Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
139 results
UEFI-Security-Research-Howyar-SysReturn-NetCopy preview

UEFI-Security-Research-Howyar-SysReturn-NetCopy

GitHubthemalwareguardian/uefi-security-research-howyar-sysreturn-netcopy

Post CVE-2024-7344 analysis of Howyar SysReturn NetCopy - reverse engineering notes, vulnerable binaries, vendor correspondence, and proof-of-concept…

binary-analysisembedded-systems-securityexploitation+6
217 days ago
ghostlock-oppo-watch3pro preview

ghostlock-oppo-watch3pro

GitHubrebilibin/ghostlock-oppo-watch3pro

Complete exploit research for CVE-2026-43499 (GhostLock) on OPPO Watch 3 Pro, including kernel UAF analysis, disassembly, and exploit chain…

binary-exploitationembedded-systems-securityexploitation+4
229 days ago
tenda-ac8v4-rop preview

tenda-ac8v4-rop

GitHubretr0reg/tenda-ac8v4-rop

Exploits for Tenda Ac8v4 stack-based overflow to Remote-Code Execution via Mipsel Ropping (CVE-2023-33669 - CVE-2023-33675)

binary-exploitationembedded-systems-securityexploitation+5
62 years ago
DeadDialect preview

DeadDialect

GitHubengrbilal992/deaddialect

A session-unique RISC-V ISA — every boot speaks a different dialect. Old binaries become invalid. Malware cannot persist.

binary-analysiscryptographydefensive-tools+7
65 months ago
ghidra-mtk-loader preview

ghidra-mtk-loader

GitHubnccgroup/ghidra-mtk-loader

Ghidra loader for the MediaTek md1img modem firmware image format

binary-analysisembedded-systems-securityfirmware-analysis+3
73 months ago
Vision-MSI-Thermal-Control preview

Vision-MSI-Thermal-Control

GitHubsunrayvision/vision-msi-thermal-control

MSI Modern 15H AI C1MGT-096IT Linux thermal management - Reverse engineered EC control with fan profiles and battery threshold

embedded-systems-securityfirmware-analysishardware-hacking+3
610 months ago
powerg-tools preview

powerg-tools

GitHubnccgroup/powerg-tools

Tools for reverse engineering and interacting with the PowerG radio protocol

embedded-systems-securityfirmware-analysishardware-security+3
56 months ago
ShiningAppMask-ReverseEngineering preview

ShiningAppMask-ReverseEngineering

GitHubadrihd/shiningappmask-reverseengineering

Reverse Engineering of the Shining App Mask

bluetooth-securityembedded-systems-securityfirmware-analysis+5
68 months ago
IvantiInitrdDecryptor preview

IvantiInitrdDecryptor

GitHubwatchtowrlabs/ivantiinitrddecryptor

A tool for decrypting Ivanti device initrd images by reverse-engineering the kernel's bzImage to locate and use the embedded AES key.

cryptographyembedded-systems-securityfirmware-analysis+1
42 years ago
CVE-2026-76070 preview

CVE-2026-76070

GitHubozcanpng/cve-2026-76070

Original research and PoC for a pre-auth Base64-decoded password stack buffer overflow in Netis NC63 login.cgi

binary-exploitationembedded-systems-securityexploitation+4
115 days ago
CVE-2024-48705 preview

CVE-2024-48705

GitHubl41kaa/cve-2024-48705

Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while…

binary-analysiscommand-and-controlembedded-systems-security+7
21 year ago
accfly preview

accfly

GitHubtezeb/accfly

Disclosure of Accfly camera vulnerabilities: CVE-2020-25782, CVE-2020-25783, CVE-2020-25784, CVE-2020-25785.

binary-exploitationembedded-systems-securityexploitation+6
35 years ago
IIITA-IoT-Security-Research preview

IIITA-IoT-Security-Research

GitHubivmks74/iiita-iot-security-research

IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note…

digital-forensicsembedded-systems-securityfirmware-analysis+4
2 months ago
Fastgate preview

Fastgate

GitHubgaris/fastgate

CVE-2019-12489

command-and-controlembedded-systems-securityexploitation+6
26 years ago
Watchguard_WebUI_Unpacker preview

Watchguard_WebUI_Unpacker

GitHubret5et/watchguard_webui_unpacker

Watchguard Sysa-dl file format

binary-analysisembedded-systems-securityfirmware-analysis+2
33 years ago
CVE-2021-4045 preview

CVE-2021-4045

GitHubkaleth4/cve-2021-4045

Command injection exploit for TP-Link Tapo C200 camera (CVE-2021-4045) providing root shell access via UART and reverse-engineered uhttpd binary…

command-and-controlembedded-systems-securityexploitation+6
3 months ago
zyxel-wax650s-research-notebook-public preview

zyxel-wax650s-research-notebook-public

GitHubminanagehsalalma/zyxel-wax650s-research-notebook-public

Wiki-style research notebook for Zyxel WAX650S firmware emulation and vulnerability analysis

embedded-systems-securityfirmware-analysisreverse-engineering+2
15 months ago
CVE-2020-8423 preview

CVE-2020-8423

GitHublnversed/cve-2020-8423

Custom C exploit for CVE-2020-8423 targeting MIPS routers, featuring hooked open() syscall and tailored for Linux kernel 2.6.31.

binary-exploitationembedded-systems-securityexploitation+3
14 years ago
Previous1…678Next