Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
14 results
apache__jspwiki_CVE-2022-46907_2-11-3 preview

apache__jspwiki_CVE-2022-46907_2-11-3

GitHubshoucheng3/apache__jspwiki_cve-2022-46907_2-11-3

Exploit module for Apache JSPWiki CVE-2022-46907, targeting a Java-based wiki platform with JAAS security integration. Provides vulnerability…

authentication-authorizationconfiguration-auditingeducation+3
11 months ago
TCASVS preview

TCASVS

GitHubowasp/tcasvs

OWASP Thick Client Application Security Verification Standard

code-analysisconfiguration-auditingcryptography+5
323 months ago
apache__jspwiki_CVE-2019-10077_2-11-0-M3 preview

apache__jspwiki_CVE-2019-10077_2-11-0-M3

GitHubshoucheng3/apache__jspwiki_cve-2019-10077_2-11-0-m3

Exploit module for Apache JSPWiki CVE-2019-10077, targeting a Java-based wiki platform with JAAS authentication and access control. Enables…

authentication-authorizationconfiguration-auditingexploitation+3
1 year ago
apache__jspwiki_CVE-2019-10089_2-11-0-M4 preview

apache__jspwiki_CVE-2019-10089_2-11-0-M4

GitHubshoucheng3/apache__jspwiki_cve-2019-10089_2-11-0-m4

Java-based wiki platform with detailed access control and JAAS security integration, provided as a vulnerable version for security testing and CVE…

authentication-authorizationconfiguration-auditingeducation+3
1 year ago
apache__jspwiki_CVE-2019-10078_2_11_0_M4_fixed preview

apache__jspwiki_CVE-2019-10078_2_11_0_M4_fixed

GitHubshoucheng3/apache__jspwiki_cve-2019-10078_2_11_0_m4_fixed

Exploit testing repository for Apache JSPWiki CVE-2019-10078, demonstrating a cross-site scripting vulnerability in a Java-based wiki platform with…

authentication-authorizationconfiguration-auditingeducation+3
1 year ago
fleet preview

fleet

GitHubfleetdm/fleet

Open-source platform to secure and manage endpoints via MDM, patch management, software deployment, and osquery-powered visibility with compliance…

cloud-securityconfiguration-auditingdefensive-tools+4
6.9k21h 46m ago
ship-safe preview

ship-safe

GitHubasamassekou10/ship-safe

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

ai-securityapi-security-testingcloud-infrastructure-security+8
84913 days ago
minder preview

minder

GitHubmindersec/minder

Software Supply Chain Security Platform

cloud-securityconfiguration-auditingdevsecops+3
4242 days ago
open-sammy preview

open-sammy

GitHubowasp/open-sammy

Web-based tool for assessing and tracking software security maturity using the OWASP SAMM and DSOMM models, with Docker support and automated mailing.

cloud-securityconfiguration-auditingcontainer-security+3
292 days ago
CYBERDUDEBIVASH-5G-Core-Key-Rotation-Ghost-Admin-Auditor preview

CYBERDUDEBIVASH-5G-Core-Key-Rotation-Ghost-Admin-Auditor

GitHubcyberdudebivash/cyberdudebivash-5g-core-key-rotation-ghost-admin-auditor

Production-grade tool for detecting & remediating CVE-2026-0622 (Ghost Admin privilege escalation & master key exposure in 5G core software).

anomaly-detectioncloud-securityconfiguration-auditing+3
8 months ago
kubeclarity preview
Archived

kubeclarity

GitHubopenclarity/kubeclarity

KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystems

cloud-securityconfiguration-auditingcontainer-security+4
451 year ago
trajan preview

trajan

GitHubpraetorian-inc/trajan

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

cloud-securitycode-analysisconfiguration-auditing+7
1911 day ago
CVE-2022-22948 preview

CVE-2022-22948

GitHubpenteraio/cve-2022-22948

Scanner for CVE-2022-22948 an Information Disclosure in VMWare vCenter

cloud-securityconfiguration-auditingexploitation+3
113 years ago
apache__jspwiki_CVE-2019-10076_2-11-0-M3 preview

apache__jspwiki_CVE-2019-10076_2-11-0-M3

GitHubshoucheng3/apache__jspwiki_cve-2019-10076_2-11-0-m3

Java-based wiki platform with JAAS security integration, access control, and detailed configuration auditing. Includes documentation for…

authentication-authorizationconfiguration-auditingeducation+3
1 year ago