Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
125 results
detection-defense-library preview

detection-defense-library

GitLabwattocyber/detection-defense-library

Detection-engineering reference mapping Windows, cloud, container, identity, and ICS attack classes to Sigma rules, trust-boundary models, BYOVD…

cloud-securitycontainer-securitycurated-resources+7
1 month ago
cip-security-poc preview

cip-security-poc

GitHubpcrosby-1990/cip-security-poc

Proof-of-concept reproducing CVE-2021-22681's hardcoded-key flaw and validating a per-device mutual TLS/CRL fix over simulated EtherNet/IP, with IEC…

authenticationcryptographyincident-response+3
1 month ago
CVE-2017-16744-and-CVE-2017-16748-Tridium-Niagara preview

CVE-2017-16744-and-CVE-2017-16748-Tridium-Niagara

GitHubgainsec/cve-2017-16744-and-cve-2017-16748-tridium-niagara

Proof of Concept (PoC) for CVE: 2017-16744 and 2017-16748

exploitationpenetration-testingscada-ics-security+2
54 years ago
CVE-2015-5374-DoS-PoC preview

CVE-2015-5374-DoS-PoC

GitHubcan/cve-2015-5374-dos-poc

DoS exploit for CVE-2015-5374 targeting Siemens SIPROTEC 4 and Compact EN100 Ethernet modules via a crafted UDP packet to port 50000, with an…

exploitationexploit-frameworkspenetration-testing+2
38 years ago
CVE-2026-52134-libiec61850 preview

CVE-2026-52134-libiec61850

GitHubif-forget/cve-2026-52134-libiec61850

Public technical advisory and reproduction evidence for CVE-2026-52134 affecting GOOSE replay handling in libiec61850 v1.6.

curated-resourceseducationlabs-practice+3
1 month ago
CVE-2026-9645-ScadaBR-Analysis preview

CVE-2026-9645-ScadaBR-Analysis

GitHub0xmhany/cve-2026-9645-scadabr-analysis

Technical vulnerability analysis and CVE briefing for CVE-2026-9645 affecting ScadaBR.

educationpapers-researchscada-ics-security+1
1 month ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubjoshuavanderpoll/cve-2025-69985

Python exploit for CVE-2025-69985 targeting FUXA SCADA software. Sends crafted JSON payload to /api/runscript endpoint to bypass authentication and…

authenticationexploitationremote-access-tool+3
37 months ago
CVE-2026-25938-FUXA-Unauthenticated-RCE preview

CVE-2026-25938-FUXA-Unauthenticated-RCE

GitHubjudgedbykira/cve-2026-25938-fuxa-unauthenticated-rce

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

exploitationiot-securitypayload-development+6
11 month ago
Active-Scanning-and-Information-Gathering-in-ICS-SCADA-Networks-Using-Network-Mapper-NMAP preview

Active-Scanning-and-Information-Gathering-in-ICS-SCADA-Networks-Using-Network-Mapper-NMAP

GitHubmurataydemir/active-scanning-and-information-gathering-in-ics-scada-networks-using-network-mapper-nmap

Active Scanning and Information Gathering in ICS/SCADA Networks using Network Mapper (NMAP) (Turkish)

educationinformation-gatheringnetwork-mapping+3
26 years ago
CVE-2012-1803 preview

CVE-2012-1803

GitHubx3roxismygood/cve-2012-1803

Critical vulnerability in Siemens RuggedCom ROS devices allowing attackers to derive a hidden factory account password from the device MAC address…

exploitationhardware-iot-securitynetwork-security+3
4 months ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubkaleth4/cve-2025-69985

PoC exploit for CVE-2025-69985: authentication bypass leading to RCE in FUXA SCADA ≤1.2.8. Includes a modular Python exploit with interactive shell,…

authentication-authorizationexploitationpayload-development+5
4 months ago
CVE-2026-32662 preview

CVE-2026-32662

GitHubxf-secops/cve-2026-32662

Advisory detailing active debug code in production Gardyn Home Kit cloud API, exposing development endpoints and embedded credentials, with…

cloud-securityconfiguration-auditingiot-security+3
4 months ago
CVE-2021-31630 preview

CVE-2021-31630

GitHubuserb1ank/cve-2021-31630

Exploit for CVE-2021-31630 in OpenPLC, providing a Python script and manual steps to achieve remote code execution via malicious ST file upload and…

command-and-controlexploitationpayload-development+3
11 months ago
CVE-2026-25939-SCADA-FUXA-Unauthenticated-Remote-Arbitrary preview

CVE-2026-25939-SCADA-FUXA-Unauthenticated-Remote-Arbitrary

GitHubmbanyamer/cve-2026-25939-scada-fuxa-unauthenticated-remote-arbitrary

Proof-of-concept exploit for CVE-2026-25939, an unauthenticated authorization bypass in FUXA SCADA software allowing arbitrary scheduler manipulation…

exploitationpenetration-testingscada-ics-security+2
7 months ago
yamcs__yamcs_CVE-2023-45277_5-8-6 preview

yamcs__yamcs_CVE-2023-45277_5-8-6

GitHubshoucheng3/yamcs__yamcs_cve-2023-45277_5-8-6

Java-based mission control framework with YAML configuration, supporting telemetry, commanding, and simulation for spacecraft operations. Includes…

configuration-auditingexploitationnetwork-security+3
1 year ago
Advisories preview

Advisories

GitHubjensregel/advisories

This repository contains a few vulnerabilities that were found and reported during vulnerability assessments.

curated-resourceseducationhardware-iot-security+3
10 months ago
CVE-2021-31630 preview

CVE-2021-31630

GitHubflojboj/cve-2021-31630

POC Exploit for CVE-2021-31630 written in Python3 and using C reverse shell with non-blocking mode

ctfeducationexploitation+3
2 years ago
BAS-Guardian preview
Archived

BAS-Guardian

GitHubspinfosecurity/bas-guardian

Free BACnet/BMS vulnerability scanner for building automation systems. Detects CVE-2026-3611 (CVSS 10.0), CVE-2026-24060, and exposed HVAC/BAS…

defensive-toolsinformation-gatheringiot-security+6
11 month ago
Previous1234567Next