Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
670 results
bpflock preview

bpflock

GitHublinux-lock/bpflock

eBPF-driven security tool for locking and auditing Linux machines. Restricts kernel features, blocks fileless execution, protects memory, and hardens…

container-securitydefensive-toolsiot-security
1574 years ago
attifyos preview

attifyos

GitHubadi0x90/attifyos

Attify OS - Distro for pentesting IoT devices

educationembedded-systems-securityfirmware-analysis+5
1.0k6 years ago
CVE-2025-65731 preview

CVE-2025-65731

GitHubwhitej3rry/cve-2025-65731

Advisory for CVE-2025-65731

embedded-systems-securityexploitationhardware-hacking+5
8 months ago
zoneminder preview

zoneminder

GitHubzoneminder/zoneminder

ZoneMinder is a free, open source Closed-circuit television software application developed for Linux which supports IP, USB and Analog cameras.

anomaly-detectiondefensive-toolshardware-security+3
5.9k14h 53m ago
proxmark3 preview

proxmark3

GitHubrfidresearchgroup/proxmark3

Hardware tool for RFID analysis, emulation, and penetration testing. Supports 125kHz, 13.56MHz protocols (MIFARE, iClass, ISO14443/15693) with key…

bluetooth-securitycryptographyembedded-systems-security+11
6.1k22h 19m ago
core preview

core

GitHubsecluso/core

A privacy-preserving Raspberry Pi home security camera that uses advanced end-to-end encryption.

embedded-systems-securityencryption-decryption-toolshardware-iot-security+3
1.7k1 month ago
sunsetscan preview

sunsetscan

GitHubnocoderrandom/sunsetscan

Local-network security auditing with EOL, CVE, device identity, and HTML reports

configuration-auditinginformation-gatheringiot-security+4
56 days ago
f32 preview

f32

GitHubpegork/f32

Ultra-compact ESP32-C3 development board designed for embedded security research, featuring a captive portal example with WiFi scanning and LED…

educationembedded-systems-securityhardware-hacking+4
64010 months ago
IoTGoat preview

IoTGoat

GitHubowasp/iotgoat

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

educationembedded-systems-securityfirmware-analysis+8
93911 months ago
CVE-2025-45512 preview

CVE-2025-45512

GitHubazhariramadhan/cve-2025-45512

Proof-of-concept exploit suite for U-Boot bootloader vulnerabilities, including insecure update mechanisms, hardcoded credentials, debugging…

embedded-systems-securityexploitationfirmware-analysis+5
21 year ago
system_bt_aosp10_cve-2022-20140 preview

system_bt_aosp10_cve-2022-20140

GitHubrenukaselvar/system_bt_aosp10_cve-2022-20140

Android Bluetooth stack (Fluoride) with a proof-of-concept for CVE-2022-20140, demonstrating a Bluetooth vulnerability and providing build…

binary-analysisbluetooth-securityembedded-systems-security+3
2 years ago
bluesnoop preview

bluesnoop

GitHubang13t/bluesnoop

A TUI bluetooth utility for radar analysis and war driving 🦉

bluetooth-securityinformation-gatheringiot-security+3
428 months ago
cve-2020-9375 preview

cve-2020-9375

GitHubthewhiteh4t/cve-2020-9375

TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a crafted HTTP Header…

exploitationhardware-iot-securityiot-security+2
206 years ago
CVE-2025-67159 preview

CVE-2025-67159

GitHubremenis/cve-2025-67159

Vatilon-based IP camera firmware allows authentication bypass and plaintext credential exposure via web.cgi API requests.

authenticationexploitationhardware-iot-security+3
9 months ago
DeadManSwitch preview

DeadManSwitch

GitHubblacksnufkin/deadmanswitch

DeadManSwitch in rust with several triggers (remote local and network)

data-exfiltrationdefensive-toolsencryption-decryption-tools+4
2710 months ago
riotpot preview

riotpot

GitHubaau-network-security/riotpot

IoT and Operational Technology Honeypot

defensive-toolsinformation-gatheringiot-security+2
1053 years ago
HimitsuShell preview

HimitsuShell

GitHubhimitsushell/himitsushell

shell script protector (obfuscation, embedded interpreter, DRM) - invisible to kernel tracing

anti-botbinary-analysiscryptography+6
126 days ago
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
39.1k20h 6m ago
Previous12…38Next