Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
23 results
PadBuster preview

PadBuster

GitHubstrozfriedberg/padbuster

Automated script for performing Padding Oracle attacks

cryptographyexploitationvulnerability-analysis+1
811
5 years ago
File-Injector preview

File-Injector

GitHubcarlospuenteg/file-injector

File Injector is a script that allows you to store any file in an image using steganography

cryptographydata-exfiltrationencryption-decryption-tools+1
4443 years ago
GAMBA preview

GAMBA

GitHubdenuvosoftwaresolutions/gamba

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA

binary-analysiscryptographymalware-analysis+2
2402 years ago
clone-cert preview

clone-cert

GitHubsyss-research/clone-cert

Simple shell script to "clone" X.509 certificates

cryptographyeducationimpersonation-tools+1
1131 year ago
ShuckNT preview

ShuckNT

GitHubyanncam/shucknt

ShuckNT is the script of Shuck.sh online service for on-premise use. It is design to dowgrade, convert, dissect and shuck authentication token based…

authenticationcryptographyhash-analysis+3
781 year ago
CovenantDecryptor preview

CovenantDecryptor

GitHubnaacbin/covenantdecryptor
command-and-controlcryptographydigital-forensics+4
372 years ago
cve-2020-0601 preview

cve-2020-0601

GitHub0xxon/cve-2020-0601

Zeek package to detect CVE-2020-0601

cryptographyexploitationintrusion-detection+2
354 years ago
dotnetpaddingoracle preview

dotnetpaddingoracle

GitHubnccgroup/dotnetpaddingoracle

Python Implementation of a .NET Padding Oracle Assessment Tool

cryptographyencryption-decryption-toolsexploitation+3
3110 years ago
PQC-Scanner preview

PQC-Scanner

GitHubcyberjez/pqc-scanner

The PQC Network Scanner is a quantum‑focused network assessment tool that scans TLS/SSL certificates across enterprise environments to identify…

cloud-securitycryptographynetwork-security+2
187 months ago
Icedid-file-decryptor preview

Icedid-file-decryptor

GitHubembee-research/icedid-file-decryptor

Static Decryptor for IcedID Malware

binary-analysiscryptographymalware-analysis+2
183 years ago
stegcrack preview

stegcrack

GitHubb4shfire/stegcrack

Exploit script for CVE-2021-27211

binary-analysiscryptographyexploitation+3
64 years ago
cve-2020-0601-plugin preview

cve-2020-0601-plugin

GitHub0xxon/cve-2020-0601-plugin

Zeek package that uses OpenSSL to detect CVE-2020-0601 exploit attempts

cryptographyexploitationintrusion-detection+3
56 years ago
copy-fail-checker preview

copy-fail-checker

GitHubsamanzamani/copy-fail-checker

Read-only Bash checker for the Copy Fail Linux kernel vulnerability (CVE-2026-31431)

cryptographyeducationexploitation+4
53 months ago
CVE-2020-0601 preview

CVE-2020-0601

GitHubyoanndqr/cve-2020-0601

CurveBall CVE exploitation

code-analysiscryptographyexploitation+3
26 years ago
Heartbleed-PoC-Exploit-Script preview

Heartbleed-PoC-Exploit-Script

GitHubindrajeetmp11/heartbleed-poc-exploit-script

This Python PoC script detects the Heartbleed vulnerability (CVE-2014-0160) by performing a TLS handshake with heartbeat extension and sending a…

cryptographyeducationexploitation+3
29 months ago
Feb2023-CVE-2021-21974-OSINT preview

Feb2023-CVE-2021-21974-OSINT

GitHubn2x4/feb2023-cve-2021-21974-osint

Analysis of the ransom demands from Shodan results

cryptographyinformation-gatheringosint+3
23 years ago
Infineon-CVE-2017-15361 preview

Infineon-CVE-2017-15361

GitHublva/infineon-cve-2017-15361

Simple PowerShell script to check whether a computer is using an Infineon TPM chip that is vulnerable to CVE-2017-15361.

cryptographyencryption-decryption-toolshardware-iot-security+3
28 years ago
FreakVulnChecker preview

FreakVulnChecker

GitHubfelmoltor/freakvulnchecker

This script check if your list of server is accepting Export cipher suites and could be vulnerable to CVE-2015-0204

cryptographynetwork-securitypenetration-testing+1
211 years ago
Previous12Next