Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
746 results
attifyos preview

attifyos

GitHubadi0x90/attifyos

Attify OS - Distro for pentesting IoT devices

educationembedded-systems-securityfirmware-analysis+5
1.0k6 years ago
IoT-PT-v1 preview
Archived

IoT-PT-v1

GitHubiot-ptv/iot-pt-v1

A Virtual environment for Pentesting IoT Devices

bluetooth-securityeducationembedded-systems-security+8
4451 year ago
CVE-2026-58457 preview

CVE-2026-58457

GitHubj4ck3lsyn-gen2/cve-2026-58457

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…

command-and-controleducationexploitation+7
22 months ago
bluing preview

bluing

GitHubfo-000/bluing

An intelligence gathering tool for hacking Bluetooth

android-securitybluetooth-securityinformation-gathering+3
1.0k3 years ago
badbox-h713-projector preview

badbox-h713-projector

GitHubflorentineprinzessinzusachsen/badbox-h713-projector

Analysis and cleanup guide for BadBox malware on Allwinner H713 Android projectors: ADB access, infection proof, firmware backup, dropper removal,…

android-securitydigital-forensicsembedded-systems-security+8
312 days ago
CVE-2026-73296 preview

CVE-2026-73296

GitHub0xblackash/cve-2026-73296

Non-destructive security assessment tool for CVE-2026-73296, checking authentication boundaries on exposed Mobile MCP HTTP servers (ports 8020/8021)…

android-securityexploitationiot-security+3
1 month ago
Code-27-Companion-Hub-Exploits preview

Code-27-Companion-Hub-Exploits

GitHubredr0nin/code-27-companion-hub-exploits

Proof of concept for CVE-2026-36027 and CVE-2026-36028

android-securityembedded-systems-securityexploitation+5
13 months ago
packages_apps_Nfc_AOSP10_r33_CVE-2020-0453 preview

packages_apps_Nfc_AOSP10_r33_CVE-2020-0453

GitHubtrinadh465/packages_apps_nfc_aosp10_r33_cve-2020-0453

Android NFC package patched for CVE-2020-0453, addressing a security vulnerability in the NFC component.

android-securityembedded-systems-securityexploitation+3
4 years ago
HosTaGe preview

HosTaGe

GitHubaau-network-security/hostage

Low Interaction Mobile Honeypot

android-securitydefensive-toolseducation+5
995 years ago
byd-dolphin-hacking preview

byd-dolphin-hacking

GitHubwheregoes/byd-dolphin-hacking

Reverse engineering the BYD Dolphin head unit — CAN bus, AVAS, NFC keys, OTA, and more. DiLink 3 / Android 10.

android-securitybinary-analysisembedded-systems-security+7
596 days ago
HomePWN preview

HomePWN

GitHubtelefonica/homepwn

HomePwn - Swiss Army Knife for Pentesting of IoT Devices

bluetooth-securityexploitationhardware-iot-security+5
9335 years ago
CVE-2023-33381-MitraStar-GPT-2741GNAC preview

CVE-2023-33381-MitraStar-GPT-2741GNAC

GitHubduality084/cve-2023-33381-mitrastar-gpt-2741gnac

Proof-of-concept exploit for OS command injection (CVE-2023-33381) in MitraStar GPT-2741GNAC routers. Demonstrates bypass of restricted shell via…

binary-analysisembedded-systems-securityexploitation+4
133 years ago
PSO - Printer Security Offensive preview

PSO - Printer Security Offensive

GitLabhivesecurity/pso-printer-security-offensive

Offensive security tool for printer pentesting

exploitationhardware-securityinformation-gathering+4
9 months ago
CVE-2026-75616 preview

CVE-2026-75616

GitHubtotekuh/cve-2026-75616

Proof-of-concept exploit for authenticated OS command injection in TP-Link Archer C20 v6 web management interface, executing root commands via BPA…

embedded-systems-securityexploitationiot-security+1
11 month ago
CVE-2022-28906-POC preview

CVE-2022-28906-POC

GitHubfinnvle/cve-2022-28906-poc

Python proof-of-concept for unauthenticated OS command injection in TOTOLINK N600R, exploiting the langType parameter to execute arbitrary commands…

command-and-controlexploitationhardware-iot-security+3
11 month ago
CVE-2020-8958 preview
Archived

CVE-2020-8958

GitHubqurbat/cve-2020-8958

Proof of concept for arbitrary OS command execution on Guangzhou/V-SOL 1GE ONU devices (CVE-2020-8958)

embedded-systems-securityexploitationhardware-iot-security+3
75 years ago
CVE-2026-3227-TP-Link-authenticated-RCE preview

CVE-2026-3227-TP-Link-authenticated-RCE

GitHubdo4choo/cve-2026-3227-tp-link-authenticated-rce

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

binary-exploitationeducationexploitation+6
433 months ago
uberscan preview

uberscan

GitHubbatchmcnulty/uberscan

Security program for recovering passwords and pen-testing servers, routers and IoT devices using brute-force password attacks.

information-gatheringiot-securitynetwork-security+2
562 years ago
Previous12…42Next