Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
dynamorio preview

dynamorio

GitHubdynamorio/dynamorio

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

binary-analysiscode-analysisdebuggers+3
3.2k2 days ago
Aura-State preview

Aura-State

GitHubmunshi007/aura-state

Python framework for building LLM workflows as state machines with formal verification via Z3 theorem proving, CTL model checking, and conformal…

ai-securitycode-analysiscurated-resources+4
306 days ago
APKHunt preview

APKHunt

GitHubcyber-buddy/apkhunt

Static code analysis tool for Android apps based on OWASP MASVS, detecting security vulnerabilities in APK files with low false-positive rates and…

android-securitycode-analysismobile-security+3
98710 days ago
Quantum-Algorithm-for-Elliptic-Curve-Discrete-Logarithms-with-Space-Efficient-Point-Addition preview

Quantum-Algorithm-for-Elliptic-Curve-Discrete-Logarithms-with-Space-Efficient-Point-Addition

GitHubzerowang030221/quantum-algorithm-for-elliptic-curve-discrete-logarithms-with-space-efficient-point-addition

Qiskit-based resource estimation framework for space-efficient quantum modular inversion and affine point-addition circuits used in elliptic-curve…

binary-analysiscode-analysiscryptography+3
161 month ago
TrustworthyRAG preview

TrustworthyRAG

GitHubgpt-laboratory/trustworthyrag

An Evaluation Agent for Detecting Misinformation and Knowledge Poisoning in Retrieval-Augmented Generation Systems.

ai-securityanomaly-detectioncode-analysis+2
3 months ago
VulTriage preview

VulTriage

GitHubvinsontang1/vultriage

The code of VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection

ai-securitycode-analysiseducation+4
104 months ago
Dna preview

Dna

GitHubcolton1skees/dna

LLVM based static binary analysis framework

binary-analysiscode-analysisdebuggers+5
3805 months ago
DotNetHookerToolkit preview

DotNetHookerToolkit

GitHubsensepost/dotnethookertoolkit

Frida-based .NET Framework injector and managed method hooking toolkit for runtime tracing, native entrypoint resolution, and dynamic analysis of…

binary-analysiscode-analysisdebuggers+4
117 months ago
JAW preview

JAW

GitHubsoheilkhodayari/jaw

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

code-analysiscrawlerdatabase-security+5
1187 months ago
react-cve-2025-55182 preview

react-cve-2025-55182

GitHubniokagi/react-cve-2025-55182

Test & Analyze the CVE-2025-55182 vulnerability within Next.js Server Actions

code-analysiseducationexploitation+5
9 months ago
apache__myfaces_CVE-2011-4367_2-0-11 preview

apache__myfaces_CVE-2011-4367_2-0-11

GitHubshoucheng3/apache__myfaces_cve-2011-4367_2-0-11

Exploit for CVE-2011-4367 targeting Apache MyFaces JSF implementation, demonstrating a remote code execution vulnerability in the Jakarta Faces…

code-analysisstatic-analysisvulnerability-analysis+2
9 months ago
react2shell preview

react2shell

GitHubzr0n/react2shell

A complete framework for exploiting the vulnerability CVE-2025-55182

code-analysiseducationexploitation+5
1210 months ago
React2Shell-CVE-2025-55182-original-poc preview

React2Shell-CVE-2025-55182-original-poc

GitHublachlan2k/react2shell-cve-2025-55182-original-poc

Original proof-of-concept exploits for React2Shell (CVE-2025-55182), demonstrating remote code execution in Next.js applications via Webpack chunk…

code-analysisexploit-frameworkspayload-development+3
1.1k10 months ago
POC-CVE-2024-38820 preview

POC-CVE-2024-38820

GitHubkadamnayan/poc-cve-2024-38820

Proof-of-concept exploit for CVE-2024-38820, demonstrating locale-dependent case conversion bypass of Spring Framework DataBinder disallowedFields…

code-analysiseducationexploitation+3
0 years ago
spring-projects__spring-framework_CVE-2022-22965_5-2-19-RELEASE preview

spring-projects__spring-framework_CVE-2022-22965_5-2-19-RELEASE

GitHubshoucheng3/spring-projects__spring-framework_cve-2022-22965_5-2-19-release

Exploit for CVE-2022-22965 (Spring4Shell) targeting Spring Framework versions vulnerable to remote code execution via classLoader manipulation.

code-analysisexploitationmisconfiguration+3
1 year ago
kurukshetra preview

kurukshetra

GitHuba0xnirudh/kurukshetra

Kurukshetra - A framework for teaching secure coding by means of interactive problem solving.

code-analysiseducationlabs-practice+1
1392 years ago
-CVE-2024-31211 preview

-CVE-2024-31211

GitHubabdurahmon3236/-cve-2024-31211

Metasploit module that exploits a WordPress unserialization vulnerability (CVE-2024-31211) in WP_HTML_Token to achieve remote code execution.

code-analysisexploit-frameworkspayload-development+3
2 years ago
Argus preview

Argus

GitHubpurs3lab/argus

Staged static taint analysis framework for GitHub Actions workflows. Detects code injection vulnerabilities using taint-tracking and an impact…

code-analysisdevsecopseducation+4
552 years ago
Previous12Next