Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
431 results
CVE-2017-14262 preview

CVE-2017-14262

GitHubzzz66686/cve-2017-14262

Exploit for CVE-2017-14262 targeting Samsung NVR devices: extracts admin MD5 password hash via unauthenticated CGI request and logs in with the hash…

embedded-systems-securityexploitationiot-security+3
6
8 years ago
opensoho preview

opensoho

GitHubrubenbe/opensoho

Lightweight OpenWRT device management platform for small networks. Centralized configuration, monitoring, and WiFi management for 2–20 devices with…

cloud-infrastructure-securityconfiguration-auditingdevsecops+3
1851 day ago
wolfssl preview

wolfssl

GitHubwolfssl/wolfssl

The wolfSSL library is a small, fast, portable implementation of TLS/SSL for embedded devices to the cloud. wolfSSL supports up to TLS 1.3 and DTLS…

cloud-securitycryptographyembedded-systems-security+6
2.9k12h 2m ago
hassh preview
Archived

hassh

GitHubsalesforce/hassh

HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints can be…

anomaly-detectionforensicsincident-response+5
5541 year ago
Loracrack preview

Loracrack

GitHubapplied-risk/loracrack

LoRaWAN session cracker - A PoC for exploiting weak or shared Application Keys

cryptographyexploitationhardware-iot-security+3
194 years ago
CVE-2023-51073 preview

CVE-2023-51073

GitHubchristopher-pace/cve-2023-51073

Firmware Update Server Verification Vulnerability on Buffalo LS210D Version 1.78-0.03

exploitationfirmware-analysishardware-iot-security+3
2 years ago
BlueSpy preview

BlueSpy

GitHubtarlogicsecurity/bluespy

PoC to record audio from a Bluetooth device

bluetooth-securityexploitationhardware-iot-security+3
1.6k4 months ago
CamOver preview

CamOver

GitHubentysec/camover

CamOver is a camera exploitation tool that allows to disclosure network camera admin password.

exploitationinformation-gatheringiot-security+1
5972 years ago
RomBuster preview

RomBuster

GitHubentysec/rombuster

RomBuster is a router exploitation tool that allows to disclosure network router admin password.

exploitationinformation-gatheringiot-security+1
5602 years ago
CamRaptor preview

CamRaptor

GitHubentysec/camraptor

CamRaptor is a tool that exploits several vulnerabilities in popular DVR cameras to obtain network camera credentials.

exploitationhardware-iot-securityinformation-gathering+2
2482 years ago
laf preview

laf

GitHubioactive/laf

This project intends to provide a series of tools to craft, parse, send, analyze and crack a set of LoRaWAN packets in order to audit or pentest the…

cryptographyexploitationfuzzing+5
1884 years ago
Xiaomi_Mi_WiFi_R3G_Vulnerability_POC preview

Xiaomi_Mi_WiFi_R3G_Vulnerability_POC

GitHubultramangaia/xiaomi_mi_wifi_r3g_vulnerability_poc

A login bypass(CVE-2019-18371) and a command injection vulnerability(CVE-2019-18370) in Xiaomi Router R3G up to version 2.28.23.

exploitationiot-securitypenetration-testing+2
1856 years ago
DVR-Exploiter preview

DVR-Exploiter

GitHubcyb0r9/dvr-exploiter

Bash script exploiting CVE-2018-9995 to extract credentials from vulnerable DVRs via web interface, supporting multiple DVR brands for automated…

exploitationiot-securityvulnerability-analysis+1
1137 years ago
pocs_slides preview

pocs_slides

GitHubcq674350529/pocs_slides

my advisory, poc, slides and scripts related to IoT/protocol security

binary-analysisexploitationiot-security+4
720 years ago
TP-Link-WDR-Router-Command-injection_POC preview

TP-Link-WDR-Router-Command-injection_POC

GitHubafang5472/tp-link-wdr-router-command-injection_poc

CVE-2019-6487. A command injection vulnerability in TP-Link WDR5620 Series up to verion 3.

exploitationiot-securitypenetration-testing+2
417 years ago
cve-2020-9375 preview

cve-2020-9375

GitHubthewhiteh4t/cve-2020-9375

TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a crafted HTTP Header…

exploitationhardware-iot-securityiot-security+2
206 years ago
Hikvision-City-Hunter preview

Hikvision-City-Hunter

GitHubvoidsshadows/hikvision-city-hunter

This tool is a modern evolution of older PoCs like those for CVE-2017-7921 and ICSA-17-124-01, updated for 2025 with live console output, threading…

exploitationinformation-gatheringiot-security+5
199 months ago
pwnfb50 preview

pwnfb50

GitHubsecurelayer7/pwnfb50

🔓 transfer ownership of any FB50 smart lock to yourself (CVE-2019-13143)

bluetooth-securityexploitationhardware-iot-security+3
167 years ago
Previous12…24Next