Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC preview

Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC

GitHubdarknesschieftain/injection-vulnerability-in-paradox-security-systems-ipr512-cve-2023-24709-poc

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…

exploitationiot-securitypenetration-testing+3
3 years ago
duckLogger preview

duckLogger

GitHubitsmmdoha/ducklogger

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

command-and-controldata-exfiltrationembedded-systems-security+8
894 months ago
CVE-2025-5688-FreeRTOS-Plus-TCP-Out-of-Bounds-Write preview

CVE-2025-5688-FreeRTOS-Plus-TCP-Out-of-Bounds-Write

GitHubmbanyamer/cve-2025-5688-freertos-plus-tcp-out-of-bounds-write

PoC exploit for CVE-2025-5688: remote out-of-bounds write in FreeRTOS-Plus-TCP via crafted LLMNR/mDNS queries, causing crash or potential RCE on…

binary-exploitationdns-analysisembedded-systems-security+6
6 months ago
Hipcam-RTSP-Format-Validation-Vulnerability preview

Hipcam-RTSP-Format-Validation-Vulnerability

GitHubmaximilianljungblut/hipcam-rtsp-format-validation-vulnerability

This POC exploits a format validation vulnerability in the RTSP service of the Hipcam RealServer/V1.0, inducing a crash for approximately 45 seconds…

exploitationfuzzingiot-security+2
182 years ago
CVE-2023-34924 preview

CVE-2023-34924

GitHubchrisl0tus/cve-2023-34924

Proof-of-concept exploit for a buffer overflow vulnerability in H3C Magic B1STW router's SetAPInfoById function, causing web service crash and…

binary-exploitationembedded-systems-securityexploitation+3
13 years ago
CVE-2025-7795 preview
Archived

CVE-2025-7795

GitHubbytereaper77/cve-2025-7795

Proof-of-concept exploit for a buffer overflow vulnerability in Tenda routers. Sends crafted unauthenticated POST requests to trigger a crash and…

binary-exploitationembedded-systems-securityexploitation+3
21 year ago
security_articles preview

security_articles

GitHubluismirandaacebedo/security_articles

Technical articles detailing IoT vulnerability research, including WiFi communication flaws and firmware update weaknesses in connected devices, with…

educationembedded-systems-securityhardware-iot-security+3
1111 month ago
CVE-2019-10999 preview

CVE-2019-10999

GitHubtacnetsol/cve-2019-10999

Full exploit for D-Link DCS-5020L, POC crash for others that are vulnerable as well.

binary-exploitationembedded-systems-securityexploitation+4
434 years ago
CVE-2017-7921-Writeup-2026 preview

CVE-2017-7921-Writeup-2026

GitHubmk-ultra-project-monarch/cve-2017-7921-writeup-2026

Vulnerability research write-up on CVE-2017-7921 — a critical unauthenticated auth bypass in Hikvision IP cameras/DVRs/NVRs, covering root cause,…

educationexploitationiot-security+3
11 month ago
CVE-2026-11499 preview

CVE-2026-11499

GitHub0xblackash/cve-2026-11499

CVE-2026-11499

binary-exploitationeducationembedded-systems-security+4
22 months ago
CVE-2025-67445 preview

CVE-2025-67445

GitHubdarkspoook/cve-2025-67445

A PoC for CVE-2025-67445

embedded-systems-securityexploitationiot-security+2
6 months ago
LiberationPlay-CVE-2025-24132-AirBourne-POC preview

LiberationPlay-CVE-2025-24132-AirBourne-POC

GitHubthegaminggallifreyan/liberationplay-cve-2025-24132-airbourne-poc

POC for CVE-2025-24132 (AirBourne). Currently just triggers the overflow and causes a crash

binary-exploitationcryptographydebuggers+7
86 months ago
CVE-2025-51643 preview

CVE-2025-51643

GitHubnastycrow/cve-2025-51643

Documentation of CVE-2025-51643: physical SPI flash extraction on Meitrack T366G-L GPS tracker enabling firmware dump, plaintext credential…

data-exfiltrationembedded-systems-securityexploitation+6
11 year ago
routerfirmwares preview

routerfirmwares

Bitbucketdudux/routerfirmwares

A bunch of routers firmware images. Principally those that are not available and they do need to be extracted via JTAG, UART, desoldering flash or…

curated-resourcesembedded-systems-securityfirmware-analysis+2
11 years ago
CatSniffer-Firmware preview

CatSniffer-Firmware

GitHubelectroniccats/catsniffer-firmware

Firmware repository for CatSniffer, a multi-protocol IoT security research board supporting BLE, Zigbee, Sub-1 GHz, and more, with version-specific…

bluetooth-securityembedded-systems-securityfirmware-analysis+5
394 months ago