Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
27 results
DVR_Sploit preview

DVR_Sploit

GitHubx3rx3ssec/dvr_sploit

Simple python3 script to automate CVE-2018-9995

exploitationinformation-gatheringiot-security+3
11
2 years ago
thingernet-graph preview

thingernet-graph

GitHubnccgroup/thingernet-graph

Python script to generate neo4j Cypher representation of a collection of IoT devices for visualisation and query.

embedded-systems-securityinformation-gatheringiot-security+3
79 years ago
LinksysLeaks preview

LinksysLeaks

GitHubjollyjumbuckk/linksysleaks

Python3 script to scan for Linksys smart wifi devices that are vulnerable to CVE-2014-8244

educationexploitationinformation-gathering+5
63 years ago
AnonHik preview

AnonHik

GitHubanonkigroup/anonhik

Python script get image from Hikvision camera with CVE-2017-7921 vulnerability

exploitationinformation-gatheringiot-security+2
2 years ago
CVE-2022-45701 preview

CVE-2022-45701

GitHubgeniuszly/cve-2022-45701

it is script designed to exploit certain vulnerabilities in routers by sending payloads through SNMP (Simple Network Management Protocol). The script…

educationexploitationiot-security+6
52 years ago
DVR-Exploiter preview

DVR-Exploiter

GitHubcyb0r9/dvr-exploiter

Bash script exploiting CVE-2018-9995 to extract credentials from vulnerable DVRs via web interface, supporting multiple DVR brands for automated…

exploitationiot-securityvulnerability-analysis+1
1137 years ago
bandexploit preview

bandexploit

GitHubcoleshelly/bandexploit

M1 Band Smart Watch Bluetooth Low Energy Exploit python script (CVE-2018-11631)

bluetooth-securityexploitationhardware-iot-security+3
26 years ago
CallStranger preview

CallStranger

GitHubyunuscadirci/callstranger

Vulnerability checker for Callstranger (CVE-2020-12695)

data-exfiltrationdns-analysisiot-security+3
4035 years ago
CVE-2018-14714-POC preview

CVE-2018-14714-POC

GitHubsunn1day/cve-2018-14714-poc

CVE-2018-14714 PoC RCE

command-and-controlexploitationiot-security+3
94 years ago
CVE-2020-25078 preview

CVE-2020-25078

GitHubchinayozz/cve-2020-25078

Batch exploit script for CVE-2020-25078 targeting D-Link DCS series cameras to extract account credentials via information disclosure vulnerability.

exploitationinformation-gatheringiot-security+3
4 years ago
CVE-2017-7921 preview

CVE-2017-7921

GitHubgabrielavls/cve-2017-7921

CVE-2017-7921 exploit. Allows admin password retrieval and automatic snapshot download.

exploitationinformation-gatheringiot-security+3
3 years ago
Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC preview

Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC

GitHubdarknesschieftain/injection-vulnerability-in-paradox-security-systems-ipr512-cve-2023-24709-poc

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…

exploitationiot-securitypenetration-testing+3
3 years ago
cve-2024-10914 preview

cve-2024-10914

GitHubyenyangmjaze/cve-2024-10914

Proof-of-concept exploit for CVE-2024-10914, a command injection vulnerability in D-Link NAS devices via the account_mgr.cgi script. Includes…

command-and-controlexploitationiot-security+3
11 year ago
CVE-2022-30114 preview

CVE-2022-30114

GitHubstr0ng4le/cve-2022-30114

Proof-of-concept exploit for CVE-2022-30114, a heap-based buffer overflow in Fastweb FastGate routers. Sends a crafted HTTP Authorization header to…

binary-exploitationexploitationiot-security+3
3 years ago
CVE-2019-19393 preview

CVE-2019-19393

GitHubmiguelhamal/cve-2019-19393

Proof-of-concept for stored XSS vulnerability in Rittal CMC PU III web management interface, enabling persistent client-side script injection before…

exploitationhardware-securityiot-security+3
5 years ago
Sweet-Pineapple-Builder preview

Sweet-Pineapple-Builder

GitLab0xsamy/sweet-pineapple-builder

Build your own custom WiFi Pineapple Tetra firmware tailored to any based MIPS 24Kc architecture router. (WiFi Pineapple Tetra DIY)

embedded-systems-securityfirmware-analysishardware-security+4
394 years ago
CVE-2020-35575-TP-LINK-TL-WR841ND-password-disclosure preview

CVE-2020-35575-TP-LINK-TL-WR841ND-password-disclosure

GitHubdylvie/cve-2020-35575-tp-link-tl-wr841nd-password-disclosure

Weaponized exploit script for CVE-2020-35575, a password-disclosure vulnerability in TP-Link router web interfaces, granting remote administrative…

embedded-systems-securityexploitationiot-security+3
21 year ago
hichipreset preview
Archived

hichipreset

GitHubprisect/hichipreset

Hicip IP admin password reset script using CVE-2020-9529. This is made for educational purposes only of course.

educationexploitationiot-security+2
1 year ago
Previous12Next