Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
165 results
Netgrave preview

Netgrave

GitHubxewdy444/netgrave

A tool for retrieving login credentials from Netwave IP cameras using a memory dump vulnerability (CVE-2018-17240)

educationexploitationinformation-gathering+5
7
28 days ago
Hipcam-RTSP-Format-Validation-Vulnerability preview

Hipcam-RTSP-Format-Validation-Vulnerability

GitHubmaximilianljungblut/hipcam-rtsp-format-validation-vulnerability

This POC exploits a format validation vulnerability in the RTSP service of the Hipcam RealServer/V1.0, inducing a crash for approximately 45 seconds…

exploitationfuzzingiot-security+2
182 years ago
Bluetooth-Attacks-CVE-2025-27840 preview

Bluetooth-Attacks-CVE-2025-27840

GitHubdemining/bluetooth-attacks-cve-2025-27840

Bitcoin Cryptanalysis: CVE-2025-27840 Vulnerability in ESP32 Microcontrollers Puts Billions of IoT Devices at Risk via Wi-Fi & Bluetooth

bluetooth-securitycryptographyeducation+7
121 year ago
HG532d-RCE-Exploit preview

HG532d-RCE-Exploit

GitHubwilfred-wulbou/hg532d-rce-exploit

A Remote Code Execution (RCE) exploit for Huawei HG532d based on CVE-2017-17215 vulnerability. Modded from original PoC code from exploit-db.com

exploitationexploit-frameworksiot-security+3
95 years ago
CVE-2022-36267-PoC preview

CVE-2022-36267-PoC

GitHub0xnslabs/cve-2022-36267-poc

PoC Script for CVE-2022-36267: Exploits an unauthenticated remote command injection vulnerability in Airspan AirSpot 5410 antenna.

command-and-controleducationexploitation+3
112 years ago
CVE-2022-36553-PoC preview

CVE-2022-36553-PoC

GitHub0xnslabs/cve-2022-36553-poc

PoC Script for CVE-2022-36553: Exploits an unauthenticated remote command injection vulnerability in Hytec Inter HWL-2511-SS device.

command-and-controleducationexploitation+3
62 years ago
CVE-2025-15474 preview

CVE-2025-15474

GitHubnsm-barii/cve-2025-15474

A denial-of-service vulnerability in the AuntyFey BLE smart padlock allows unauthenticated connection floods to lock out legitimate users. …

bluetooth-securityeducationexploitation+4
47 months ago
Exploits preview

Exploits

GitHubsadfud/exploits

Real world and CTFs exploiting web/binary POCs.

binary-exploitationctfexploitation+3
796 years ago
advisories preview

advisories

GitHub0xdea/advisories

A collection of my public security advisories.

cloud-securitycurated-resourceseducation+5
279 months ago
CVE-2026-38427 preview

CVE-2026-38427

GitHubsermikr0/cve-2026-38427

CVE-2026-38427 — Integer Wraparound → Heap Buffer Overflow in Tasmota fetch_jpg() uint16_t (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+4
2 months ago
CVE-2026-38422 preview

CVE-2026-38422

GitHubsermikr0/cve-2026-38422

CVE-2026-38422 — Remote Code Execution via Combined Buffer Overflows in Tasmota fetch_jpg() (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+5
2 months ago
CVE-2026-38426 preview

CVE-2026-38426

GitHubsermikr0/cve-2026-38426

CVE-2026-38426 — strcpy() Stack Buffer Overflow in Tasmota fetch_jpg() boundary[40] (Tasmota <= 15.3.0.3)

binary-exploitationembedded-systems-securityexploitation+4
2 months ago
CVE-2025-65855 preview

CVE-2025-65855

GitHubluismirandaacebedo/cve-2025-65855

Security advisory for CVE-2025-65855 - Multiple vulnerabilities in HelpFlash IoT OTA update mechanism

embedded-systems-securityexploitationfirmware-analysis+3
8 months ago
Dorset_SmartLock_Vulnerability preview

Dorset_SmartLock_Vulnerability

GitHubabhijithaj/dorset_smartlock_vulnerability

This repository is for Dorset_SmartLock_vulnerability. CVE-2025-25650 is suggested by MITRE which is yet to confirm.

embedded-systems-securityexploitationhardware-security+3
1 year ago
CVE-2017-7921-EXPLOIT preview

CVE-2017-7921-EXPLOIT

GitHubk3ystr0k3r/cve-2017-7921-exploit

A PoC exploit for CVE-2017-7921 - Hikvision Camera Series Improper Authentication Vulnerability.

authenticationexploitationinformation-gathering+3
501 year ago
TP-Link-ArcherC5-RCE preview

TP-Link-ArcherC5-RCE

GitHubjackdoan/tp-link-archerc5-rce

CVE-2018-19537

command-and-controlembedded-systems-securityexploitation+8
207 years ago
singularity preview

singularity

GitHubnccgroup/singularity

A DNS rebinding attack framework.

dns-analysisexploitationinformation-gathering+6
1.3k1 month ago
CVE-2024-29269-EXPLOIT preview

CVE-2024-29269-EXPLOIT

GitHubk3ystr0k3r/cve-2024-29269-exploit

A PoC exploit for CVE-2024-29269 - Telesquare TLR-2005KSH Remote Code Execution (RCE)

educationexploitationiot-security+3
72 years ago
Previous12…10Next