Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
28 results
HimitsuShell preview

HimitsuShell

GitHubhimitsushell/himitsushell

shell script protector (obfuscation, embedded interpreter, DRM) - invisible to kernel tracing

anti-botbinary-analysiscryptography+6
12
3 days ago
CVE-2026-51585 preview

CVE-2026-51585

GitHubcatforgor/cve-2026-51585

rt26cx21x64.sys exploit (Realtek PCIe GbE/2.5GbE/5GbE family)

binary-exploitationexploitationhardware-iot-security+2
35 months ago
CVE-2026-82539 preview

CVE-2026-82539

GitHubxernary/cve-2026-82539

Security advisory for TOTOLINK a720r buffer overflow vulnerability

binary-exploitationembedded-systems-securityexploitation+5
414 days ago
CVE-2026-76071 preview

CVE-2026-76071

GitHubozcanpng/cve-2026-76071

Original research and PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

binary-analysisexploitationfirmware-analysis+3
113 days ago
pocs_slides preview

pocs_slides

GitHubcq674350529/pocs_slides

my advisory, poc, slides and scripts related to IoT/protocol security

binary-analysisexploitationiot-security+4
721 year ago
awesome-connected-things-sec preview

awesome-connected-things-sec

GitHubv33ru/awesome-connected-things-sec

A Curated list of Security Resources for all connected things

ctfcurated-resourceseducation+9
3.5k28 days ago
blackbox-fuzzing preview

blackbox-fuzzing

GitHubotsmr/blackbox-fuzzing

Fuzzing IoT Devices Using the Router TL-WR902AC as Example

binary-analysiseducationexploitation+6
13310 months ago
IIITA-IoT-Security-Research preview

IIITA-IoT-Security-Research

GitHubivmks74/iiita-iot-security-research

IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note…

digital-forensicsembedded-systems-securityfirmware-analysis+4
1 month ago
Humax-CLI preview

Humax-CLI

GitHubd4vinci/humax-cli

An unofficial Humax IR4000HD terminal client with enhanced features.

hardware-iot-securitynetwork-securityreverse-engineering+2
117 years ago
CVE-2025-70962 preview

CVE-2025-70962

GitHubnamaek2/cve-2025-70962

CVE-2025-70962 PoC

exploitationfirmware-analysishardware-iot-security+3
1 month ago
IoT-Vulnerability-Research-Public preview

IoT-Vulnerability-Research-Public

GitHubbadchemical/iot-vulnerability-research-public

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

cryptographyeducationembedded-systems-security+8
1718 days ago
sjcam preview

sjcam

GitHubkeowu/sjcam

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…

educationembedded-systems-securityexploitation+7
82 months ago
CVE-2025-15545 preview

CVE-2025-15545

GitHubxernary/cve-2025-15545

Proof of Concept for CVE-2025-15545

command-and-controlembedded-systems-securityexploitation+3
17 months ago
365cam-stream preview

365cam-stream

GitHubinartin/365cam-stream

Local streaming tool for cheap WiFi cameras that bypasses cloud services and phone apps. Discovers cameras on your network, authenticates via PPPP…

hardware-iot-securityiot-securitynetwork-security+3
165 months ago
CVE-2020-12124 preview

CVE-2020-12124

GitHubscorpion-security-labs/cve-2020-12124

Proof-of-concept exploit for CVE-2020-12124 targeting Wavlink AC1200 router, demonstrating unauthenticated command injection and stack buffer…

binary-analysiscommand-and-controleducation+8
7 months ago
TagTinker preview

TagTinker

GitHubi12bp8/tagtinker

Flipper Zero app for infrared electronic shelf-label (ESL) protocol research, featuring custom image transmission, NFC tag scanning, and a web-based…

educationembedded-systems-securityfirmware-analysis+5
2.0k9 days ago
radmin-vpn-linux preview

radmin-vpn-linux

GitHubbaptisterajaut/radmin-vpn-linux

Run Radmin VPN on Linux via Wine — custom driver, TAP bridge, zero packet loss

binary-analysishardware-iot-securitylateral-movement+5
21616 days ago
fitness-app preview

fitness-app

GitHubseemoo-lab/fitness-app

BLE-based Fitbit research tool for authentication replay, encrypted activity dump decryption, memory/firmware extraction, and custom firmware…

bluetooth-securityembedded-systems-securityexploitation+5
797 years ago
Previous12Next