Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
453 results
mp-flipper preview

mp-flipper

GitHubofabel/mp-flipper

Python support for Flipper Zero

embedded-systems-securityiot-securityscripting-automation+1
181
1 year ago
CVE-2025-34037 preview

CVE-2025-34037

GitHubtaxanehh/cve-2025-34037

Python port of the Linksys tmUnblock.cgi RCE exploit

command-and-controleducationembedded-systems-security+4
5 months ago
CVE-2022-28906-POC preview

CVE-2022-28906-POC

GitHubfinnvle/cve-2022-28906-poc

Python proof-of-concept for unauthenticated OS command injection in TOTOLINK N600R, exploiting the langType parameter to execute arbitrary commands…

command-and-controlexploitationhardware-iot-security+3
112 days ago
CVE-2024-54887-PoC preview

CVE-2024-54887-PoC

GitHubgumbraise/cve-2024-54887-poc

TypeScript PoC for CVE-2024-54887 (TP-Link TL-WR940N authenticated RCE)

exploitationhardware-iot-securityiot-security+4
3 months ago
XM_ONVIF_auth_bypass preview

XM_ONVIF_auth_bypass

GitHubkostasereksonas/xm_onvif_auth_bypass

Proof-of-concept code (Bash and Python) for CVE-2025-65856 where ONVIF implementation in in Xiongmai XM530 IP cameras allows for unauthenticated …

exploitationhardware-iot-securityiot-security+3
26 months ago
thingernet-graph preview

thingernet-graph

GitHubnccgroup/thingernet-graph

Python script to generate neo4j Cypher representation of a collection of IoT devices for visualisation and query.

embedded-systems-securityinformation-gatheringiot-security+3
79 years ago
Sweet-Pineapple-Builder preview

Sweet-Pineapple-Builder

GitLab0xsamy/sweet-pineapple-builder

Build your own custom WiFi Pineapple Tetra firmware tailored to any based MIPS 24Kc architecture router. (WiFi Pineapple Tetra DIY)

embedded-systems-securityfirmware-analysishardware-security+4
394 years ago
CVE-2020-8958 preview
Archived

CVE-2020-8958

GitHubqurbat/cve-2020-8958

Proof of concept for arbitrary OS command execution on Guangzhou/V-SOL 1GE ONU devices (CVE-2020-8958)

embedded-systems-securityexploitationhardware-iot-security+3
75 years ago
CVE-2026-0101-BLE-Address-Spoofing-via-Weak-Resolvable-Private-Address preview

CVE-2026-0101-BLE-Address-Spoofing-via-Weak-Resolvable-Private-Address

GitHubgeorge0papasotiriou/cve-2026-0101-ble-address-spoofing-via-weak-resolvable-private-address

Python PoC for CVE-2026-0101 demonstrating BLE address spoofing via replay of a captured Resolvable Private Address to impersonate a trusted…

adversarial-attackbluetooth-securityeducation+3
1 month ago
scapy preview

scapy

GitHubsecdev/scapy

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

bluetooth-securitycryptographydata-exfiltration+23
12.5k13h 48m ago
CVE-2022-45701 preview

CVE-2022-45701

GitHubgeniuszly/cve-2022-45701

it is script designed to exploit certain vulnerabilities in routers by sending payloads through SNMP (Simple Network Management Protocol). The script…

educationexploitationiot-security+6
52 years ago
CVE-2021-36260-hikvision preview

CVE-2021-36260-hikvision

GitHubshubtheone/cve-2021-36260-hikvision

Python exploit for CVE-2021-36260 command injection in Hikvision web servers. Supports safe/unsafe vulnerability verification, remote command…

command-and-controlexploitationiot-security+3
7 months ago
HomePWN preview

HomePWN

GitHubtelefonica/homepwn

HomePwn - Swiss Army Knife for Pentesting of IoT Devices

bluetooth-securityexploitationhardware-iot-security+5
9325 years ago
laf preview

laf

GitHubioactive/laf

This project intends to provide a series of tools to craft, parse, send, analyze and crack a set of LoRaWAN packets in order to audit or pentest the…

cryptographyexploitationfuzzing+5
1884 years ago
HikPwn preview

HikPwn

GitHub4n4nk3/hikpwn

HikPwn, a simple scanner for Hikvision devices with basic vulnerability scanning capabilities written in Python 3.8.

exploitationinformation-gatheringiot-security+2
1304 years ago
expliot preview

expliot

GitLabexpliot_framework/expliot

EXPLIoT - Internet of Things Security Testing and Exploitation framework

exploitationexploit-frameworkshardware-iot-security+2
994 months ago
GPON-LOADER preview

GPON-LOADER

GitHubchoudai/gpon-loader

Exploit loader for Remote Code Execution w/ Payload on GPON Home Gateway devices (CVE-2018-10562) written in Python.

exploitationiot-securitypayload-generation+3
28 years ago
FOFA-API-Threaded-Searcher preview

FOFA-API-Threaded-Searcher

GitHubjenderal92/fofa-api-threaded-searcher

Multi‑threaded Python tool to query FOFA API, extract custom fields (IP, port, cert, TLS, etc.), deduplicate results, and resume interrupted searches.

information-gatheringiot-securityosint+1
3 months ago
Previous12…26Next