Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
494 results
sony-vp-extract preview

sony-vp-extract

GitHubhelgesverre/sony-vp-extract

Decrypt and extract voice guidance MP3 prompts from Sony WH-1000XM4 encrypted voice packs. AES key extracted via Bluetooth firmware dump of the…

bluetooth-securitycryptographyembedded-systems-security+5
251 month ago
obike preview

obike

GitHubantoinet/obike

Reverse engineering of the oBike protocol communication (BLE and HTTP)

api-securitybluetooth-securitycryptography+4
427 years ago
witchcraft preview

witchcraft

GitHubcosmic-zip/witchcraft

WITCHCRAFT is a cyberdeck toolkit built for runners who dive deep into the mesh. It’s your all-in-one rig for data-ghosting, ICE-breaking, and…

bluetooth-securityforensicsnetwork-mapping+8
511 year ago
Wifi-Purple preview

Wifi-Purple

GitHubemrekybs/wifi-purple

Automated WiFi security testing script that captures handshakes and performs deauthentication attacks using airmon-ng and wifite for wireless…

password-attackspenetration-testingwi-fi-auditing+1
255 months ago
Google-Nest-Cam-Bug-Disclosures preview

Google-Nest-Cam-Bug-Disclosures

GitHubjasondoyle/google-nest-cam-bug-disclosures

PoC vulnerability disclosures for consumer IoT cameras, detailing BLE buffer overflow and WiFi disassociation attacks that can take devices offline.

bluetooth-securityembedded-systems-securityexploitation+3
389 years ago
DLPwn preview

DLPwn

GitHubgryfman/dlpwn

Red Team tool for covert file exfiltration via Bluetooth audio transmission, encoding binary data into FLAC signals to bypass EDR, XDR, and DLP…

bluetooth-securitycommand-and-controldata-exfiltration+5
245 months ago
killosx preview

killosx

GitHubd4rkcat/killosx

use the Apple CoreText exploit (CVE-2012-3716) and launch an AP to affect all devices within wifi range

exploitationred-teamingvulnerability-analysis+2
2211 years ago
hostap preview

hostap

GitHubjmalinen/hostap

Clone of w1.fi hostap.git - NOTE: This is not the main development location and pull requests for this repository are ignored. See the upstream…

authenticationwi-fi-auditingwireless-security
166 years ago
GHOST preview

GHOST

GitHubrazkom/ghost

ESP32-S3 firmware for standalone WPA/WPA2 handshake capture and deauthentication testing via TFT UI, with pcap download over WiFi AP.

educationembedded-systems-securityhardware-iot-security+3
274 months ago
blur preview

blur

GitHubfrancozappa/blur

BLURtooth: Exploiting Cross-Transport Key Derivation in Bluetooth Classic and Bluetooth Low Energy [CVE-2020-15802] [CVE-2022-20361]

bluetooth-securityeducationexploitation+3
214 years ago
Cable-modems preview

Cable-modems

GitHubebux/cable-modems

Black-box security evaluation of five ISP cable modem/router gateways, analyzing firmware images and documenting 35+ vulnerabilities including…

embedded-systems-securityexploitationfirmware-analysis+5
2510 years ago
easy-exploits preview

easy-exploits

GitHubefchatz/easy-exploits

Curated collection of proof-of-concept exploits for 16 CVEs targeting web applications (ASUS, D-Link, Netgear, TP-Link, Xiaomi) and Wi-Fi WPA3-SAE,…

educationexploitationpenetration-testing+3
173 years ago
CVE-2017-16778-Intercom-DTMF-Injection preview

CVE-2017-16778-Intercom-DTMF-Injection

GitHubbreaktoprotect/cve-2017-16778-intercom-dtmf-injection

A coordinated disclosure and security advisory on Fermax Intercom DTML Injection vulneraiblity. Special thanks to Fermax International for prompt…

embedded-systems-securityexploitationhardware-hacking+6
226 years ago
RedRoot preview

RedRoot

GitHubagampreet-singh/redroot

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

ctfexploit-frameworksfuzzing+9
174 months ago
365cam-stream preview

365cam-stream

GitHubinartin/365cam-stream

Local streaming tool for cheap WiFi cameras that bypasses cloud services and phone apps. Discovers cameras on your network, authenticates via PPPP…

hardware-iot-securityiot-securitynetwork-security+3
165 months ago
CVE-2020-28148 preview

CVE-2020-28148

GitHubfengchenzxc/cve-2020-28148

Wi-Fi portal authentication bypass exploit using MAC address spoofing to gain unauthorized network access, demonstrated on enterprise AC and AP…

authentication-authorizationexploitationnetwork-security+4
174 years ago
MouseJack preview

MouseJack

GitHubsecurityward/mousejack

All the details and steps needed to perform tactical mousejacking using Autojack

exploitationpayload-generationred-teaming+2
157 years ago
awind-research preview

awind-research

GitHubqkaiser/awind-research

This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

embedded-systems-securityexploitationhardware-iot-security+5
135 years ago
Previous1…678…28Next