Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
192 results
CVE-2019-16920-MassPwn3r preview

CVE-2019-16920-MassPwn3r

GitHubeniac888/cve-2019-16920-masspwn3r

Automated mass exploitation tool for CVE-2019-16920 command injection vulnerability in multiple D-Link routers, enabling unauthenticated remote code…

command-and-controlexploitationpenetration-testing+3
1
6 years ago
Tool_Exploit_Password_Camera_CVE-2018-9995 preview

Tool_Exploit_Password_Camera_CVE-2018-9995

GitHublequockhanh2k/tool_exploit_password_camera_cve-2018-9995

Exploit tool for CVE-2018-9995 that extracts credentials from vulnerable DVR devices via Google dorking and direct IP access.

exploitationiot-securitypassword-attacks+3
4 years ago
Tenda-F3-V4 preview

Tenda-F3-V4

GitHub4d000/tenda-f3-v4

Python script to exploit CVE-2020-35391 on Tenda F3 V3/V4 routers, enabling unauthorized download of configuration, flash, and syslog files.

embedded-systems-securityexploitationfirmware-analysis+4
31 year ago
CVE-2023-36143 preview

CVE-2023-36143

GitHubleonardobg/cve-2023-36143

Proof-of-concept exploit for CVE-2023-36143 demonstrating command injection in Maxprint Maxlink 1200G v3.4.11E via the diagnostic tool web interface.

command-and-controlembedded-systems-securityexploitation+3
3 years ago
CVE-2023-36143 preview

CVE-2023-36143

GitHubrobintrigon/cve-2023-36143

Maxprint Maxlink 1200G v3.4.11E has an OS command injection vulnerability in the "Diagnostic tool" functionality of the device.

embedded-systems-securityexploitationiot-security+2
3 years ago
CVE-2018-13341 preview

CVE-2018-13341

GitHubrajchowdhury240/cve-2018-13341

This Tool Aims to Exploit the CVE-2018-13341

embedded-systems-securityexploitationhardware-iot-security+3
5 years ago
CVE-2018-9995-DVR-Credentials-Extractor preview

CVE-2018-9995-DVR-Credentials-Extractor

GitHubf7p-h4nn1b4l/cve-2018-9995-dvr-credentials-extractor

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

authenticationembedded-systems-securityexploitation+5
11 month ago
CVE-2023-48849 preview

CVE-2023-48849

GitHubdelsploit/cve-2023-48849

Proof-of-concept exploit for unauthenticated remote code execution in Ruijie EG Series routers (firmware <=EG_3.0(1)B11P216). Executes arbitrary…

exploitationpenetration-testingremote-access-tool+2
2 years ago
CVE-2026-44402 preview

CVE-2026-44402

GitHub0xcyp1337/cve-2026-44402

Exploit for CVE-2026-44402 targeting Voltronic Power SNMP Web Pro 1.1, enabling unauthenticated remote code execution via malicious firmware upload.…

exploitationpenetration-testingred-teaming+3
19 days ago
MangoPunch-CVE-2022-31898 preview

MangoPunch-CVE-2022-31898

GitHubcryptoghost1/mangopunch-cve-2022-31898

Authenticated Command Injection Tool (CVE-2022-31898) - HACKCONRD 2026.

command-and-controlexploitationpenetration-testing+3
6 months ago
CVE-2025-65753 preview

CVE-2025-65753

GitHubdiegovargasj/cve-2025-65753

Proof-of-concept exploit for CVE-2025-65753: remote code execution on Gryphon Guardian access point via improper TLS certificate validation, enabling…

exploitationpayload-developmentpenetration-testing+3
8 months ago
badblood preview

badblood

GitHubjbaines-r7/badblood

SonicWall SMA-100 Unauth RCE Exploit (CVE-2021-20038)

binary-exploitationexploitationpenetration-testing+2
954 years ago
CVE-2020-29669 preview

CVE-2020-29669

GitHubs1lkys/cve-2020-29669

Macally WIFISD2

authentication-authorizationembedded-systems-securityexploitation+5
5 years ago
cve-2018-1207 preview

cve-2018-1207

GitHubmgargiullo/cve-2018-1207

Exploit iDRAC 7 & 8 firmware < 2.52.52.52

exploitationpenetration-testingred-teaming+3
184 years ago
CVE-2021-43936 preview

CVE-2021-43936

GitHublongwayhomie/cve-2021-43936

CVE-2021-43936 is a critical vulnerability (CVSS3 10.0) leading to Remote Code Execution (RCE) in WebHMI Firmware.

exploitationpenetration-testingremote-access-tool+2
94 years ago
CVE-2022-45701 preview

CVE-2022-45701

GitHubyerodin/cve-2022-45701

Arris Router Firmware 9.1.103 - Remote Code Execution (RCE) (Authenticated) POC Exploit (CVE-2022-45701)

exploitationpenetration-testingred-teaming+3
73 years ago
HIK-CVE-2021-36260-Exploit preview

HIK-CVE-2021-36260-Exploit

GitHubhaingn/hik-cve-2021-36260-exploit

Go-based brute-force exploit tool targeting Hikvision cameras vulnerable to CVE-2021-36260, with multi-threaded scanning and configurable…

exploitationiot-securitypassword-attacks+2
12 years ago
CVE-2024-55211 preview

CVE-2024-55211

GitHubmicaelmaciel/cve-2024-55211

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

authentication-authorizationdns-analysisexploitation+3
211 months ago
Previous12…11Next