Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
Krawl preview

Krawl

GitHubblessedrebus/krawl

Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

ai-securityanti-botcloud-security+6
640
2 days ago
vpod preview

vpod

GitHubcapsulerun/vpod

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

ai-securitycontainer-securitydefensive-tools+3
692 days ago
mailcow-dockerized preview

mailcow-dockerized

GitHubmailcow/mailcow-dockerized

Dockerized mail server suite with Postfix, Dovecot, Rspamd, and ClamAV. Provides secure email hosting with integrated spam filtering, antivirus, and…

authenticationcloud-infrastructure-securityconfiguration-auditing+4
13.3k2 days ago
WantasticCore preview

WantasticCore

GitHubwantasticapp/wantasticcore

AIO Cloud Managment Server

ai-securityauthenticationcloud-security+6
1429 days ago
apache-cve-2021-42013-lab preview

apache-cve-2021-42013-lab

GitHubberraesen/apache-cve-2021-42013-lab

Docker ortamında Apache HTTP Server 2.4.49 (CVE-2021-42013) zafiyetinin gösterildiği laboratuvar çalışması.

container-securityeducationexploitation+3
1 month ago
netfence preview

netfence

GitHubdanthegoodman1/netfence

Like Envoy xDS, but for eBPF filters

cloud-infrastructure-securitycloud-securitycontainer-security+5
1011 month ago
Freeloader preview

Freeloader

GitHubauthrequest/freeloader

Plex Unlocker

binary-analysiscontainer-securitydebuggers+8
911 month ago
CVE-2014-3120 preview

CVE-2014-3120

GitHubdungsocool/cve-2014-3120
container-securityeducationexploitation+3
2 months ago
flight-risk preview

flight-risk

GitHubjoaoreis13/flight-risk

Security toolkit for CVE-2025-55182 (React2Shell) — scan, detect, correlate, and test React Server Components RCE vulnerability

cloud-securitycontainer-securitydevsecops+6
4 months ago
cve-2017-12149-playground preview

cve-2017-12149-playground

GitHubgalois17/cve-2017-12149-playground
binary-exploitationcontainer-securityeducation+3
7 months ago
secure-by-default-rce-demo preview

secure-by-default-rce-demo

GitHubmeganekos/secure-by-default-rce-demo

Secure-by-default demo lab showing how container hardening (distroless images, non-root, read-only filesystem, runtime-injected secrets) can…

cloud-securitycontainer-securitydevsecops+6
7 months ago
CVE-2018-19629 preview

CVE-2018-19629

GitHubexcellencedev/cve-2018-19629

Hyland Perceptive Content Server - Denial of Service

container-securityeducationexploitation+2
8 months ago
cve-2025-55182 preview

cve-2025-55182

GitHubps-interactive/cve-2025-55182

Vulnerable REACT app in docker container and poc code - for demos

container-securityeducationexploitation+4
8 months ago
react2shell-scanner preview

react2shell-scanner

GitHubgensecaihq/react2shell-scanner

Security scanner for CVE-2025-55182 - Critical RCE vulnerability in React Server Components. Scan npm/pnpm/yarn lockfiles, Docker images, SBOMs,…

code-analysiscontainer-securitydevsecops+4
588 months ago
React2Shell-CVE-2025-55182-Testing-Environment preview

React2Shell-CVE-2025-55182-Testing-Environment

GitHubabcfabian/react2shell-cve-2025-55182-testing-environment

A containerized testing environment for CVE-2025-55182, a critical (10.0 CVSS) Remote Code Execution vulnerability in React Server Components.

container-securityeducationexploitation+4
18 months ago
CrushFTP10-Docker-CVE-2024-4040 preview

CrushFTP10-Docker-CVE-2024-4040

GitHubjuanorts/crushftp10-docker-cve-2024-4040

A Dockerized setup for running a vulnerable CrushFTP 10 server instance (CVE-2024-4040).

container-securityeducationexploitation+3
9 months ago
CVE-Requests-1896609 preview

CVE-Requests-1896609

GitHubwilliam31212/cve-requests-1896609

CVE-2025-59376, CVE-2025-59377

cloud-securitycommand-and-controlcontainer-security+4
111 months ago
asf__james-project_CVE-2022-22931_3-6-0 preview

asf__james-project_CVE-2022-22931_3-6-0

GitHubshoucheng3/asf__james-project_cve-2022-22931_3-6-0
authenticationcloud-securityconfiguration-auditing+5
1 year ago
Previous12Next