Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
72 results
hashcat preview

hashcat

GitHubhashcat/hashcat

World's fastest and most advanced password recovery utility

cryptographyencryption-decryption-toolshash-analysis+2
26.9k21h 8m ago
CVE-2026-92680 preview

CVE-2026-92680

GitHubgrepstrength/cve-2026-92680

Proof-of-concept decrypting Araxis Merge's DPAPI-protected server credentials (CVE-2026-92680), demonstrating insufficiently protected credential…

cryptographyexploitationpassword-cracking+1
11 day ago
RsaCtfTool preview

RsaCtfTool

GitHubrsactftool/rsactftool

RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data

cryptographyctfeducation+3
7.1k1 day ago
SHA256-CDP preview

SHA256-CDP

GitHubjm00nj/sha256-cdp

GPU-accelerated SHA-256 rainbow table implementation based on CDP (Cyclic Digit-sum Projection) structural analysis. AMD RX 9070 XT, OpenCL + Vulkan.

cryptographyhash-analysispassword-cracking
1114 days ago
craw preview

craw

GitHubdavidc1212/craw

Robust audio watermarking framework embedding binary messages into magnitude spectrograms, with differentiable attack simulation, Q-Former pooling,…

cryptographymachine-learningpapers-research+1
519 days ago
hashes preview

hashes

GitHubrustcrypto/hashes

Collection of cryptographic hash functions written in pure Rust

cryptographyhash-analysisutilities-frameworks
2.3k23 days ago
Pyrit preview

Pyrit

GitHubjpaulmora/pyrit

The famous WPA precomputed cracker, Migrated from Google.

cryptographypassword-crackingwi-fi-auditing+1
1.1k24 days ago
DHEater preview

DHEater

GitLabdheatattack/dheater

Proof-of-concept denial-of-service tool that enforces Diffie-Hellman ephemeral key exchange over TLS and SSH to saturate server CPU, implementing…

cryptographyexploitationnetwork-security+3
1 month ago
dheater preview

dheater

GitHubc0r0n3r/dheater

Proof-of-concept denial-of-service tool that exploits the DHEat attack (CVE-2002-20001) by enforcing Diffie-Hellman key exchange against TLS and SSH…

cryptographyexploitationnetwork-security+1
2201 month ago
CVE-2026-22020-Weak-Seed-in-Quantum-Key-Distribution-Error-Correction preview

CVE-2026-22020-Weak-Seed-in-Quantum-Key-Distribution-Error-Correction

GitHubgeorge0papasotiriou/cve-2026-22020-weak-seed-in-quantum-key-distribution-error-correction

Python PoC demonstrating CVE-2026-22020: exploitable weak seed in quantum key distribution privacy amplification, reducing final key entropy.

adversarial-attackcryptographyexploitation+1
1 month ago
CVE-2026-22016-IPFS-CID-Spoofing-via-Multihash-Length-Extension preview

CVE-2026-22016-IPFS-CID-Spoofing-via-Multihash-Length-Extension

GitHubgeorge0papasotiriou/cve-2026-22016-ipfs-cid-spoofing-via-multihash-length-extension

Python proof-of-concept demonstrating IPFS CID spoofing via multihash length extension, highlighting content-addressing verification flaws that can…

adversarial-attackcryptographyexploitation+3
1 month ago
CVE-2026-11119-Padding-Oracle-Attack-on-CBC-Mode-Encryption preview

CVE-2026-11119-Padding-Oracle-Attack-on-CBC-Mode-Encryption

GitHubgeorge0papasotiriou/cve-2026-11119-padding-oracle-attack-on-cbc-mode-encryption

Demonstrates a padding oracle attack against AES-CBC encryption using a vulnerable Flask decrypt endpoint and a Python exploit script to decrypt…

cryptographyeducationexploitation+3
1 month ago
CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth- preview

CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth-

GitHubgeorge0papasotiriou/cve-2026-11109-bluetooth-classic-knob-attack-key-negotiation-of-bluetooth-

Python simulation of the Bluetooth Classic KNOB attack, showing encryption key-size downgrade and brute-force decryption of intercepted Bluetooth…

bluetooth-securitycryptographyeducation+3
1 month ago
CVE-2026-4567-Post-Quantum-KEM-Timing-Side-Channel-Kyber-Decapsulation- preview

CVE-2026-4567-Post-Quantum-KEM-Timing-Side-Channel-Kyber-Decapsulation-

GitHubgeorge0papasotiriou/cve-2026-4567-post-quantum-kem-timing-side-channel-kyber-decapsulation-

Demonstrates a timing side-channel in Kyber KEM decapsulation using a vulnerable C server and Python attack script, measuring ciphertext rejection…

cryptographyexploitationvulnerability-analysis
1 month ago
assless-chaps preview

assless-chaps

GitHubsensepost/assless-chaps

Crack MSCHAPv2 challenge/responses quickly using a database of NT hashes

cryptographyhash-analysispassword-cracking+2
1422 months ago
bkcrack preview

bkcrack

GitHubkimci86/bkcrack

Crack legacy zip encryption with Biham and Kocher's known plaintext attack.

cryptographyencryption-decryption-toolspassword-cracking+1
2.2k2 months ago
CVE-2025-68621 preview

CVE-2025-68621

GitHubsivaadityacoder/cve-2025-68621

Educational PoC and analysis of CVE-2025-68621, a timing attack on Trilium Notes sync login. Demonstrates HMAC hash recovery via network timing…

cryptographyeducationexploitation+3
5 months ago
Hash-Eye preview

Hash-Eye

GitHubishaklaz/hash-eye

**HashEye** is a powerful Python CLI tool for instantly detecting and analyzing hash types. It provides detailed information about hash formats,…

cryptographyhash-analysispassword-cracking+3
7 months ago
Previous1234Next