Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
198 results
syft preview

syft

GitHubanchore/syft

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

container-escapecontainer-securitydevsecops+3
9.4k
3 days ago
botb preview

botb

GitHubbrompwnie/botb

A container analysis and exploitation tool for pentesters and engineers.

cloud-securitycontainer-escapecontainer-security+4
6834 years ago
PANIX preview

PANIX

GitHubaegrah/panix

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

container-escapepenetration-testingpersistence-mechanisms+4
8796 months ago
CVE-2026-53576 preview

CVE-2026-53576

GitHubtamatahyt/cve-2026-53576

Unauthenticated RCE exploit for Kestra via auth-bypass; creates malicious flows to execute arbitrary OS commands, with options for reverse shells,…

authentication-authorizationcontainer-escapedata-exfiltration+7
24 days ago
PipeViewer preview

PipeViewer

GitHubcyberark/pipeviewer

A tool that shows detailed information about named pipes in Windows

container-escapeprivilege-escalationvulnerability-analysis
7491 year ago
insject preview

insject

GitHubnccgroup/insject

Executes arbitrary commands in Docker containers or Linux namespaces via LD_PRELOAD injection, ideal for penetration testing and red teaming.

container-escapecontainer-securitypenetration-testing+1
504 years ago
k0otkit preview

k0otkit

GitHubmetarget/k0otkit

Post-penetration Kubernetes cluster manipulation tool using dynamic container injection and encrypted reverse shells for covert, continuous node…

command-and-controlcontainer-escapecontainer-security+5
2994 years ago
peirates preview

peirates

GitHubinguardians/peirates

Automated Kubernetes penetration testing tool for privilege escalation, service account token theft, secret collection, and cluster pivot attacks…

cloud-securitycontainer-escapecontainer-security+5
1.5k3 days ago
falco preview

falco

GitHubfalcosecurity/falco

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

anomaly-detectionanti-botchaos-engineering+10
9.3k22 days ago
CVE-2025-9074-Docker-Exploit preview

CVE-2025-9074-Docker-Exploit

GitHubshaoshi17/cve-2025-9074-docker-exploit

Exploit tool for CVE-2025-9074, enabling unauthorized Docker API access for container escape, host file read/write, and arbitrary command execution…

cloud-securitycontainer-escapecontainer-security+4
128 months ago
Persistnux preview

Persistnux

GitHubgo-lanz/persistnux

Bash-based Linux persistence detection tool for DFIR investigations. Scans 15+ persistence mechanisms (systemd, cron, kernel modules, SSH,…

container-escapedigital-forensicseducation+7
31 month ago
Insular preview

Insular

GitLabsecure-system/insular

Android app isolation tool using work profiles to sandbox, freeze, and hide apps, with multi-account cloning and selective VPN routing for privacy.

android-securitycontainer-escapedynamic-analysis-sandboxing+3
2161 year ago
opa preview

opa

GitHubopen-policy-agent/opa

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

api-securityauthenticationauthentication-authorization+10
12.1k3 days ago
grype preview

grype

GitHubanchore/grype

A vulnerability scanner for container images and filesystems

container-escapecontainer-securitydevsecops+4
12.8k48 minutes ago
CVE-2021-21978 preview

CVE-2021-21978

GitHubgreyorder/cve-2021-21978

Go-based remote code execution exploit for CVE-2021-21978 targeting VMware View Planner 4.X, enabling arbitrary file upload and command execution…

container-escapeexploitationremote-access-tool+2
235 years ago
kube-linter preview

kube-linter

GitHubstackrox/kube-linter

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

cloud-infrastructure-securitycloud-securityconfiguration-auditing+6
3.5k6 days ago
kube-bench preview

kube-bench

GitHubaquasecurity/kube-bench

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

cloud-infrastructure-securitycloud-securityconfiguration-auditing+4
8.2k7 days ago
fastgpt-sandbox-audit preview

fastgpt-sandbox-audit

GitHubqianlijaingshan/fastgpt-sandbox-audit

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

ai-securitycontainer-escapedynamic-analysis-sandboxing+4
7 days ago
Previous12…11Next