Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
437 results
xwiki__xwiki-commons_CVE-2023-36471_14-10-5 preview

xwiki__xwiki-commons_CVE-2023-36471_14-10-5

GitHubshoucheng3/xwiki__xwiki-commons_cve-2023-36471_14-10-5

Technical Java libraries providing common utilities and components for the XWiki platform, including security vulnerability fixes and code analysis…

code-analysisgeneral-purpose-utilitiesstatic-analysis+1
10 months ago
sonarqube preview

sonarqube

GitHubsonarsource/sonarqube

Code-quality and static-analysis platform with quality gates, multi-language scanning, and security-focused rules to detect vulnerabilities and…

code-analysisdevsecopsstatic-analysis+2
10.9k4 days ago
Cawdog preview

Cawdog

GitLablycis/cawdog

CAWODOG is a proof-of-concept project demonstrating how to protect Python-based AI models deployed on offline industrial machines. Across three…

ai-securitycode-analysiseducation+6
9 months ago
moodle-rce-calculatedquestions preview

moodle-rce-calculatedquestions

GitHubredteampentesting/moodle-rce-calculatedquestions

Scripts for Analysis of a RCE in Moodle Calculated Questions (CVE-2024-43425)

code-analysiseducationexploitation+3
192 years ago
CVE-2026-47670 preview

CVE-2026-47670

GitHuberror-inside/cve-2026-47670

Authenticated Remote Code Execution via loadReader functionName code injection in DbGate

code-analysiseducationexploitation+4
2 months ago
CVE-2026-34156 preview

CVE-2026-34156

GitHub0xblackash/cve-2026-34156

CVE-2026-34156

code-analysisctfeducation+4
4 months ago
analysis-and-poc-n8n-CVE-2025-68613 preview

analysis-and-poc-n8n-CVE-2025-68613

GitHubreleaseown/analysis-and-poc-n8n-cve-2025-68613

Technical study of the CVE-2025-68613 vulnerability in n8n, covering affected versions, laboratory exploration scenario, offensive and defensive…

code-analysiseducationexploitation+5
18 months ago
ILSpy preview

ILSpy

GitHubicsharpcode/ilspy

.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!

binary-analysiscode-analysisdebuggers+2
26.0k13h 28m ago
semgrep preview

semgrep

GitHubsemgrep/semgrep

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

api-securityapi-security-testingcode-analysis+9
16.4k2 days ago
mariana-trench preview

mariana-trench

GitHubfacebook/mariana-trench

A security focused static analysis tool for Android and Java applications.

android-securitycode-analysismobile-security+2
1.3k2 days ago
vbSparkle preview

vbSparkle

GitHubairbus-cert/vbsparkle

VBScript & VBA source-to-source deobfuscator with partial-evaluation

code-analysisdefensive-toolsmalware-analysis+2
832 years ago
dexfinder preview

dexfinder

GitHubjunelegency/dexfinder

Cross-platform APK/DEX method finder with call chain tracing, ProGuard deobfuscation, and hidden API detection

android-securitybinary-analysiscode-analysis+6
944 months ago
CVE-2024-4879 preview

CVE-2024-4879

GitHubbrut-security/cve-2024-4879

CVE-2024-4879 - Jelly Template Injection Vulnerability in ServiceNow

code-analysisexploitationpenetration-testing+3
262 years ago
CVE-2025-53690 preview

CVE-2025-53690

GitHubrxerium/cve-2025-53690

Detection for CVE-2025-53690

code-analysisexploitationinformation-gathering+3
510 months ago
openclaw-technical-analysis preview

openclaw-technical-analysis

GitHubuseaitechdad/openclaw-technical-analysis

This technical research and review is for educational purposes on public code and constitutes Fair Dealing under the Copyright Act (Canada).

ai-securitycode-analysiseducation+3
16 months ago
DjVuLibre-poc-CVE-2025-53367 preview

DjVuLibre-poc-CVE-2025-53367

GitHubkevinbackhouse/djvulibre-poc-cve-2025-53367

Proof-of-concept exploit for CVE-2025-53367, a vulnerability in the DjVuLibre library. Demonstrates exploitation of a memory corruption bug in DjVu…

binary-analysiscode-analysisexploitation+3
1 year ago
apache__dolphinscheduler_CVE-2022-26884_2-0-5 preview

apache__dolphinscheduler_CVE-2022-26884_2-0-5

GitHubshoucheng3/apache__dolphinscheduler_cve-2022-26884_2-0-5

Proof-of-concept exploit for CVE-2022-26884 targeting Apache DolphinScheduler, enabling remote code execution via crafted requests to the workflow…

cloud-securitycode-analysisexploitation+3
1 year ago
apache__dolphinscheduler_CVE-2022-34662_2-0-9 preview

apache__dolphinscheduler_CVE-2022-34662_2-0-9

GitHubshoucheng3/apache__dolphinscheduler_cve-2022-34662_2-0-9

Proof-of-concept exploit for CVE-2022-34662 targeting Apache DolphinScheduler, enabling remote code execution via crafted SQL injection in the…

cloud-securitycode-analysisexploitation+3
1 year ago
Previous123…25Next