Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
DVR-Exploiter preview

DVR-Exploiter

GitHubcyb0r9/dvr-exploiter

Bash script exploiting CVE-2018-9995 to extract credentials from vulnerable DVRs via web interface, supporting multiple DVR brands for automated…

exploitationiot-securityvulnerability-analysis+1
113
7 years ago
DVR_Sploit preview

DVR_Sploit

GitHubx3rx3ssec/dvr_sploit

Simple python3 script to automate CVE-2018-9995

exploitationinformation-gatheringiot-security+3
112 years ago
CVE-2022-36267-PoC preview

CVE-2022-36267-PoC

GitHub0xnslabs/cve-2022-36267-poc

PoC Script for CVE-2022-36267: Exploits an unauthenticated remote command injection vulnerability in Airspan AirSpot 5410 antenna.

command-and-controleducationexploitation+3
122 years ago
CVE-2022-30023 preview

CVE-2022-30023

GitHubhaniwa0x01/cve-2022-30023

Authenticated command injection exploit for Tenda HG9 routers. Provides interactive remote shell access via Python script for penetration testing and…

command-and-controlexploitationiot-security+3
84 years ago
thingernet-graph preview

thingernet-graph

GitHubnccgroup/thingernet-graph

Python script to generate neo4j Cypher representation of a collection of IoT devices for visualisation and query.

embedded-systems-securityinformation-gatheringiot-security+3
79 years ago
LinksysLeaks preview

LinksysLeaks

GitHubjollyjumbuckk/linksysleaks

Python3 script to scan for Linksys smart wifi devices that are vulnerable to CVE-2014-8244

educationexploitationinformation-gathering+5
63 years ago
CVE-2022-45701 preview

CVE-2022-45701

GitHubgeniuszly/cve-2022-45701

it is script designed to exploit certain vulnerabilities in routers by sending payloads through SNMP (Simple Network Management Protocol). The script…

educationexploitationiot-security+6
52 years ago
CVE-2022-36553-PoC preview

CVE-2022-36553-PoC

GitHub0xnslabs/cve-2022-36553-poc

PoC Script for CVE-2022-36553: Exploits an unauthenticated remote command injection vulnerability in Hytec Inter HWL-2511-SS device.

command-and-controleducationexploitation+3
62 years ago
CVE-2024-25832-PoC preview

CVE-2024-25832-PoC

GitHub0xnslabs/cve-2024-25832-poc

PoC Script for CVE-2024-25832: Exploit chain reverse shell, information disclosure (root password leak) + unrestricted file upload in DataCube3

educationexploitationinformation-gathering+3
42 years ago
bandexploit preview

bandexploit

GitHubcoleshelly/bandexploit

M1 Band Smart Watch Bluetooth Low Energy Exploit python script (CVE-2018-11631)

bluetooth-securityexploitationhardware-iot-security+3
26 years ago
CVE-2020-35575-TP-LINK-TL-WR841ND-password-disclosure preview

CVE-2020-35575-TP-LINK-TL-WR841ND-password-disclosure

GitHubdylvie/cve-2020-35575-tp-link-tl-wr841nd-password-disclosure

Weaponized exploit script for CVE-2020-35575, a password-disclosure vulnerability in TP-Link router web interfaces, granting remote administrative…

embedded-systems-securityexploitationiot-security+3
21 year ago
CVE-2024-29972 preview

CVE-2024-29972

GitHubwanlichangchengwanlichang/cve-2024-29972

Exploit script for CVE-2024-29972 Zyxel NAS backdoor account, combining with CVE-2024-29973 for unauthorized root access via NsaRescueAngel.

exploitationiot-securitypenetration-testing+3
12 years ago
cve-2024-10914 preview

cve-2024-10914

GitHubyenyangmjaze/cve-2024-10914

Proof-of-concept exploit for CVE-2024-10914, a command injection vulnerability in D-Link NAS devices via the account_mgr.cgi script. Includes…

command-and-controlexploitationiot-security+3
11 year ago
Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC preview

Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC

GitHubdarknesschieftain/injection-vulnerability-in-paradox-security-systems-ipr512-cve-2023-24709-poc

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…

exploitationiot-securitypenetration-testing+3
3 years ago
CVE-2022-25064 preview

CVE-2022-25064

GitHubexploitwritter/cve-2022-25064

This script exploits a remote command execution vulnerability in the TPLink WR840N router, using the configure function IPv6 protocol.

command-and-controlexploitationiot-security+3
4 years ago
AnonHik preview

AnonHik

GitHubanonkigroup/anonhik

Python script get image from Hikvision camera with CVE-2017-7921 vulnerability

exploitationinformation-gatheringiot-security+2
2 years ago
CVE-2024-34463 preview

CVE-2024-34463

GitHubyash-chandna/cve-2024-34463

Proof-of-concept exploit for CVE-2024-34463 targeting insufficient Bluetooth security in BPL Smart Weighing Scale PWS-01-BT. Includes BLE scanner and…

bluetooth-securityexploitationhardware-iot-security+3
1 year ago
CVE-2022-25062 preview

CVE-2022-25062

GitHubexploitwritter/cve-2022-25062

This script exploits a vulnerability (IoF) in the TPLink WR840N router, using a field for injecting code in the module DNS.

exploitationhardware-iot-securityiot-security+3
4 years ago
Previous12Next