Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
239 results
CVE-2026-9254 preview

CVE-2026-9254

GitHubslagzz/cve-2026-9254

TP-Link Archer BE800 V1 — Parental Control LAN RCE

exploitationhardware-iot-securityiot-security+3
1 day ago
mfcuk preview

mfcuk

GitHubnfc-tools/mfcuk

Recovers cryptographic keys from MiFare Classic RFID cards using DarkSide and nested-auth attacks for security testing of NFC/RFID systems.

cryptographyembedded-systems-securityhardware-security+4
1.1k2 years ago
unleashed-firmware preview

unleashed-firmware

GitHubdarkflippers/unleashed-firmware

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

embedded-systems-securityfuzzinghardware-hacking+7
22.1k3 days ago
CVE-2026-6837-zyxel-export-cgi-command-injection preview

CVE-2026-6837-zyxel-export-cgi-command-injection

GitHubminanagehsalalma/cve-2026-6837-zyxel-export-cgi-command-injection

Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.

embedded-systems-securityexploitationfirmware-analysis+3
39 days ago
CVE-2024-6333 preview

CVE-2024-6333

GitHub0xqrx/cve-2024-6333

Authenticated Remote Code Execution vulnerability in Xerox WorkCentre printers via the Network Troubleshooting Log feature.

embedded-systems-securityexploitationhardware-iot-security+2
6 months ago
CVE-2026-25938-FUXA-Unauthenticated-RCE preview

CVE-2026-25938-FUXA-Unauthenticated-RCE

GitHubjudgedbykira/cve-2026-25938-fuxa-unauthenticated-rce

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

exploitationiot-securitypayload-development+6
112 days ago
CVE-2026-44402 preview

CVE-2026-44402

GitHubvirgula0/cve-2026-44402

Pre-Authenticated Full Root Remote Command Execution in Voltronic Power SNMP Web Pro 1.1

embedded-systems-securityexploitationiot-security+5
113 days ago
Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC preview

Injection-vulnerability-in-Paradox-Security-Systems-IPR512-CVE-2023-24709-PoC

GitHubdarknesschieftain/injection-vulnerability-in-paradox-security-systems-ipr512-cve-2023-24709-poc

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…

exploitationiot-securitypenetration-testing+3
3 years ago
kali-arm preview

kali-arm

GitLabkalilinux/build-scripts/kali-arm

Build scripts that generate Kali Linux ARM images with configurable architecture, desktop environment, and minimal/slim options for supported…

embedded-systems-securityhardware-iot-securitypenetration-testing+1
2132 months ago
FOISted preview

FOISted

GitHubmarginresearch/foisted

Remote exploit for MikroTik RouterOS v6 that abuses IPC vulnerabilities and a ROP chain to escalate privileges, execute code, and spawn a reverse…

binary-exploitationembedded-systems-securityexploitation+6
1563 years ago
EvilCrowRF_Custom_Firmware_CC1101_FlipperZero preview

EvilCrowRF_Custom_Firmware_CC1101_FlipperZero

GitHubh-rat/evilcrowrf_custom_firmware_cc1101_flipperzero

This firmware is an alternative to the EvilCrowRF default firmware. Module: CC1101 - Compatible Flipper Zero file.

embedded-systems-securityhardware-hackinghardware-iot-security+5
5952 years ago
st25tb_kiemul preview

st25tb_kiemul

GitHubgentilkiwi/st25tb_kiemul

ST25TB / SRx NFC Emulator / Initiator based on TI TRF7970A with MSP430

embedded-systems-securityhardware-hackinghardware-security+3
5024 days ago
dlink preview

dlink

GitHubnetsecfish/dlink

Proof-of-concept exploit and analysis for command injection and hardcoded backdoor credentials in D-Link NAS devices, enabling unauthenticated remote…

authenticationexploitationiot-security+3
1002 years ago
InterceptSuite preview

InterceptSuite

GitHubinterceptsuite/interceptsuite

MITM proxy for TCP/TLS/DTLS/UDP traffic, with STARTTLS, IoT, Thick Client and more.

iot-securitynetwork-securitypacket-sniffing-analysis+2
51 month ago
CVE-2026-21014-CAN-Bus-Frame-Replay-Attack-on-Automotive-ECU preview

CVE-2026-21014-CAN-Bus-Frame-Replay-Attack-on-Automotive-ECU

GitHubgeorge0papasotiriou/cve-2026-21014-can-bus-frame-replay-attack-on-automotive-ecu

Replays captured CAN bus frames to demonstrate CVE-2026-21014, showing how missing authentication and freshness checks enable unauthorized automotive…

embedded-systems-securityexploitationhardware-security+2
21 days ago
Concierge preview

Concierge

GitHublixmk/concierge

Modular toolkit for identifying and exploiting physical access control systems, with vendor-specific modules for HID, AMAG, and Mercury Security OEM…

embedded-systems-securityexploitationhardware-hacking+5
1198 years ago
CVE-2018-9995-DVR-Credentials-Extractor preview

CVE-2018-9995-DVR-Credentials-Extractor

GitHubf7p-h4nn1b4l/cve-2018-9995-dvr-credentials-extractor

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

authenticationembedded-systems-securityexploitation+5
124 days ago
proxmark3 preview

proxmark3

GitHubproxmark/proxmark3

Open-source RFID research toolkit for sniffing, reading, cloning, and emulating LF/HF tags, with FPGA firmware and hardware schematics for security…

embedded-systems-securityhardware-hackinghardware-security+3
3.5k7 months ago
Previous12…14Next