Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
31 results
CVE-2018-8062 preview

CVE-2018-8062

GitHuboscarakaelvis/cve-2018-8062

Persistent XSS on Comtrend AR-5387un router

exploitationpenetration-testingphishing-tools+3
12 years ago
vulnerability-in-Remix-React-Router-CVE-2025-31137- preview

vulnerability-in-Remix-React-Router-CVE-2025-31137-

GitHubpouriam23/vulnerability-in-remix-react-router-cve-2025-31137-

CTF challenge replicating CVE-2025-31137 in Remix/React Router Express. Learn to exploit a server-side vulnerability to find the admin flag.

ctfeducationexploitation+3
11 year ago
CVE-2026-36960 preview

CVE-2026-36960

GitHubkirubel-cve/cve-2026-36960

Proof-of-concept exploit for CVE-2026-36960, a CSRF vulnerability in U-SPEED Router firmware allowing unauthorized configuration changes via forged…

exploitationpenetration-testingvulnerability-analysis+2
5 months ago
Pre-render-data-spoofing-on-React-Router-framework-mode-CVE-2025-43865 preview

Pre-render-data-spoofing-on-React-Router-framework-mode-CVE-2025-43865

GitHubpouriam23/pre-render-data-spoofing-on-react-router-framework-mode-cve-2025-43865

Proof-of-concept exploit for CVE-2025-43865 demonstrating pre-render data spoofing in React Router framework mode, enabling data injection during…

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
CVE-2026-36959 preview

CVE-2026-36959

GitHubkirubel-cve/cve-2026-36959

Proof-of-concept exploit for CVE-2026-36959, a missing rate limiting vulnerability in U-SPEED Router firmware allowing brute-force attacks on the…

authenticationexploitationpenetration-testing+2
5 months ago
teler-waf preview

teler-waf

GitHubteler-sh/teler-waf

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…

api-securitydefensive-toolsids-ips-evasion+5
4081 year ago
LIVEBOX-0DAY preview

LIVEBOX-0DAY

GitHubzadewg/livebox-0day

CVE-2018-20377; 20575; 20576; 20577 Multiple security vulnerabilities affecting latest firmware release on ORANGE Livebox modems.

exploitationprivacyvulnerability-analysis+1
722 years ago
reverse-skill preview

reverse-skill

GitHubzhaoxuya520/reverse-skill

AI-powered skill router pack for reverse engineering, penetration testing, and security research. Routes AI agents to correct methodologies and…

ai-securitybinary-analysisctf+8
37.8k4 days ago
poisontap preview

poisontap

GitHubsamyk/poisontap

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

authenticationcommand-and-controldata-exfiltration+7
6.5k7 years ago
TP-Link-Archer-CR-700-XSS-Exploit preview

TP-Link-Archer-CR-700-XSS-Exploit

GitHubayushman4/tp-link-archer-cr-700-xss-exploit

Exploiting TP-Link Archer CR-700 Router. (Responsibly Disclosed to TP-Link)

exploitationiot-securitypenetration-testing+3
310 years ago
CVE-2026-36957 preview

CVE-2026-36957

GitHubkirubel-cve/cve-2026-36957

Proof-of-concept for CVE-2026-36957, a denial-of-service vulnerability in Dbit Router firmware via HTTP flood on the Boa web server, causing resource…

exploitationpenetration-testingvulnerability-analysis+1
5 months ago
CVE-2026-36956 preview

CVE-2026-36956

GitHubkirubel-cve/cve-2026-36956

Proof-of-concept for CVE-2026-36956, a CSRF vulnerability in Dbit Router firmware allowing unauthorized configuration changes via forged requests.

exploitationpenetration-testingvulnerability-analysis+2
5 months ago
CVE-2026-36958 preview

CVE-2026-36958

GitHubkirubel-cve/cve-2026-36958

Proof-of-concept for CVE-2026-36958, a denial-of-service vulnerability in U-SPEED Router firmware that exhausts resources via concurrent HTTP…

exploitationnetwork-securitypenetration-testing+2
5 months ago
DoS-via-cache-poisoning-by-forcing-SPA-mode-CVE-2025-43864- preview

DoS-via-cache-poisoning-by-forcing-SPA-mode-CVE-2025-43864-

GitHubpouriam23/dos-via-cache-poisoning-by-forcing-spa-mode-cve-2025-43864-

Proof-of-concept for a denial-of-service attack via cache poisoning by forcing SPA mode, targeting CVE-2025-43864 in React Router applications.

vulnerability-analysisweb-application-exploitationweb-security
11 year ago
CVE-2024-42658 preview

CVE-2024-42658

GitHubbaroi-ai/cve-2024-42658

CVE-2024-42658 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the cookies…

exploitationinformation-gatheringiot-security+3
12 years ago
CVE-2024-42657 preview

CVE-2024-42657

GitHubbaroi-ai/cve-2024-42657

CVE-2024-42657 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the lack of…

exploitationinformation-gatheringnetwork-security+3
12 years ago
CVE-2025-63820 preview

CVE-2025-63820

GitHubxernary/cve-2025-63820

Proof-of-concept of vulnerability found in Totolink A720R router

embedded-systems-securityexploitationhardware-iot-security+3
10 months ago
CVE-2025-70545 preview

CVE-2025-70545

GitHubjeyabalaji711/cve-2025-70545

Stored XSS proof-of-concept for PPC (Belden) ONT 2K05X router firmware v1.1.9_206L, with reproduction steps and mitigation guidance for the…

educationexploitationpenetration-testing+3
8 months ago
Previous12Next