Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
606 results
keycloak__keycloak_CVE-2022-1274_20-0-3 preview

keycloak__keycloak_CVE-2022-1274_20-0-3

GitHubshoucheng3/keycloak__keycloak_cve-2022-1274_20-0-3

Open source identity and access management solution providing single sign-on, user federation, and centralized authentication for modern applications…

api-securityauthentication-authorizationcloud-security+2
8 months ago
keycloak__keycloak_CVE-2022-4137_20-0-3 preview

keycloak__keycloak_CVE-2022-4137_20-0-3

GitHubshoucheng3/keycloak__keycloak_cve-2022-4137_20-0-3

Open source identity and access management solution providing single sign-on, user federation, and centralized authentication for modern applications…

api-securityauthentication-authorizationcloud-security+3
8 months ago
AWSTESTEXPLOIT preview

AWSTESTEXPLOIT

GitHubcatnip-express-maxim/awstestexploit

Testing if AWS exploit CVE-2025-2598 still works

cloud-securityexploitationpenetration-testing+2
10 months ago
fabric8io__kubernetes-client_CVE-2021-4178_5-0-2 preview

fabric8io__kubernetes-client_CVE-2021-4178_5-0-2

GitHubshoucheng3/fabric8io__kubernetes-client_cve-2021-4178_5-0-2

Java client providing fluent DSL access to Kubernetes and OpenShift REST APIs for managing cloud-native infrastructure, pods, services, and…

api-securityauthentication-authorizationcloud-infrastructure-security+3
1 year ago
asf__nifi_CVE-2023-36542_1-22-0 preview

asf__nifi_CVE-2023-36542_1-22-0

GitHubshoucheng3/asf__nifi_cve-2023-36542_1-22-0

Automated data flow platform for processing and distributing data with built-in provenance tracking, secure configuration, and scalable pipeline…

api-securityauthentication-authorizationcloud-security+4
1 year ago
Metasploit-Module-TFM preview

Metasploit-Module-TFM

GitHubcgv-dev/metasploit-module-tfm

Module written in Ruby with the objective of exploiting vulnerabilities CVE-2023-2728 and CVE-2024-3177, both related to the secret mount policy in a…

cloud-securitycontainer-securityeducation+7
2 years ago
apache__nifi_CVE-2022-33140_1-16-22 preview

apache__nifi_CVE-2022-33140_1-16-22

GitHubshoucheng3/apache__nifi_cve-2022-33140_1-16-22

Automated data flow processing and distribution system with secure configuration, provenance tracking, and extensible plugin architecture for…

api-securityauthentication-authorizationcloud-security+4
1 year ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubsalt318/cve-2025-1974

WHS3기 가상화 취약한(CVE) Docker 환경 구성 과제

cloud-securitycontainer-securityeducation+5
1 year ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubzulloper/cve-2025-1974

CVE-2025-1974 PoC 코드

cloud-securitycontainer-securityexploitation+3
1 year ago
Log4j-CVE-2021-44228-Remediation preview

Log4j-CVE-2021-44228-Remediation

GitHubdigital-dev/log4j-cve-2021-44228-remediation

This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

cloud-securitydefensive-toolsincident-response+3
2 years ago
CVE-2023-3128 preview

CVE-2023-3128

GitHubspyata123/cve-2023-3128

Python script to detect CVE-2023-3128 authentication bypass in Grafana via Azure AD email claim validation. Checks Azure AD SSO configuration and…

authentication-authorizationcloud-securityexploitation+3
1 year ago
aws-log4j-mitigations preview

aws-log4j-mitigations

GitHubmarkuman/aws-log4j-mitigations

CVE-2021-44228 log4j mitigation using aws wafv2 with ansible

cloud-securityconfiguration-auditingdevsecops+3
4 years ago
OpenSSH-CVE-2024-6387-Fix preview

OpenSSH-CVE-2024-6387-Fix

GitHubalmogopp/openssh-cve-2024-6387-fix

A Bash script to mitigate the CVE-2024-6387 vulnerability in OpenSSH by providing an option to upgrade to a secure version or apply a temporary…

cloud-securityconfiguration-auditingdevsecops+3
2 years ago
ghostbusters15 preview

ghostbusters15

GitHubf88/ghostbusters15

Playbooks 'Fix for CVE-2015-0235(GHOST)' running on Ansible

cloud-securityconfiguration-auditingdevsecops+2
10 years ago
SpringCloud preview

SpringCloud

GitHubcorgizz/springcloud

Spring Cloud Config CVE-2019-3799|CVE_2020_5410 漏洞检测

api-security-testingcloud-securityconfiguration-auditing+3
4 years ago
apache__camel_CVE-2018-8041_2-20-3 preview

apache__camel_CVE-2018-8041_2-20-3

GitHubshoucheng3/apache__camel_cve-2018-8041_2-20-3

Open source integration framework for defining routing and mediation rules via DSLs (Java, XML, YAML) to connect various systems consuming or…

api-securitycloud-securitydevsecops
11 months ago
ai-agent-gateway preview

ai-agent-gateway

GitHubtuskira/ai-agent-gateway

Open-source gateway that secures, governs, and observes AI agents' MCP tool calls and LLM traffic, with API-key authentication and an admin console…

ai-securityapi-securityauthentication-authorization+6
26 days ago
pyrasp preview

pyrasp

GitHubrbidou/pyrasp

Runtime Application Self Protection for Python web servers, serverless functions and MCP servers, detecting attacks, prompt injection and data leaks…

ai-securityanomaly-detectionapi-security+6
394 days ago
Previous1…31323334Next