Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
505 results
trackem preview

trackem

GitHubveteranop/trackem

Passive Device Tracker (Android)TrackEm Mobile is a real-time, passive Wi-Fi + Bluetooth LE probe-request scanner designed for OSINT, red-team ops,…

bluetooth-securityinformation-gatheringiot-security+6
4
9 months ago
Zhilly preview

Zhilly

GitLabsacriphanius/zhilly

🛡️ AI-powered portable cybersecurity & pentesting assistant built on ESP32-S3 (LilyGO T-Embed CC1101 & T-Watch S3). Features voice-controlled RF…

embedded-systems-securityhardware-hackingiot-security+6
21 month ago
AndroidAuto preview

AndroidAuto

GitHubmretallack/androidauto

Open-source Android Auto phone-side implementation with protocol reverse engineering, TLS mutual authentication, H.264 video projection, touch input…

android-securitybluetooth-securityeducation+4
23 months ago
fwbt preview

fwbt

GitHubxen0bit/fwbt

Proof of Concept code for interaction with Firewalla via Bluetooth Low-Energy and exploitation of CVE-2024-40892 / CVE-2024-40893

bluetooth-securityexploitationhardware-security+3
52 years ago
CVE-2026-58457 preview

CVE-2026-58457

GitHubj4ck3lsyn-gen2/cve-2026-58457

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…

command-and-controleducationexploitation+7
22 months ago
CVE-2026-21006-Zigbee-Light-Link-Factory-Reset-Exploit preview

CVE-2026-21006-Zigbee-Light-Link-Factory-Reset-Exploit

GitHubgeorge0papasotiriou/cve-2026-21006-zigbee-light-link-factory-reset-exploit

Simulated Zigbee Light Link (ZLL) factory reset exploit for CVE-2026-21006, demonstrating unauthenticated TouchLink command injection that wipes…

embedded-systems-securityexploitationhardware-iot-security+3
1 month ago
CVE-2021-1965 preview

CVE-2021-1965

GitHubfoxtrot/cve-2021-1965

Proof-of-concept exploit for CVE-2021-1965, a Wi-Fi vulnerability, leveraging libwifi for packet parsing and crafted for educational purposes.

binary-exploitationexploitationexploit-frameworks+2
34 years ago
CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth- preview

CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth-

GitHubgeorge0papasotiriou/cve-2026-11109-bluetooth-classic-knob-attack-key-negotiation-of-bluetooth-

Python simulation of the Bluetooth Classic KNOB attack, showing encryption key-size downgrade and brute-force decryption of intercepted Bluetooth…

bluetooth-securitycryptographyeducation+3
1 month ago
CVE-2026-11117-WPA2-4-Way-Handshake-Reinstallation-KRACK-Sim- preview

CVE-2026-11117-WPA2-4-Way-Handshake-Reinstallation-KRACK-Sim-

GitHubgeorge0papasotiriou/cve-2026-11117-wpa2-4-way-handshake-reinstallation-krack-sim-

Python simulation of CVE-2026-11117 demonstrating WPA2 4-way handshake PTK reinstallation and nonce reuse to illustrate the KRACK attack.

educationexploitationvulnerability-analysis+1
1 month ago
Characterization-and-Detection-of-Cross-Router-Covert-Channels preview

Characterization-and-Detection-of-Cross-Router-Covert-Channels

GitHuborensv/characterization-and-detection-of-cross-router-covert-channels

This repository includes the source code used in the "Characterization and Detection of Cross-Router Covert Channels" paper.

anomaly-detectioneducationintrusion-detection+4
33 years ago
smart-sketcher-upload preview

smart-sketcher-upload

GitHubdavidrxchester/smart-sketcher-upload

Exploits Bluetooth authentication bypass on smART Sketcher 2.0 toy projector, allowing unauthenticated connection and image upload via Python scripts.

bluetooth-securityexploitationhardware-iot-security+4
38 months ago
CVE-2023-45866_EXPLOITS preview

CVE-2023-45866_EXPLOITS

GitHubavishekdhakal/cve-2023-45866_exploits

Exploits Tested in Mi A2 Lite and Realme 2 pro

android-securitybluetooth-securityexploitation+3
22 years ago
whisper-pair preview

whisper-pair

GitHubap425q/whisper-pair

Scans Bluetooth Low Energy devices for Fast Pair vulnerabilities (CVE-2025-36911), testing if accessories accept unencrypted Key-Based Pairing…

bluetooth-securityexploitationhardware-iot-security+3
27 months ago
CVE-2025-34152 preview

CVE-2025-34152

GitHubkh4sh3i/cve-2025-34152

Go-based PoC exploit for unauthenticated remote code execution on Shenzhen Aitemi M300 Wi-Fi repeaters. Includes a scanner and does not reboot the…

exploitationhardware-securityiot-security+3
20 years ago
MagicArch preview

MagicArch

GitLabmagicbytes/magicarch

MagicArch is a comprehensive post-installation script built with Ansible, designed to transform a basic Arch Linux installation into a fully equipped…

exploit-frameworksforensicsinformation-gathering+8
22 years ago
CVE-2026-41285-OpenBSD-v6daemons-go-brrr preview

CVE-2026-41285-OpenBSD-v6daemons-go-brrr

GitHubrat5ak/cve-2026-41285-openbsd-v6daemons-go-brrr

One IPv6 ND option with length zero. One missing check. Daemon walks backward and lives in the loop. Reported to OpenBSD, fixed, CVE assigned.

exploitationfuzzingnetwork-security+2
4 months ago
CVE-2025-69821-Beat-XP-Vega-Smartwatch-Security-Assessment preview

CVE-2025-69821-Beat-XP-Vega-Smartwatch-Security-Assessment

GitHubcipherx1802/cve-2025-69821-beat-xp-vega-smartwatch-security-assessment

A security assessment of the Beat XP VEGA Smartwatch (Firmware RB303ATV006229) focused on Bluetooth Low Energy (BLE) connectivity revealed a design…

bluetooth-securityembedded-systems-securityexploitation+6
5 months ago
CVE-2025-63353 preview

CVE-2025-63353

GitHubzvckster/cve-2025-63353

Multi-language PoC (Python · Go · JS · C) and technical documentation for CVE-2025-63353, a critical predictable-default-PSK vulnerability in…

cryptographycurated-resourceseducation+8
3 months ago
Previous1…91011…29Next