Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
163 results
vibe-coding-security preview

vibe-coding-security

GitHubboxed-dev/vibe-coding-security

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

ai-securityapi-securityauthentication+9
14
11 days ago
Interview_Tips preview

Interview_Tips

GitHubjigerjain/interview_tips

Summary of Cyber Security interview questions I have been through, hope this helps

binary-exploitationcloud-securitycryptography+5
716 years ago
Awesome-CloudSec-Labs preview

Awesome-CloudSec-Labs

GitHubiknowjason/awesome-cloudsec-labs

Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.

cloud-securitycontainer-securityctf+7
2.2k10 months ago
CVE-2026-64640 preview

CVE-2026-64640

GitHuboscerd/cve-2026-64640

Reproducer that exploits credential vending before location validation in Apache Polaris Iceberg REST, proving cross-tenant cloud reads and bucket…

api-securitycloud-securitydata-exfiltration+5
13 days ago
Zapscape preview

Zapscape

GitHubv4bel/zapscape
binary-exploitationcloud-securityexploitation+3
15814 days ago
Google-api-key-scanner preview

Google-api-key-scanner

GitHubcoffinxp/google-api-key-scanner
api-security-testingcloud-securitymisconfiguration+3
551 month ago
advisories preview

advisories

GitHub0xdea/advisories

A collection of my public security advisories.

cloud-securitycurated-resourceseducation+5
279 months ago
aad-sso-enum-brute-spray preview

aad-sso-enum-brute-spray

GitHubtreebuilder/aad-sso-enum-brute-spray

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

authentication-authorizationcloud-securityinformation-gathering+3
1934 years ago
advisories preview

advisories

GitHubjustinsteven/advisories
cloud-securitycurated-resourceseducation+3
2713 years ago
kube-trivy preview

kube-trivy

GitHubmasahiro331/kube-trivy

Trivy for Kubernetes

cloud-securitycontainer-securityvulnerability-scanners
47 years ago
vuln-list-update preview

vuln-list-update

GitHubaquasecurity/vuln-list-update
cloud-securitydevsecopsioc-management+2
1961 month ago
CVE-2026-32794 preview

CVE-2026-32794

GitHubsnailsploit/cve-2026-32794

CVE-2026-32794: TLS Certificate Verification Bypass in Apache Airflow Databricks Provider

cloud-securityeducationmisconfiguration+3
3 months ago
CVE-2026-3288 preview

CVE-2026-3288

GitHubsnailsploit/cve-2026-3288

Walkthrough: ingress-nginx Configuration Injection via rewrite-target Annotation

cloud-securityconfiguration-auditingeducation+3
23 months ago
CVE-2026-40175 preview

CVE-2026-40175

GitHub0xblackash/cve-2026-40175

CVE-2026-40175

cloud-securityeducationexploitation+3
4 months ago
CVE-2026-33340 preview

CVE-2026-33340

GitHubregaan/cve-2026-33340

CVE-2026-33340: Critical SSRF in lollms-webui /api/proxy - Unauthenticated arbitrary request forgery (CVSS 9.1)

cloud-securityeducationexploitation+3
4 months ago
CVE-2024-6678 preview

CVE-2024-6678

GitHubfallenskill1/cve-2024-6678

PoC for CVE-2024-6678

cloud-securitydevsecopsexploitation+3
43 months ago
vuln-scanner preview

vuln-scanner

GitHubzappaboy/vuln-scanner

Vulnerability Assessment Scanner with Report Generation

api-security-testingcloud-securityconfiguration-auditing+9
1126 days ago
trivy-action preview

trivy-action

GitHubaquasecurity/trivy-action

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

cloud-securitycode-analysiscontainer-security+5
1.4k6 days ago
Previous12…10Next