checks on Hikvision network cameras…

command-and-controlencryption-decryption-toolsexploitation+8
3899 months ago
Hikvision-City-Hunter preview

Hikvision-City-Hunter

GitHubvoidsshadows/hikvision-city-hunter

This tool is a modern evolution of older PoCs like those for CVE-2017-7921 and ICSA-17-124-01, updated for 2025 with live console output, threading…

exploitationinformation-gatheringiot-security+5
1910 months ago
Previous1234Next