Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
235 results
CVE-2026-24207 preview

CVE-2026-24207

GitHuboffseckit/cve-2026-24207

CVE-2026-24207 — NVIDIA Triton SageMaker auth bypass to unauth RCE. Detection script, bypass demo, RCE-chain PoC, and IDS rules.

authenticationcloud-securitycommand-and-control+8
1
3 months ago
CVE-2025-12720 preview

CVE-2025-12720

GitHubd0n601/cve-2025-12720

g-FFL Cockpit <= 1.7.1 - Improper Authorization to Unauthenticated Product Deletion

api-security-testingauthenticationexploitation+3
11 months ago
serverless preview

serverless

GitHubserverless/serverless

CLI framework for deploying and managing serverless applications on AWS Lambda with YAML infrastructure, local development, and multi-language…

authenticationcloud-infrastructure-securitydevsecops+4
46.9k2 days ago
mimikatz-missing-manual preview

mimikatz-missing-manual

GitHubdarkoperator/mimikatz-missing-manual

Comprehensive self-paced manual on Windows identity, Kerberos, and PKI internals, covering credential dumping, ticket forgery, domain persistence,…

authenticationcryptographyeducation+6
4658 months ago
CVE-2025-48827 preview

CVE-2025-48827

GitHubsh4den/cve-2025-48827

This repository contains a proof-of-concept exploit for CVE-2025-48827, a critical authentication bypass vulnerability affecting vBulletin…

authenticationeducationexploitation+3
13 months ago
CVE-2017-7921 preview

CVE-2017-7921

GitHubmverschu/cve-2017-7921

HikVision Auth Bypass CVE, tool is able to extract credentials, and take snapshots based on magic cookie or supplied credentials.

authenticationexploitationinformation-gathering+5
7 months ago
CVE-2017-12542-Exploit preview

CVE-2017-12542-Exploit

GitHubgill-singh-a/cve-2017-12542-exploit

Proof-of-concept exploit for CVE-2017-12542, an authentication bypass vulnerability in HP iLO. Allows vulnerability detection and unauthorized…

authenticationexploitationpenetration-testing+3
7 months ago
ticket_converter preview
Archived

ticket_converter

GitHubzer1t0/ticket_converter

A little tool to convert ccache tickets into kirbi (KRB-CRED) and vice versa based on impacket.

authenticationpenetration-testingpost-exploitation+1
1714 years ago
macOS-Security-and-Privacy-Guide preview

macOS-Security-and-Privacy-Guide

GitHubdrduh/macos-security-and-privacy-guide

Curated macOS security and privacy guide with practical instructions for threat modeling, disk encryption, firewall configuration, secure…

authenticationcryptographycurated-resources+4
22.5k13 days ago
Tyr preview

Tyr

GitHubjb-selfcompany/tyr

True P2P Email on top of Yggdrasil Network for Android

android-securityauthenticationemail-security+4
3492 months ago
CVE-2021-3754 preview

CVE-2021-3754

GitHub7ragnarok7/cve-2021-3754

Vulnerability details and exploit for CVE-2021-3754

authenticationauthentication-authorizationexploitation+3
11 year ago
CVE-2026-20127 preview

CVE-2026-20127

GitHubrandeepajayasekara/cve-2026-20127

Walkthrough of the CVSS 10.0 authentication bypass in Cisco Catalyst SD-WAN from first malformed peering request to root on the management plane.

authenticationeducationexploitation+3
7 months ago
Moniker-Link-Lab-Setup preview

Moniker-Link-Lab-Setup

GitHube-m-e-k-a/moniker-link-lab-setup

Penetration testing lab demonstrating CVE-2024-21413 moniker link exploitation for NTLM credential theft, including attack execution, hash cracking,…

authenticationeducationexploitation+6
6 months ago
apache__mina-sshd_CVE-2023-35887_2-9-2 preview

apache__mina-sshd_CVE-2023-35887_2-9-2

GitHubshoucheng3/apache__mina-sshd_cve-2023-35887_2-9-2

Pure Java SSH client/server library implementing SSH-2 protocol with support for multiple ciphers, key exchanges, authentication methods, SFTP, SCP,…

authenticationcryptographyencryption-decryption-tools+5
1 year ago
dahua-cve-research preview

dahua-cve-research

GitHubumair-aziz025/dahua-cve-research

Dahua IP camera CVE research toolkit (CVE-2021-33044/33045, CVE-2025-31700/31701)

authenticationeducationexploitation+5
296 months ago
USSH preview

USSH

GitHubx1colegal/ussh

Recreated SSH over USTPS

authenticationcryptographyencryption-decryption-tools+3
31 month ago
Aegis preview

Aegis

GitHubbeemdevelopment/aegis

A free, secure and open source app for Android to manage your 2-step verification tokens.

android-securityauthenticationauthentication-authorization+5
13.2k28 days ago
CVE-2026-0073-Android-adbd-authentication-bypass-POC preview

CVE-2026-0073-Android-adbd-authentication-bypass-POC

GitHubsectestannaquinn/cve-2026-0073-android-adbd-authentication-bypass-poc

Proof-of-concept exploit for CVE-2026-0073, an Android ADB authentication bypass allowing network attackers to connect to devices with ADB over TCP…

android-securityauthenticationexploitation+3
845 months ago
Previous1234…14Next