Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
16 results
wifiphisher preview

wifiphisher

GitHubwifiphisher/wifiphisher

Rogue Access Point framework for red team engagements and Wi-Fi security testing. Performs Evil Twin, KARMA, and Known Beacons attacks to achieve…

impersonation-toolsmalware-analysisphishing+6
14.8k
3 months ago
fsociety preview

fsociety

GitHubmanisso/fsociety

Modular penetration testing framework bundling 40+ tools for information gathering, password attacks, exploitation, web hacking, sniffing, and…

exploitationinformation-gatheringpassword-attacks+6
12.3k1 month ago
AllHackingTools preview

AllHackingTools

GitHubmishakorzik/allhackingtools

All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.

crawlerexploitationhash-analysis+8
6.1k9 months ago
PwnSTAR preview

PwnSTAR

GitHubsilverfoxx/pwnstar

Automated fake-access-point toolkit for penetration testing, featuring captive portal phishing, WPA handshake capture, browser exploitation, and…

captcha-bypassdns-analysisexploitation+7
2608 years ago
duckLogger preview

duckLogger

GitHubitsmmdoha/ducklogger

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

command-and-controldata-exfiltrationembedded-systems-security+8
874 months ago
CVE-2023-35803 preview

CVE-2023-35803

GitHublachlan2k/cve-2023-35803

PoC exploit for CVE-2023-35803 unauthenticated buffer overflow in Aerohive HiveOS/Extreme Networks IQ Engine, enabling remote code execution on…

exploitationiot-securitypenetration-testing+3
233 years ago
easy-exploits preview

easy-exploits

GitHubefchatz/easy-exploits

Curated collection of proof-of-concept exploits for 16 CVEs targeting web applications (ASUS, D-Link, Netgear, TP-Link, Xiaomi) and Wi-Fi WPA3-SAE,…

educationexploitationpenetration-testing+3
173 years ago
RedRoot preview

RedRoot

GitHubagampreet-singh/redroot

Offensive security CLI framework for pentesting and red teaming. Includes modules for recon, exploitation, fuzzing, payloads, wireless,…

ctfexploit-frameworksfuzzing+9
174 months ago
CVE-2018-14714-RCE-exploit preview

CVE-2018-14714-RCE-exploit

GitHubbttea/cve-2018-14714-rce-exploit

Python-based proof-of-concept exploit for CVE-2018-14714, an RCE in ASUS routers, providing command execution and reverse shell capabilities for…

educationexploitationiot-security+5
1810 months ago
CVE-2026-58457 preview

CVE-2026-58457

GitHubj4ck3lsyn-gen2/cve-2026-58457

Unauthenticated OS command injection exploit for Shenzhen Aitemi M300 Wi-Fi Repeater with validator, payload generator, and Metasploit module for…

command-and-controleducationexploitation+7
21 month ago
CVE-2026-22226 preview

CVE-2026-22226

GitHublucasvanhaaren/cve-2026-22226

Blind OS command injection proof-of-concept exploiting weak input validation in TP-Link Archer router VPN client, achieving root shell via telnetd.

command-and-controlexploitationiot-security+4
11 month ago
fracture preview

fracture

GitHubelvira-alec/fracture

FragAttacks WiFi penetration framework — CVE-2020-24586/87/88

dns-analysisexploitationinformation-gathering+7
24 months ago
CVE-2024-57366 preview

CVE-2024-57366

GitHubh4ckusaur/cve-2024-57366

Remote code execution exploit for CVE-2024-57366 targeting WAVLINK routers via MAC address validation bypass and command injection, with automatic…

command-and-controlexploitationiot-security+6
11 months ago
CVE-2023-33538 preview

CVE-2023-33538

GitHubexplxx/cve-2023-33538

Python Exploit for TP-Link TL-WR940N/TL-WR841N Command Injection Vulnerability

command-and-controleducationexploitation+5
11 year ago
SpaceX-Starlink-Router-Gen-2-XSS preview

SpaceX-Starlink-Router-Gen-2-XSS

GitHubyoshida-git-ai/spacex-starlink-router-gen-2-xss

Proof-of-concept exploit for CVE-2023-49965: Cross-Site Scripting (XSS) in Starlink Router Gen 2 captive portal, enabling CSRF-based control of…

exploitationhardware-iot-securityiot-security+3
12 years ago
CVE-2025-52689-PoC preview

CVE-2025-52689-PoC

GitHubultimatehg/cve-2025-52689-poc

Proof-of-concept exploit for CVE-2025-52689, an authentication bypass in Alcatel-Lucent Enterprise AP1361D Wi-Fi access points, enabling session…

authentication-authorizationexploitationpenetration-testing+3
1 year ago