Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
294 results
Genzai preview

Genzai

GitHubumair9747/genzai

The IoT security toolkit to help identify IoT related dashboards and scan them for default passwords and vulnerabilities.

iot-securitypassword-attackspenetration-testing+3
212
1 year ago
CVE-2023-35803 preview

CVE-2023-35803

GitHublachlan2k/cve-2023-35803

PoC exploit for CVE-2023-35803 unauthenticated buffer overflow in Aerohive HiveOS/Extreme Networks IQ Engine, enabling remote code execution on…

exploitationiot-securitypenetration-testing+3
233 years ago
cve-2025-11142-axis-mediaclip-rce preview

cve-2025-11142-axis-mediaclip-rce

GitHubkemrec/cve-2025-11142-axis-mediaclip-rce

Proof-of-concept and technical analysis for CVE-2025-11142, an authenticated OS command injection in AXIS VAPIX mediaclip.cgi, with time-based and…

exploitationiot-securitypenetration-testing+2
25 days ago
USB Spy preview

USB Spy

GitLabchristophe.duvernois/usb-spy

Intercepts and analyzes USB Mass Storage traffic at the block and file level, emulates USB devices, and supports custom Python stubs for security…

digital-forensicsexploitationfirmware-analysis+6
32 months ago
CVE-2024-7029 preview

CVE-2024-7029

GitHubebrasha/cve-2024-7029

PoC exploit for CVE-2024-7029 in AVTech devices. Enables authentication bypass, remote code execution, vulnerability scanning, and interactive shell…

exploitationiot-securitypenetration-testing+3
62 years ago
InterceptSuite preview

InterceptSuite

GitHubinterceptsuite/interceptsuite

MITM proxy for TCP/TLS/DTLS/UDP traffic, with STARTTLS, IoT, Thick Client and more.

iot-securitynetwork-securitypacket-sniffing-analysis+2
83 months ago
tplink-CVE-2017-11519 preview

tplink-CVE-2017-11519

GitHubvakzz/tplink-cve-2017-11519

POC for TP-Link Archer C9 - Admin Password Reset and RCE (CVE-2017-11519)

exploitationiot-securitypenetration-testing+3
48 years ago
CVE-2024-41992-PoC preview

CVE-2024-41992-PoC

GitHubfj016/cve-2024-41992-poc

PoC for the CVE-2024-41992 (RCE on devices running WiFi-TestSuite-DUT)

exploitationiot-securitypenetration-testing+3
32 years ago
CVE-2026-15469 preview

CVE-2026-15469

GitHubtony102741/cve-2026-15469

Advisory and technical analysis of CVE-2026-15469, a hard-coded RSA-512 mesh group private key in TP-Link Deco routers, including root cause, impact,…

authenticationcryptographyexploitation+5
21 month ago
GPON_RCE preview

GPON_RCE

GitHubc0ld1/gpon_rce

Exploit for Remote Code Execution on GPON home routers (CVE-2018-10562) written in Python.

exploitationiot-securitypenetration-testing+3
48 years ago
XSS-CVE-2022-30489 preview

XSS-CVE-2022-30489

GitHubbadboycxcc/xss-cve-2022-30489

Proof-of-concept exploit for CVE-2022-30489, a stored XSS vulnerability in WAVLINK WN535G3 routers, demonstrating a POST-based attack via the…

exploitationiot-securitypenetration-testing+3
24 years ago
CVE-2022-40881 preview

CVE-2022-40881

GitHubyilin1203/cve-2022-40881

Proof-of-concept exploit for CVE-2022-40881 targeting SolarView Compact devices. Uses fofa query for reconnaissance and payload delivery for…

exploitationiot-securitypenetration-testing+3
23 years ago
CVE-2026-26898-Xiaomi-SSRF-HostHeaderInjection preview

CVE-2026-26898-Xiaomi-SSRF-HostHeaderInjection

GitHubiwallplace/cve-2026-26898-xiaomi-ssrf-hostheaderinjection

Unauthenticated SSRF in Xiaomi Mi Router 4A Gigabit Edition (firmware 3.0.24) via Host Header Injection — CVE-2026-26898

exploitationnetwork-securitypenetration-testing+3
13 months ago
hikivision preview

hikivision

GitHubkrypton612/hikivision

Exploit for CVE-2017-7921 targeting Hikvision IP cameras, enabling remote credential extraction and device takeover via unauthenticated access.

exploitationiot-securitypenetration-testing+2
23 years ago
CVE-2017-6206 preview

CVE-2017-6206

GitHubvarangamin/cve-2017-6206

The DGS-1510 Websmart switch series firmware has been found to have security vulneratiblies. The vulnerabilities include unauthenticated command…

exploitationiot-securitynetwork-security+3
26 years ago
CVE-2024-29972 preview

CVE-2024-29972

GitHubwanlichangchengwanlichang/cve-2024-29972

Exploit script for CVE-2024-29972 Zyxel NAS backdoor account, combining with CVE-2024-29973 for unauthorized root access via NsaRescueAngel.

exploitationiot-securitypenetration-testing+3
12 years ago
CVE-2019-17525 preview

CVE-2019-17525

GitHubhuzaifahussain98/cve-2019-17525

D-LINK ROUTER "MODEL NO: DIR-615" with "FIRMWARE VERSION:20.10" & "HARDWARE VERSION:T1

captcha-bypassexploitationpassword-attacks+3
16 years ago
scan-cve-2026-24061 preview

scan-cve-2026-24061

GitHubkillsystema/scan-cve-2026-24061

Scans for CVE-2026-24061 telnetd auth bypass, generating payloads and verifying root access on vulnerable GNU inetutils telnetd devices.

exploitationiot-securitynetwork-security+3
7 months ago
Previous1…131415…17Next