Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1560 results
malware-check preview

malware-check

GitHubmomenbasel/malware-check

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

binary-analysiscode-analysisdevsecops+7
64
4 months ago
log4shell-finder preview

log4shell-finder

GitHubhynekpetrak/log4shell-finder

Fastest filesystem scanner for log4shell (CVE-2021-44228, CVE-2021-45046) and other vulnerable (CVE-2017-5645, CVE-2019-17571, CVE-2022-23305,…

code-analysismisconfigurationstatic-analysis+3
393 years ago
pytm preview

pytm

GitHubowasp/pytm

A Pythonic framework for threat modeling

code-analysisdevsecopseducation+1
1.2k1 month ago
apkinspector preview

apkinspector

GitHubhoneynet/apkinspector

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

android-securitybinary-analysiscode-analysis+7
85313 years ago
clr preview

clr

GitHubityonemo/clr

Checker for Lifetimes and other Refinement types

binary-analysiscode-analysiseducation+3
2772 months ago
PolinRider preview

PolinRider

GitHubopensourcemalware/polinrider

Technical dossier on the DPRK-linked PolinRider supply-chain attack, documenting obfuscated JS payload injection, git history manipulation, C2…

code-analysiscurated-resourceseducation+8
962 months ago
mcpguard-dynamic preview

mcpguard-dynamic

GitHubfacebook/mcpguard-dynamic

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

ai-securitycode-analysiscontainer-security+8
742 months ago
JObfuscator preview

JObfuscator

GitHubpelock/jobfuscator

Obfuscates Java source code to protect against reverse engineering, decompilation, and IP theft. Renames variables/methods, encrypts strings, and…

code-analysiscryptographyreverse-engineering+1
682 months ago
static_asm preview

static_asm

GitHubmahmoudimus/static_asm

Header-only C++2x compile-time assembler for x86/x86-64 instruction encoding

binary-analysiscode-analysiseducation+6
318 months ago
source-packages preview

source-packages

GitHubmudongliang/source-packages

This repo stores source code of the vulnerable program.

code-analysiscurated-resourceseducation+2
127 years ago
CVE-2021-26700 preview

CVE-2021-26700

GitHubjackadamson/cve-2021-26700

Proof-of-concept for CVE-2021-26700: remote code execution in the VSCode npm-script extension via malicious workspace settings.json, with detailed…

code-analysiseducationexploitation+3
205 years ago
react2shell preview

react2shell

GitHubzr0n/react2shell

A complete framework for exploiting the vulnerability CVE-2025-55182

code-analysiseducationexploitation+5
129 months ago
CVE-2023-32571-POC preview

CVE-2023-32571-POC

GitHubtris0n/cve-2023-32571-poc

Proof-of-concept for CVE-2023-32571, demonstrating remote code execution via Dynamic Linq injection in ASP.NET applications. Includes payloads and a…

code-analysiseducationexploitation+4
72 years ago
CVE-2022-22965 preview

CVE-2022-22965

GitHubhelsecert/cve-2022-22965

Detection scripts and guidance for CVE-2022-22965 (Spring4Shell) vulnerability in Spring Framework, including PowerShell and Bash scanners for…

code-analysiscurated-resourceseducation+4
14 years ago
CVE-2023-32571-POC preview

CVE-2023-32571-POC

GitHubvert16x/cve-2023-32571-poc

Proof-of-concept exploit for CVE-2023-32571 demonstrating Dynamic Linq injection to achieve remote code execution, with a Docker-based lab…

code-analysiseducationexploitation+4
2 years ago
Cawdog preview

Cawdog

GitLablycis/cawdog

CAWODOG is a proof-of-concept project demonstrating how to protect Python-based AI models deployed on offline industrial machines. Across three…

ai-securitycode-analysiseducation+6
10 months ago
jlangch__venice_CVE-2022-36007_1-10-16 preview

jlangch__venice_CVE-2022-36007_1-10-16

GitHubshoucheng3/jlangch__venice_cve-2022-36007_1-10-16

Sandboxed Lisp dialect for the JVM with immutable data structures, macros, and over 900 core functions. Ideal for safe scripting, automation, and…

code-analysiscryptographyeducation+2
1 year ago
apache__uima-uimaj_CVE-2022-32287_3-3-0 preview

apache__uima-uimaj_CVE-2022-32287_3-3-0

GitHubshoucheng3/apache__uima-uimaj_cve-2022-32287_3-3-0

Java SDK for building analytics pipelines that process and enrich unstructured text data with annotations, type systems, and modular analysis engines.

code-analysiseducationgeneral-purpose-utilities+3
1 year ago
Previous1234…87Next