Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
70 results
vcsa-hardening-tool preview

vcsa-hardening-tool

GitHubmandiant/vcsa-hardening-tool

Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

authenticationcloud-infrastructure-securityconfiguration-auditing+9
13
4 months ago
spark-exploit preview

spark-exploit

GitHubakhld/spark-exploit

Arbitary Code Execution in Unsecured Apache Spark Cluster

cloud-infrastructure-securitycloud-securityexploitation+2
87 years ago
CVE-2026-64531 preview

CVE-2026-64531

GitHub0xblackash/cve-2026-64531

Reference analysis of a Linux kernel Open vSwitch memory-corruption vulnerability, covering root cause, impact, detection commands, and mitigation…

cloud-infrastructure-securityeducationnetwork-security+2
224 days ago
cloud-doctor preview

cloud-doctor

GitHubdumbmachine/cloud-doctor

One command grades your whole cloud account — misconfigurations, missing observability, and security posture.

cloud-infrastructure-securitycloud-securityconfiguration-auditing+3
21 month ago
poc-2025-9074 preview

poc-2025-9074

GitHubxwpdx0/poc-2025-9074

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

cloud-infrastructure-securitycommand-and-controlcontainer-security+7
48 months ago
vCenter-Server-Workaround-Script-CVE-2021-44228 preview

vCenter-Server-Workaround-Script-CVE-2021-44228

GitHubfazmin/vcenter-server-workaround-script-cve-2021-44228

Script - Workaround instructions to address CVE-2021-44228 in vCenter Server

cloud-infrastructure-securityincident-responsemisconfiguration+3
24 years ago
azure-vulnerability-remediation-project preview

azure-vulnerability-remediation-project

GitHubdawnsmithcyber/azure-vulnerability-remediation-project

End-to-end vulnerability management lifecycle on Azure Windows Server 2025. Features OS patching and network-level compensating controls (NSG) to…

cloud-infrastructure-securitycloud-securityconfiguration-auditing+6
14 months ago
CVE-2025-12748 preview

CVE-2025-12748

GitHubteresh1/cve-2025-12748

Proof of concept for CVE-2025-12748, a denial-of-service vulnerability in libvirt XML processing that bypasses ACL checks, allowing resource…

cloud-infrastructure-securityeducationexploitation+1
9 months ago
CVE-2023-5044 preview

CVE-2023-5044

GitHubkubernetesbachelor/cve-2023-5044

Poc for CVE 2023 5044

cloud-infrastructure-securitycloud-securitycontainer-security+4
1 year ago
ingress-nightmare preview

ingress-nightmare

GitHubtuladhar/ingress-nightmare

IngressNightmare (CVE-2025-1974)

cloud-infrastructure-securitycloud-securityconfiguration-auditing+3
1 year ago
contrast preview

contrast

GitHubcontrastsecurity/contrast

SAST CLI for scanning Java, JavaScript, and .NET applications plus AWS Lambda functions, detecting code vulnerabilities and over-permissive IAM…

cloud-infrastructure-securitycloud-securitycode-analysis+6
202 months ago
cve-2026-31431-algif-aead-remediator preview

cve-2026-31431-algif-aead-remediator

GitHubboliu83/cve-2026-31431-algif-aead-remediator

Kubernetes DaemonSet to detect and remediate CVE-2026-31431 (GHSA-2274-3hgr-wxv6) — algif_aead LPE via modprobe blacklist

cloud-infrastructure-securityconfiguration-auditingcontainer-security+3
3 months ago
cve-2026-31431-ansible preview

cve-2026-31431-ansible

GitHubaestechno/cve-2026-31431-ansible

Ansible playbook to detect and apply kernel cmdline mitigation for CVE-2026-31431 (Copy Fail) across Debian/Ubuntu/RHEL fleets, with read-only…

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
33 months ago
CVE-2026-58073-check preview

CVE-2026-58073-check

GitHubbishopfox/cve-2026-58073-check

Safely detect Veeam Service Provider Console auth bypass CVE-2026-58073

cloud-infrastructure-securitynetwork-securitypenetration-testing+2
1 day ago
cpanel-cve-2026-41940-fix preview

cpanel-cve-2026-41940-fix

GitHubshahidmallaofficial/cpanel-cve-2026-41940-fix

One-shot detection and remediation for cPanel/WHM servers compromised via CVE-2026-41940, including IOC checks, malware cleanup, C2 blocking, and…

cloud-infrastructure-securityconfiguration-auditingdigital-forensics+5
53 months ago
docker-socket-risk-demos preview

docker-socket-risk-demos

GitHubashleyt3/docker-socket-risk-demos

Companion source for YouTube video "Stop Mounting docker.sock — Run Trivy Without Giving Away Root Access — (inspired by CVE-2026-33634)"

cloud-infrastructure-securitycontainer-securitydevsecops+3
4 months ago
Previous1234Next