Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
495 results
CMF-Watch-Pro-2-BLE-Protocol preview

CMF-Watch-Pro-2-BLE-Protocol

GitHubjoshuapassos/cmf-watch-pro-2-ble-protocol

Reverse-engineered BLE protocol for the CMF Watch Pro 2, documenting GATT layout, AES-128-CBC encrypted command frames, authentication handshake, and…

bluetooth-securitycryptographyembedded-systems-security+6
4
1 month ago
Sec5GLoc preview

Sec5GLoc

GitHubsec5gloc/sec5gloc

Adversary-resilient deep learning architecture for secure 5G indoor localization, combining CNN and multi-head attention to defend against signal…

adversarial-attackai-securityiot-security+2
71 year ago
SymaX5SW-Rx-Tx preview

SymaX5SW-Rx-Tx

GitHubinfobyte/symax5sw-rx-tx

Syma X5SW Telemetry and Transmissor

embedded-systems-securityhardware-hackingiot-security+3
47 years ago
powerg-tools preview

powerg-tools

GitHubnccgroup/powerg-tools

Tools for reverse engineering and interacting with the PowerG radio protocol

embedded-systems-securityfirmware-analysishardware-security+3
55 months ago
Zhilly preview

Zhilly

GitLabsacriphanius/zhilly

🛡️ AI-powered portable cybersecurity & pentesting assistant built on ESP32-S3 (LilyGO T-Embed CC1101 & T-Watch S3). Features voice-controlled RF…

embedded-systems-securityhardware-hackingiot-security+6
128 days ago
ESPTouchCatcher preview

ESPTouchCatcher

GitHubsalgio/esptouchcatcher

eWeLinkESPT is a tool that automatically decodes and decrypts the WiFi network credentials transmitted to a supported ESP-based IoT device by the…

cryptographyexploitationhardware-iot-security+4
55 years ago
trackem preview

trackem

GitHubveteranop/trackem

Passive Device Tracker (Android)TrackEm Mobile is a real-time, passive Wi-Fi + Bluetooth LE probe-request scanner designed for OSINT, red-team ops,…

bluetooth-securityinformation-gatheringiot-security+6
49 months ago
fwbt preview

fwbt

GitHubxen0bit/fwbt

Proof of Concept code for interaction with Firewalla via Bluetooth Low-Energy and exploitation of CVE-2024-40892 / CVE-2024-40893

bluetooth-securityexploitationhardware-security+3
52 years ago
CVE-2026-58457 preview

CVE-2026-58457

GitHubj4ck3lsyn-gen2/cve-2026-58457

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…

command-and-controleducationexploitation+7
21 month ago
Characterization-and-Detection-of-Cross-Router-Covert-Channels preview

Characterization-and-Detection-of-Cross-Router-Covert-Channels

GitHuborensv/characterization-and-detection-of-cross-router-covert-channels

This repository includes the source code used in the "Characterization and Detection of Cross-Router Covert Channels" paper.

anomaly-detectioneducationintrusion-detection+4
33 years ago
-BuL preview

-BuL

GitHubhegaz0y/-bul

EDSEC_BKIF is a keystroke injection tool for Android, Linux, and iOS. With the help of CVE-2023-45866, it grants users unprecedented control over…

bluetooth-securityexploitationexploit-frameworks+3
13 months ago
AndroidAuto preview

AndroidAuto

GitHubmretallack/androidauto

Open-source Android Auto phone-side implementation with protocol reverse engineering, TLS mutual authentication, H.264 video projection, touch input…

android-securitybluetooth-securityeducation+4
13 months ago
CVE-2025-34152 preview

CVE-2025-34152

GitHubkh4sh3i/cve-2025-34152

Go-based PoC exploit for unauthenticated remote code execution on Shenzhen Aitemi M300 Wi-Fi repeaters. Includes a scanner and does not reboot the…

exploitationhardware-securityiot-security+3
211 months ago
CVE-2023-45866_EXPLOITS preview

CVE-2023-45866_EXPLOITS

GitHubavishekdhakal/cve-2023-45866_exploits

Exploits Tested in Mi A2 Lite and Realme 2 pro

android-securitybluetooth-securityexploitation+3
21 year ago
CVE-2025-69821-Beat-XP-Vega-Smartwatch-Security-Assessment preview

CVE-2025-69821-Beat-XP-Vega-Smartwatch-Security-Assessment

GitHubcipherx1802/cve-2025-69821-beat-xp-vega-smartwatch-security-assessment

A security assessment of the Beat XP VEGA Smartwatch (Firmware RB303ATV006229) focused on Bluetooth Low Energy (BLE) connectivity revealed a design…

bluetooth-securityembedded-systems-securityexploitation+6
4 months ago
MagicArch preview

MagicArch

GitLabmagicbytes/magicarch

MagicArch is a comprehensive post-installation script built with Ansible, designed to transform a basic Arch Linux installation into a fully equipped…

exploit-frameworksforensicsinformation-gathering+8
22 years ago
whisper-pair preview

whisper-pair

GitHubap425q/whisper-pair

Scans Bluetooth Low Energy devices for Fast Pair vulnerabilities (CVE-2025-36911), testing if accessories accept unencrypted Key-Based Pairing…

bluetooth-securityexploitationhardware-iot-security+3
27 months ago
CVE-2026-41285-OpenBSD-v6daemons-go-brrr preview

CVE-2026-41285-OpenBSD-v6daemons-go-brrr

GitHubrat5ak/cve-2026-41285-openbsd-v6daemons-go-brrr

One IPv6 ND option with length zero. One missing check. Daemon walks backward and lives in the loop. Reported to OpenBSD, fixed, CVE assigned.

exploitationfuzzingnetwork-security+2
3 months ago
Previous1…8910…28Next