Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
41 results
bugstropics preview

bugstropics

GitHubdozernz/bugstropics

Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk

cryptographyembedded-systems-securityexploitation+4
124 years ago
CVE-2026-23005-Matter-Commissioning-Code-Brute-Force-Without-Rate-Limit preview

CVE-2026-23005-Matter-Commissioning-Code-Brute-Force-Without-Rate-Limit

GitHubgeorge0papasotiriou/cve-2026-23005-matter-commissioning-code-brute-force-without-rate-limit

Simulates a Matter commissioning code brute-force attack (CVE-2026-23005) using Python to demonstrate missing rate limiting and lockout on 8-digit…

embedded-systems-securityexploitationiot-security+2
1 month ago
awind-research preview

awind-research

GitHubqkaiser/awind-research

This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

embedded-systems-securityexploitationhardware-iot-security+5
135 years ago
CVE-2020-29669 preview

CVE-2020-29669

GitHubs1lkys/cve-2020-29669

Macally WIFISD2

authentication-authorizationembedded-systems-securityexploitation+5
5 years ago
zyxel-vmg8825-keygen preview

zyxel-vmg8825-keygen

GitHubboginw/zyxel-vmg8825-keygen

A key generator for Zyxel VMG8825-T50

embedded-systems-securityexploitationhardware-security+3
283 years ago
VULNERAVEL-CVE-2018-14847---CREDENCIAIS-EXTRAIDAS preview

VULNERAVEL-CVE-2018-14847---CREDENCIAIS-EXTRAIDAS

GitHubmourafuseti/vulneravel-cve-2018-14847---credenciais-extraidas

VULNERAVEL CVE-2018-14847 - CREDENCIAIS EXTRAIDAS MIKROTIK EM PYTHON

exploitationiot-securitynetwork-security+3
14 months ago
Tool_Exploit_Password_Camera_CVE-2018-9995 preview

Tool_Exploit_Password_Camera_CVE-2018-9995

GitHublequockhanh2k/tool_exploit_password_camera_cve-2018-9995

Exploit tool for CVE-2018-9995 that extracts credentials from vulnerable DVR devices via Google dorking and direct IP access.

exploitationiot-securitypassword-attacks+3
4 years ago
CVE-2023-43261 preview

CVE-2023-43261

GitHubwin3zz/cve-2023-43261

CVE-2023-43261 - Credential Leakage Through Unprotected System Logs and Weak Password Encryption

exploitationiot-securitymisconfiguration+3
572 years ago
CVE-2025-45466 preview

CVE-2025-45466

GitHubzgsnj123/cve-2025-45466

It is the details of CVE-2025-45466

authenticationembedded-systems-securityexploitation+6
11 year ago
mySCADA-myPRO-7-Hardcoded-FTP-Username-and-Password preview

mySCADA-myPRO-7-Hardcoded-FTP-Username-and-Password

GitHubemreovunc/myscada-mypro-7-hardcoded-ftp-username-and-password

CVE-2018-11311 | mySCADA myPRO 7 Hardcoded FTP Username and Password Vulnerability

embedded-systems-securityexploitationhardware-iot-security+4
128 years ago
CVE-2024-22853 preview

CVE-2024-22853

GitHubfallenskill1/cve-2024-22853

D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote attackers to obtain root…

embedded-systems-securityexploitationfirmware-analysis+5
2 years ago
HTC preview

HTC

GitHubwmasday/htc

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

exploitationiot-securitypassword-attacks+3
33 years ago
hikvision_brute preview

hikvision_brute

GitHubnanotrash/hikvision_brute

Brute Hikvision CAMS with CVE-2021-36260 Exploit

exploitationiot-securitypassword-attacks+3
33 years ago
gardyn preview

gardyn

GitHubmselbrede/gardyn

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631

command-and-controlembedded-systems-securityexploitation+8
1 year ago
Digisol-DG--GR1321-s-Password-Storage-in-Plaintext--CVE-2024-4232 preview

Digisol-DG--GR1321-s-Password-Storage-in-Plaintext--CVE-2024-4232

GitHubredfox-security/digisol-dg--gr1321-s-password-storage-in-plaintext--cve-2024-4232

Proof-of-concept exploit for CVE-2024-4232 targeting plaintext password storage in Digisol DG-GR1321 routers. Demonstrates extraction of credentials…

exploitationiot-securitymisconfiguration+3
2 years ago
CVE-2025-63666 preview

CVE-2025-63666

GitHubremenis/cve-2025-63666

Tenda AC15 cookie exposure

authenticationexploitationpassword-attacks+2
19 months ago
CVE-2024-24488 preview

CVE-2024-24488

GitHublegacyobj/cve-2024-24488

An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component.

embedded-systems-securityexploitationhardware-iot-security+3
52 years ago
CVE-2023-28810 preview

CVE-2023-28810

GitHubskylightcyber/cve-2023-28810

Exploit code for CVE-2023-28810

embedded-systems-securityexploitationhardware-iot-security+3
3 years ago
Previous123Next