Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
269 results
kstg preview

kstg

GitHubowasp/kstg

Kubernetes Security Testing Guide

cloud-securitycontainer-securitycurated-resources+3
286 years ago
copy-fail-blocker preview

copy-fail-blocker

GitHubcozystack/copy-fail-blocker

BPF-LSM mitigation for CVE-2026-31431 (Copy Fail) — denies AF_ALG socket creation cluster-wide

cloud-securitycontainer-securitydefensive-tools+2
344 months ago
vaas-cve-2014-0160 preview

vaas-cve-2014-0160

GitHubhmlio/vaas-cve-2014-0160

Vulnerability as a service: showcasing CVS-2014-0160, a.k.a. Heartbleed

container-securityeducationexploitation+3
156 years ago
pisc preview

pisc

GitHubecomtech-oss/pisc

Public OCI-Image (docker image) Security Checker

container-securitydevsecopsmalware-analysis+3
216 months ago
privesc-CVE-2015-5602 preview

privesc-CVE-2015-5602

GitHubt0kx/privesc-cve-2015-5602

Sudo <= 1.8.14 Local Privilege Escalation and vulnerable container

container-securityeducationexploitation+3
158 years ago
Startup-SBOM preview

Startup-SBOM

GitHubmorpheuslord/startup-sbom

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

cloud-securityconfiguration-auditingcontainer-security+4
175 months ago
privesc-CVE-2010-0426 preview

privesc-CVE-2010-0426

GitHubt0kx/privesc-cve-2010-0426

Sudo 1.6.x <= 1.6.9p21 and 1.7.x <= 1.7.2p4 Local Privilege Escalation and vulnerable container

container-securityeducationexploitation+4
118 years ago
scan-cve-2018-8115 preview

scan-cve-2018-8115

GitHubaquasecurity/scan-cve-2018-8115

CLI tool that verifies Docker images for CVE-2018-8115 by checking layers for malicious files, helping ensure safe pulls from Docker Hub.

container-securitymisconfigurationstatic-analysis+2
78 years ago
CVE-2025-9074 preview

CVE-2025-9074

GitHubzenzue/cve-2025-9074

Proof-of-concept exploit for CVE-2025-9074 demonstrating container-to-host file write via exposed Docker Engine API on Windows. For authorized…

cloud-securitycontainer-escapecontainer-security+6
101 year ago
log4shell_sentinel preview

log4shell_sentinel

GitHubossie-git/log4shell_sentinel

A Smart Log4Shell/Log4j/CVE-2021-44228 Scanner

container-securityforensicsincident-response+3
144 years ago
CVE-2019-1002101-Helpers preview

CVE-2019-1002101-Helpers

GitHubbrompwnie/cve-2019-1002101-helpers

PoC helper scripts and Dockerfile for CVE-2019-1002101

cloud-securitycontainer-securityexploitation+3
57 years ago
trivy-module-wordpress preview

trivy-module-wordpress

GitHubaquasecurity/trivy-module-wordpress

Trivy example module for WordPress

container-securitydevsecopsstatic-analysis+3
53 years ago
openvz-cve-patch-2026 preview

openvz-cve-patch-2026

GitHubdmcdtc/openvz-cve-patch-2026

GhostLock - CVE-2026-43499 backport patch for openVZ 7

cloud-infrastructure-securitycontainer-securityexploitation+1
31 month ago
tanstack-compromise-checker preview

tanstack-compromise-checker

GitHubfabriziosalmi/tanstack-compromise-checker

Shell script to detect TanStack npm supply chain attack indicators (CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx)

container-securitydevsecopsforensics+7
212h 24m ago
Learn-about-cve-2025-31133-poc preview

Learn-about-cve-2025-31133-poc

GitHubc-h4ck-0/learn-about-cve-2025-31133-poc

Educational proof-of-concept for CVE-2025-31133, a runc container escape via maskedPaths race condition. Includes lab setup, exploit script, and…

container-escapecontainer-securityeducation+3
25 months ago
xzwhy preview

xzwhy

GitHubneuralinhibitor/xzwhy

XZ Utils CVE-2024-3094 POC for Kubernetes

cloud-securitycontainer-securityeducation+4
52 years ago
POC-CopyEscape-CVE-2026-17106 preview

POC-CopyEscape-CVE-2026-17106

GitHub686f6c61/poc-copyescape-cve-2026-17106

PoC funcional de CVE-2026-17106 (CopyEscape): carrera TOCTOU en docker cp que permite escritura arbitraria en el host Docker. Laboratorio Docker +…

adversarial-attackcontainer-escapecontainer-security+5
125 days ago
poc-2025-9074 preview

poc-2025-9074

GitHubxwpdx0/poc-2025-9074

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

cloud-infrastructure-securitycommand-and-controlcontainer-security+7
49 months ago
Previous1…101112…15Next