Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
205 results
Awesome-Pentest preview

Awesome-Pentest

GitHubkc57/awesome-pentest

A list of awesome penetration testing tools and resources.

cloud-securitycurated-resourceseducation+9
84
2 years ago
REALITY_SMASHER preview

REALITY_SMASHER

GitHubrabidwh0re/reality_smasher

vRealize RCE + Privesc (CVE-2021-21975, CVE-2021-21983, CVE-0DAY-?????)

cloud-securityexploitationpenetration-testing+3
375 years ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubyoshino-s/cve-2025-1974

Exploit for CVE-2025-1974 targeting ingress-nginx controllers in Kubernetes, enabling container escape via crafted shared object injection and shell…

cloud-securitycontainer-escapeexploitation+3
531 year ago
cowcloud preview

cowcloud

GitHubnccgroup/cowcloud

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…

cloud-infrastructure-securitycloud-securitydevsecops+5
603 years ago
CVE-2022-23648-POC preview

CVE-2022-23648-POC

GitHubraesene/cve-2022-23648-poc

POC for CVE-2022-23648

cloud-securitycontainer-securityexploitation+3
364 years ago
OutOfTune preview

OutOfTune

GitHubstra-x/outoftune

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

authentication-authorizationcloud-securityconfiguration-auditing+9
335 months ago
kprotect preview

kprotect

GitHubkhoinp1012/kprotect

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

authentication-authorizationcloud-securitydefensive-tools+4
366 months ago
hatiyar preview

hatiyar

GitHubajutamangdev/hatiyar

Modular penetration testing framework with a Metasploit-like interactive shell, pre-built CVE exploit modules, and cloud/network reconnaissance…

cloud-securityeducationexploit-frameworks+5
2310 months ago
CVE-2025-59501 preview

CVE-2025-59501

GitHubgarrettfoster13/cve-2025-59501

CVE-2025-59501 POC code

authenticationcloud-securityexploitation+5
2510 months ago
CVE-2021-1056 preview

CVE-2021-1056

GitHubpokerfacesad/cve-2021-1056

PoC for CVE-2021-1056, related to GPU Container Security

cloud-securitycontainer-securityexploitation+3
165 years ago
SecretsStalker preview

SecretsStalker

GitHubrootsecdev/secretsstalker

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

authentication-authorizationcloud-infrastructure-securitycloud-security+7
201 month ago
hideNsneak preview

hideNsneak

GitHubrmikehodges/hidensneak

a CLI for ephemeral penetration testing

cloud-securitycommand-and-controlpayload-generation+5
176 years ago
POC-2020-8559 preview

POC-2020-8559

GitHubtabbysable/poc-2020-8559

Proof of Concept exploit for Kubernetes CVE-2020-8559

cloud-securitycontainer-securityexploitation+3
206 years ago
CVE-2022-0492-Checker preview

CVE-2022-0492-Checker

GitHubsofianehamlaoui/cve-2022-0492-checker

A script to check if a container environment is vulnerable to container escapes via CVE-2022-0492

cloud-securitycontainer-escapecontainer-security+3
134 years ago
patchy preview

patchy

GitHubrek7/patchy

Automated Persistence and Lateral Movement using GCP Patch Management

cloud-securityexploitationlateral-movement+3
164 years ago
Dirty-Frag-Kubernetes-PoC preview

Dirty-Frag-Kubernetes-PoC

GitHubpercivalll/dirty-frag-kubernetes-poc

Proof-of-concept demonstrating container escape on Amazon EKS by exploiting Dirty Frag (CVE-2026-43284) kernel page-cache corruption via shared image…

cloud-securitycontainer-escapeexploitation+3
184 months ago
vScalation-CVE-2021-22015 preview

vScalation-CVE-2021-22015

GitHubpenteraio/vscalation-cve-2021-22015

Scanner for vScalation (CVE-2021-22015) a Local Privilege Escalation in VMWare vCenter

cloud-securityexploitationpenetration-testing+3
63 years ago
CVE-2022-0492-Docker-Breakout-Checker-and-PoC preview

CVE-2022-0492-Docker-Breakout-Checker-and-PoC

GitHubt1erno/cve-2022-0492-docker-breakout-checker-and-poc

Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)

cloud-securitycontainer-escapecontainer-security+6
83 years ago
Previous1…678…12Next