Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
68 results
CVE-2023-33381-MitraStar-GPT-2741GNAC preview

CVE-2023-33381-MitraStar-GPT-2741GNAC

GitHubduality084/cve-2023-33381-mitrastar-gpt-2741gnac

Proof-of-concept exploit for OS command injection (CVE-2023-33381) in MitraStar GPT-2741GNAC routers. Demonstrates bypass of restricted shell via…

binary-analysisembedded-systems-securityexploitation+4
13
3 years ago
zyxel-p870hn-hardware-hacking preview

zyxel-p870hn-hardware-hacking

GitHubdanyw24/zyxel-p870hn-hardware-hacking

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

educationembedded-systems-securityexploitation+6
16 days ago
GPON-LOADER preview

GPON-LOADER

GitHubchoudai/gpon-loader

Exploit loader for Remote Code Execution w/ Payload on GPON Home Gateway devices (CVE-2018-10562) written in Python.

exploitationiot-securitypayload-generation+3
28 years ago
HosTaGe preview

HosTaGe

GitHubaau-network-security/hostage

Low Interaction Mobile Honeypot

android-securitydefensive-toolseducation+5
995 years ago
Android-Projector-C2-Malware preview

Android-Projector-C2-Malware

GitHubkavan00/android-projector-c2-malware

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

android-securitycommand-and-controldigital-forensics+9
184 months ago
CVE-2021-33044 preview

CVE-2021-33044

GitHubspy0x7/cve-2021-33044

Dahua IPC/VTH/VTO devices auth bypass exploit

authentication-authorizationexploitationiot-security+2
44 years ago
CVE-2026-23004-Automotive-UDS-Authentication-Bypass-via-Replay-Attack preview

CVE-2026-23004-Automotive-UDS-Authentication-Bypass-via-Replay-Attack

GitHubgeorge0papasotiriou/cve-2026-23004-automotive-uds-authentication-bypass-via-replay-attack

Proof-of-concept exploit demonstrating UDS authentication bypass via challenge-response replay on automotive ECUs, with Python CAN-UDS simulator.

authentication-authorizationembedded-systems-securityexploitation+4
24 days ago
LoHongCam-CVE-2021-33044 preview

LoHongCam-CVE-2021-33044

GitHubhaingn/lohongcam-cve-2021-33044

Python exploit for Dahua device authentication bypass (CVE-2021-33044). Sends crafted malicious data packets to bypass login and gain unauthorized…

authentication-authorizationexploitationiot-security+2
44 years ago
CVE-2020-35391-POC preview

CVE-2020-35391-POC

GitHubdumitory-dev/cve-2020-35391-poc

Tenda N300 Authentication Bypass via Malformed HTTP Request Header

authentication-authorizationexploitationiot-security+3
23 years ago
CVE-2025-65856 preview

CVE-2025-65856

GitHubluismirandaacebedo/cve-2025-65856

Xiongmai XM530 IP Camera ONVIF Complete Authentication Bypass

authentication-authorizationexploitationiot-security+2
38 months ago
DAHUA_AUTH-BYPASS-CVE-2021-33044 preview

DAHUA_AUTH-BYPASS-CVE-2021-33044

GitHubeagle-nett/dahua_auth-bypass-cve-2021-33044

PoC exploit for Dahua authentication bypass (CVE-2021-33044). Scans subnets, tests multiple CVEs, and dumps device configs via crafted cookies…

authentication-authorizationeducationexploitation+4
14 months ago
CVE-2025-41646---Critical-Authentication-Bypass- preview

CVE-2025-41646---Critical-Authentication-Bypass-

GitHubgreenforcenetworks/cve-2025-41646---critical-authentication-bypass-

CVE-2025-41646 - Critical Authentication bypass

authentication-authorizationexploitationids-ips-evasion+5
11 year ago
CVE-2025-1739 preview

CVE-2025-1739

GitHubn0n4m3x41/cve-2025-1739

0day PoC for CVE-2025-1739

authentication-authorizationeducationembedded-systems-security+4
4 months ago
CVE-2021-33044 preview

CVE-2021-33044

GitHubbaza-nato/cve-2021-33044

Exploit for Dahua IPC/VTH/VTO devices that bypasses identity authentication by sending crafted malicious packets, allowing unauthorized access.

authentication-authorizationexploitationiot-security+2
17 months ago
ziti preview

ziti

GitHubopenziti/ziti

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

api-securityauthentication-authorizationcloud-security+7
4.4k2 days ago
DahuaConsole preview

DahuaConsole

GitHubmcw0/dahuaconsole

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

authentication-authorizationembedded-systems-securityexploitation+5
3191 year ago
DahuaLoginBypass preview

DahuaLoginBypass

GitHubbp2008/dahualoginbypass

Chrome extension that uses vulnerabilities CVE-2021-33044 and CVE-2021-33045 to log in to Dahua cameras without authentication.

authentication-authorizationexploitationiot-security+3
1941 month ago
signy preview

signy

GitHubgolioth/signy

Asymmetric cryptography library for generating signed URLs on embedded devices, enabling time-limited resource access using PSA Crypto API with…

authentication-authorizationcryptographyembedded-systems-security+3
705 months ago
Previous1234Next