Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
107 results
Syd preview

Syd

GitLabsydsec1/syd

Air-gapped cybersecurity assistant for security professionals. 100% offline AI-powered analysis tool for Nmap, Volatility, BloodHound, Metasploit,…

ai-securityeducationinformation-gathering+7
4
7 months ago
gemini-2.5-pro-nf-tables-red-teamin preview

gemini-2.5-pro-nf-tables-red-teamin

GitHubdestawell/gemini-2.5-pro-nf-tables-red-teamin

A technical case study and timeline dataset documenting Google Gemini 2.5 Pro's safety alignment policies, guardrails, and refusal behavior evolution…

ai-securityeducationexploitation+3
2 months ago
gemini-2.5-pro-nf-tables-red-teaming preview

gemini-2.5-pro-nf-tables-red-teaming

GitHubdestawell/gemini-2.5-pro-nf-tables-red-teaming

Gemini 2.5 Pro nf_tables Red Teaming Case Study (CVE-2023-32233) — LLM Safety Alignment & Responsible Disclosure

ai-securityeducationexploitation+3
11 month ago
markdown-exfil-tester preview

markdown-exfil-tester

GitHubtrerb/markdown-exfil-tester

Black-box test whether an LLM chatbot is vulnerable to markdown/HTML exfil (CVE-2025-32711 class). Spins up a sink, sends payloads, renders in…

ai-securityctfdynamic-analysis-sandboxing+6
4 months ago
CVE-2026-33626-Lab preview

CVE-2026-33626-Lab

GitHubrootdirective-sec/cve-2026-33626-lab

Docker Compose lab reproducing CVE-2026-33626 SSRF in LMDeploy's vision-language image loader. Compares vulnerable (0.12.0) and patched (0.12.3)…

ai-securityctfeducation+3
3 months ago
o3_finds_cve-2025-37899 preview

o3_finds_cve-2025-37899

GitHubccss17/o3_finds_cve-2025-37899

Artefacts for blog post on finding CVE-2025-37899 with o3

ai-securityeducationexploitation+3
9 months ago
Zerodapi preview

Zerodapi

GitHub0dai-ml/zerodapi

0dAPI Official Docs

ai-securityeducationexploit-frameworks+5
12 years ago
CVE-2025-3248 preview

CVE-2025-3248

GitHub0xgh057r3c0n/cve-2025-3248

Exploit for Langflow AI Remote Code Execution (Unauthenticated)

ai-securityeducationexploitation+3
1 year ago
Research-on-CVE-2025-9998 preview

Research-on-CVE-2025-9998

GitHubbalajigund/research-on-cve-2025-9998

vulnerability in CVE 2025-9998 and solution for those vulnerability with help artificial intelligence

ai-securityeducationpapers-research+2
7 months ago
ethibench preview

ethibench

GitHubjd0965199-oss/ethibench

Evaluation framework for AI penetration testing agents that measures validated vulnerability discovery using LLM-based semantic matching, bipartite…

ai-securityeducationmachine-learning+4
3 months ago
CVE-2024-11394 preview

CVE-2024-11394

GitHubpiyush-bhor/cve-2024-11394

Technical Details and Exploit for CVE-2024-11394

ai-securityeducationexploitation+3
1 year ago
CVE-2025-492025 preview

CVE-2025-492025

GitHubimthecopilotnow/cve-2025-492025

Detailed security advisory for CVE-2025-492025, documenting a UI misrepresentation vulnerability in Copilot AI that injects unintended hyperlinks…

ai-securityeducationpapers-research+2
1 year ago
IPI-exposure-signal preview

IPI-exposure-signal

GitHubjianshuod/ipi-exposure-signal

Research pipeline for detecting latent indirect prompt-injection exposure signals in agentic LLMs via hidden-state probing, including trace…

ai-securityeducationmachine-learning+1
422 days ago
pentestcode preview

pentestcode

GitHubs0ld13rr/pentestcode

Autonomous AI penetration testing agent that orchestrates multi-agent recon, exploitation, post-exploitation, and reporting with persistent…

ai-securitycloud-securityctf+9
4195 days ago
training-security-awareness preview

training-security-awareness

GitHubransomleak/training-security-awareness

Open-source interactive security awareness training library with 130+ SCORM exercises covering phishing, vishing, BEC, MFA fatigue, and OWASP AI/LLM…

ai-securityeducationemail-security+5
10129 days ago
CVE-2026-21852-PoC preview

CVE-2026-21852-PoC

GitHubatiilla/cve-2026-21852-poc

Educational demo of three Claude Code vulnerabilities (hooks bypass, MCP injection, API key exfiltration) with attacker server, MITM proxy, and…

ai-securityeducationexploitation+5
246 months ago
CVE-2026-22807_Range preview

CVE-2026-22807_Range

GitHubotakuliu/cve-2026-22807_range

Educational Python target range simulating CVE-2026-22807, an AI supply chain RCE via TOCTOU in model loading. Includes vulnerable library, PoC…

ai-securityeducationexploitation+3
6 months ago
Previous123456Next