Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
123 results
CVE-2021-31630-OpenPLC_RCE preview

CVE-2021-31630-OpenPLC_RCE

GitHubhev0x/cve-2021-31630-openplc_rce

Exploit for Authenticated Remote Code Execution on OpenPLC v3 Webserver

exploitationpenetration-testingscada-ics-security+2
2
5 years ago
FUXAPWN preview

FUXAPWN

GitHubhann1bl3l3ct3r/fuxapwn

POC exploit for CVE-2026-25895 FUXA Unauthenticated Path Traversal -> Arbitrary File Write -> RCE

exploitationinformation-gatheringlateral-movement+8
24 months ago
CVE-2025-48466 preview

CVE-2025-48466

GitHubshipcod3/cve-2025-48466

Modbus Packet Injection on Advantech WISE 4060LAN / IoT Gateway for door control

exploitationfuzzinghardware-iot-security+5
21 year ago
Terrminus-CVE-2026-2406 preview

Terrminus-CVE-2026-2406

GitHubridpath/terrminus-cve-2026-2406

AsyncIO Scanner & Exploitation Framework for CVE-2026-24061 (Telnet NEW_ENVIRON Auth Bypass). Features high-concurrency discovery, passive…

exploitationinformation-gatheringiot-security+8
28 months ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubkaleth4/cve-2025-69985

PoC exploit for CVE-2025-69985: authentication bypass leading to RCE in FUXA SCADA ≤1.2.8. Includes a modular Python exploit with interactive shell,…

authentication-authorizationexploitationpayload-development+5
5 months ago
POC-CVE-2012-1831 preview

POC-CVE-2012-1831

GitHubastrowmist/poc-cve-2012-1831

Proof Of Concept for the CVE-2012-1831 (Kingview Touchview 6.53). This is a Industrial Control Systems Vulnerability

binary-exploitationexploitationpenetration-testing+2
11 year ago
CVE-2026-25939-SCADA-FUXA-Unauthenticated-Remote-Arbitrary preview

CVE-2026-25939-SCADA-FUXA-Unauthenticated-Remote-Arbitrary

GitHubmbanyamer/cve-2026-25939-scada-fuxa-unauthenticated-remote-arbitrary

Proof-of-concept exploit for CVE-2026-25939, an unauthenticated authorization bypass in FUXA SCADA software allowing arbitrary scheduler manipulation…

exploitationpenetration-testingscada-ics-security+2
8 months ago
CVE-2021-41579-LCDS-LAquis-SCADA-4.3.1.1085-Arbitrary-File-Write preview

CVE-2021-41579-LCDS-LAquis-SCADA-4.3.1.1085-Arbitrary-File-Write

GitHubmbanyamer/cve-2021-41579-lcds-laquis-scada-4.3.1.1085-arbitrary-file-write

Proof-of-concept exploit for CVE-2021-41579 enabling arbitrary file write/read and RCE via malicious .els project file in LAquis SCADA ≤4.3.1.1085.

binary-exploitationexploitationpayload-generation+3
7 months ago
CVE-2021-31630 preview

CVE-2021-31630

GitHubuserb1ank/cve-2021-31630

Exploit for CVE-2021-31630 in OpenPLC, providing a Python script and manual steps to achieve remote code execution via malicious ST file upload and…

command-and-controlexploitationpayload-development+3
1 year ago
yamcs__yamcs_CVE-2023-45277_5-8-6 preview

yamcs__yamcs_CVE-2023-45277_5-8-6

GitHubshoucheng3/yamcs__yamcs_cve-2023-45277_5-8-6

Java-based mission control framework with YAML configuration, supporting telemetry, commanding, and simulation for spacecraft operations. Includes…

configuration-auditingexploitationnetwork-security+3
1 year ago
stack-overflow-poc preview

stack-overflow-poc

GitHubkevinherron/stack-overflow-poc

PoC for CVE-2018-12086 affecting various OPC UA stacks

binary-exploitationexploitationfuzzing+2
6 years ago
CVE-2023-31717 preview

CVE-2023-31717

GitHubmateustesser/cve-2023-31717

Proof-of-concept SQL injection exploit for FUXA SCADA software (<=1.1.12) via HTTP POST JSON id parameter, enabling extraction of SQLite database…

database-securityexploitationscada-ics-security+2
3 years ago
CVE-2015-8299 preview

CVE-2015-8299

GitHubkernoelpanic/cve-2015-8299

Proof-of-concept exploit for a remote buffer overflow vulnerability in KNX ETS4 management software, demonstrating ROP-based code execution via…

binary-exploitationembedded-systems-securityexploitation+4
10 years ago
CVE-2023-31716 preview

CVE-2023-31716

GitHubmateustesser/cve-2023-31716

Proof-of-concept exploit for CVE-2023-31716, a Local File Inclusion vulnerability in FUXA SCADA/HMI software versions <= 1.1.12, enabling arbitrary…

embedded-systems-securityexploitationscada-ics-security+2
3 years ago
BAS-Guardian preview
Archived

BAS-Guardian

GitHubspinfosecurity/bas-guardian

Free BACnet/BMS vulnerability scanner for building automation systems. Detects CVE-2026-3611 (CVSS 10.0), CVE-2026-24060, and exposed HVAC/BAS…

defensive-toolsinformation-gatheringiot-security+6
11 month ago
Rail-OT-Protector preview
Archived

Rail-OT-Protector

GitHubspinfosecurity/rail-ot-protector

Rail-OT-Protector (ROP) — free, open-source cybersecurity scanning tool for rail and transit OT/SCADA networks. PowerShell + Bash scanners for…

defensive-toolsinformation-gatheringnetwork-security+6
11 month ago
aztarna preview
Archived

aztarna

GitHubaliasrobotics/aztarna

aztarna, a footprinting tool for robots.

embedded-systems-securityhardware-iot-securityinformation-gathering+7
922 months ago
dlr-ne-ics-security preview

dlr-ne-ics-security

GitHubtz98lab/dlr-ne-ics-security

Research code implementing Dynamical Low-Rank Nash Equilibrium computation for stochastic ICS security games between advanced persistent threats and…

defensive-toolsmachine-learningpapers-research+3
14 days ago
Previous1234567Next