Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
42 results
unleashed-firmware preview

unleashed-firmware

GitHubdarkflippers/unleashed-firmware

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

embedded-systems-securityfuzzinghardware-hacking+7
22.1k
3 days ago
CVE-2026-64824-PoC preview

CVE-2026-64824-PoC

GitHubboreas37/cve-2026-64824-poc

CVE-2026-64824 — Home Assistant backup-restore symlink path traversal → root RCE. First working PoC, verified on real HA 2026.5.4 (sitecustomize.py…

exploitationiot-securitypayload-development+2
14 days ago
ghostlock-cve-2026-43499 preview

ghostlock-cve-2026-43499

GitHubgitchw/ghostlock-cve-2026-43499

CVE-2026-43499 (GhostLock) — Linux kernel futex PI rt_mutex UAF ARM32 privilege escalation research targeting Huawei Watch 4 Pro (kernel 5.4.210)

binary-exploitationembedded-systems-securityexploitation+5
7 days ago
CVE-2026-25938-FUXA-Unauthenticated-RCE preview

CVE-2026-25938-FUXA-Unauthenticated-RCE

GitHubjudgedbykira/cve-2026-25938-fuxa-unauthenticated-rce

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

exploitationiot-securitypayload-development+6
112 days ago
CVE-2026-44402 preview

CVE-2026-44402

GitHubvirgula0/cve-2026-44402

Pre-Authenticated Full Root Remote Command Execution in Voltronic Power SNMP Web Pro 1.1

embedded-systems-securityexploitationiot-security+5
113 days ago
CVE-2026-53921-PoC-Exploit preview

CVE-2026-53921-PoC-Exploit

GitHubtc4dy/cve-2026-53921-poc-exploit

CVE-2026-53921 odhcpd stack overflow exploit with dual-vector (IA_NA/IA_PD) payloads, MIPS/ARM shellcode, ROP chains, SOCKS5 proxy, persistence, and…

binary-exploitationembedded-systems-securityexploitation+8
628 days ago
CVE-2026-43499-armv7 preview

CVE-2026-43499-armv7

GitHubtc3650/cve-2026-43499-armv7

ARM32 Linux kernel privilege escalation exploit for CVE-2026-43499 (GhostLock futex UAF) targeting Huawei Watch 4 Pro with multiple exploitation…

binary-exploitationembedded-systems-securityexploitation+4
929 days ago
katana preview

katana

GitHubdaniel224455/katana

Let's hijack our bootchain - CVE-2021-30327

binary-exploitationembedded-systems-securityexploitation+5
171 month ago
CVE-2026-39047 preview

CVE-2026-39047

GitHubj4ck3lsyn-gen2/cve-2026-39047

Remote buffer overflow exploit framework for Epson printers (CVE-2026-39047). Features payload generation with obfuscation, fuzzing, transport…

binary-exploitationembedded-systems-securityexploitation+9
61 month ago
lwip-snmpv3-stack-overflow-cve-2026-8836-critical-embedded-rce preview

lwip-snmpv3-stack-overflow-cve-2026-8836-critical-embedded-rce

GitHubhunt-benito/lwip-snmpv3-stack-overflow-cve-2026-8836-critical-embedded-rce

Proof-of-concept exploit for CVE-2026-8836, a critical stack-based buffer overflow in lwIP's SNMPv3 USM handler. Constructs oversized authentication…

binary-exploitationembedded-systems-securityexploitation+4
2 months ago
CVE-2026-36356 preview

CVE-2026-36356

GitHubtotekuh/cve-2026-36356

Proof-of-concept exploit for CVE-2026-36356: unauthenticated OS command injection in MeiG Smart FORGE_SLT711 GoAhead web server, enabling root-level…

command-and-controlexploitationiot-security+4
13 months ago
fusee-gelee preview

fusee-gelee

GitHuboliviaholly/fusee-gelee

Exploit implementation for CVE-2018-6242 targeting the Nintendo Switch Tegra X1 boot ROM via USB Recovery Mode, enabling arbitrary payload execution…

binary-exploitationembedded-systems-securityexploitation+5
4 months ago
CVE-2024-57366 preview

CVE-2024-57366

GitHubh4ckusaur/cve-2024-57366

Remote code execution exploit for CVE-2024-57366 targeting WAVLINK routers via MAC address validation bypass and command injection, with automatic…

command-and-controlexploitationiot-security+6
11 months ago
cve-2025-2082-POV preview

cve-2025-2082-POV

GitHubshirabo/cve-2025-2082-pov

Proof-of-Concept for CVE-2025-2082, demonstrating function pointer overwrite via signed-to-unsigned integer conversion bug in Tesla VCSEC, leading to…

binary-exploitationembedded-systems-securityexploitation+4
111 months ago
riscy-business preview

riscy-business

GitHubthesecretclub/riscy-business

VM-based code obfuscation toolkit: transpiles LLVM bitcode to RISC-V64 payloads and executes them in a custom rv64i interpreter to hinder static and…

payload-developmentreverse-engineeringsecurity-virtualization
2971 year ago
CVE-2025-2620-poc preview

CVE-2025-2620-poc

GitHubotsmane-ahmed/cve-2025-2620-poc

Proof-of-concept exploit for CVE-2025-2620, a critical stack-based buffer overflow in D-Link DAP-1620 routers enabling unauthenticated remote code…

binary-exploitationembedded-systems-securityexploitation+8
161 year ago
CVE-2024-35106-POC preview

CVE-2024-35106-POC

GitHublaskdjlaskdj12/cve-2024-35106-poc

Proof-of-concept exploit for CVE-2024-35106, a stack buffer overflow in NEXTU FLETA AX1500 Wi-Fi 6 router. Demonstrates denial-of-service and…

binary-exploitationembedded-systems-securityexploitation+5
1 year ago
tenda-ac8v4-rop preview

tenda-ac8v4-rop

GitHubretr0reg/tenda-ac8v4-rop

Exploits for Tenda Ac8v4 stack-based overflow to Remote-Code Execution via Mipsel Ropping (CVE-2023-33669 - CVE-2023-33675)

binary-exploitationembedded-systems-securityexploitation+5
62 years ago
Previous123Next