Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
100 results
bugsy preview

bugsy

GitHubmobb-dev/bugsy

Automatic security vulnerability remediation for your code.

ai-securitycode-analysisdevsecops+2
6923 days ago
log4j2_vul_local_scanner preview

log4j2_vul_local_scanner

GitHublijiejie/log4j2_vul_local_scanner

Log4j 漏洞本地检测脚本。 Scan all java processes on your host to check whether it's affected by log4j2 remote code execution vulnerability (CVE-2021-45046)

code-analysiscontainer-securitydevsecops+3
854 years ago
Veritensor preview

Veritensor

GitHubarsbr/veritensor

The Anti-Virus for AI Artifacts & RAG Firewall. A static analysis tool scanning Models and Notebooks for RCE, Datasets and RAG docs for Data…

ai-securitycode-analysisdata-exfiltration+8
861 month ago
oversight preview

oversight

GitHubrakosn1cek/oversight

A lightweight security auditor and sandbox for shell scripts. Oversight combines a Static Analysis engine (Rust) with Dynamic Enforcement (Linux…

code-analysisdevsecopsdynamic-analysis-sandboxing+7
391 month ago
database-sentinel preview

database-sentinel

GitHubfarenhytee/database-sentinel

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

ai-securityauthentication-authorizationcloud-security+8
454 months ago
intentshield preview

intentshield

GitHubmattijsmoens/intentshield

Pre-execution intent verification for AI agents. Audits what your AI is about to do, not what it says. Zero dependencies, deterministic, hash-sealed.

ai-securityanomaly-detectioncode-analysis+9
201 month ago
layne preview

layne

GitHubrocketchat/layne

A doggo that helps look for security issues in your repositories.

ai-securitycode-analysisdevsecops+4
123 months ago
alibi preview

alibi

GitHubowasp-noir/alibi

Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

api-securitycode-analysisconfiguration-auditing+7
1013 days ago
lightweight_static_analysis preview

lightweight_static_analysis

GitHubnccgroup/lightweight_static_analysis

Create useful, lightweight static analyses using open source tools + a tiny bit of your code

code-analysiseducationpenetration-testing+4
136 years ago
action-octoscan preview

action-octoscan

GitHubsynacktiv/action-octoscan

📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

code-analysisdevsecopsmisconfiguration+2
261 year ago
kyubisweep preview

kyubisweep

GitHubtanmayshahane/kyubisweep

A lightweight, cross-platform CLI tool that scans your filesystem to detect exposed secrets, API keys, and tokens. Built with Go for maximum…

code-analysisconfiguration-auditingdevsecops+3
48 months ago
shellshocker-python preview

shellshocker-python

GitHubakiraaisha/shellshocker-python

This is a Python Application that helps you detect if your machine that run bash is vulnerable by CVE-2014-6271

code-analysisexploitationinformation-gathering+2
311 years ago
rsc-security-auditor preview

rsc-security-auditor

GitHubabdozkaya/rsc-security-auditor

🛡️ Audit your Next.js & React Server Components stack for critical vulnerabilities (CVE-2025-66478, CVE-2025-55184). Detects risks & generates fix…

code-analysisdevsecopseducation+3
59 months ago
autonoma preview

autonoma

GitHubvihaaninnovations/autonoma

Detects and auto-fixes hardcoded secrets in Python repos — refuses when the fix could break your code

code-analysisdevsecopssecret-detection+3
24 months ago
CVE-2025-55182-scanner preview

CVE-2025-55182-scanner

GitHubmayank729/cve-2025-55182-scanner

🔍 Scan for CVE-2025-55182 risks in React Server Components with this non-intrusive tool that helps detect critical vulnerabilities in your…

code-analysisdevsecopsstatic-analysis+3
7 days ago
react-vuln-scanner preview

react-vuln-scanner

GitHubumairahmadh/react-vuln-scanner

A bash script to scan your server for React applications vulnerable to **CVE-2025-55182** — a critical remote code execution vulnerability (CVSS…

code-analysisdevsecopsexploitation+3
19 months ago
react-CVE-2025-55182-fixer preview

react-CVE-2025-55182-fixer

GitHubbashamega/react-cve-2025-55182-fixer

Patches CVE-2025-55182 in your repositories

code-analysisdevsecopssupply-chain-security+1
9 months ago
scanner-for-CVE-2025-55182-vulnerability preview

scanner-for-CVE-2025-55182-vulnerability

GitHubshakilkhatri/scanner-for-cve-2025-55182-vulnerability

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

code-analysisdevsecopssecret-detection+3
9 months ago
Previous123456Next