Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
159 results
CryptoLyzer preview

CryptoLyzer

GitLabcoroner/cryptolyzer

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…

configuration-auditingcryptographydns-analysis+3
28
18h 9m ago
testssl.sh preview

testssl.sh

GitHubtestssl/testssl.sh

Testing TLS/SSL encryption anywhere on any port

cryptographynetwork-securitypenetration-testing+2
9.2k5 days ago
hello-ReGrade-security preview

hello-ReGrade-security

GitHubcurtail-inc/hello-regrade-security

Find the vulnerability your tests were never written to catch. A ReGrade demo modeling CVE-2023-5968: catch a password-hash leak by comparing an app…

api-security-testingcryptographydynamic-analysis-sandboxing+6
7 days ago
awesome-web-hacking preview

awesome-web-hacking

GitHubinfoslack/awesome-web-hacking

A list of web application security

cryptographyctfcurated-resources+6
7.2k7 days ago
attestos preview

attestos

GitHubplunder707/attestos

Bazzite plus a TPM boot attestation layer. Work in progress: builds unverified, UKI mechanism unresolved. Spec: github.com/plunder707/attested-gaming

authenticationcryptographydefensive-tools+2
113 days ago
meshtastic-cve-2025-52464-poc preview

meshtastic-cve-2025-52464-poc

GitHubmsdmehdipour/meshtastic-cve-2025-52464-poc

Software-only proof of concept for CVE-2025-52464 in Meshtastic Direct Messages

cryptographyeducationembedded-systems-security+4
114 days ago
CVE-2026-23006-Kyber-Ciphertext-Length-Side-Channel preview

CVE-2026-23006-Kyber-Ciphertext-Length-Side-Channel

GitHubgeorge0papasotiriou/cve-2026-23006-kyber-ciphertext-length-side-channel
cryptographyexploitationvulnerability-analysis
15 days ago
DHEater preview

DHEater

GitLabdheatattack/dheater

D(HE)ater is a proof of concept implementation of the D(HE)at attack (CVE-2002-20001) through which denial-of-service can be performed by enforcing…

cryptographyexploitationnetwork-security+3
16 days ago
dheater preview

dheater

GitHubc0r0n3r/dheater

Proof-of-concept denial-of-service tool that exploits the DHEat attack (CVE-2002-20001) by enforcing Diffie-Hellman key exchange against TLS and SSH…

cryptographyexploitationnetwork-security+1
21816 days ago
CVE-2026-22020-Weak-Seed-in-Quantum-Key-Distribution-Error-Correction preview

CVE-2026-22020-Weak-Seed-in-Quantum-Key-Distribution-Error-Correction

GitHubgeorge0papasotiriou/cve-2026-22020-weak-seed-in-quantum-key-distribution-error-correction
adversarial-attackcryptographyexploitation+1
16 days ago
TLS-Scanner preview

TLS-Scanner

GitHubtls-attacker/tls-scanner

Automated TLS server and client configuration scanner for pentesters and researchers. Evaluates cipher suites, protocol versions, and security…

cryptographynetwork-securitypenetration-testing+1
28416 days ago
CVE-2026-22001-SPHINCS-WOTS-Weak-Randomness-Forgeable-Signature preview

CVE-2026-22001-SPHINCS-WOTS-Weak-Randomness-Forgeable-Signature

GitHubgeorge0papasotiriou/cve-2026-22001-sphincs-wots-weak-randomness-forgeable-signature
cryptographyexploitationvulnerability-analysis
16 days ago
CVE-2026-8080-DKIM-Signature-Verification-Bypass-Header-Canonicalization-Flaw- preview

CVE-2026-8080-DKIM-Signature-Verification-Bypass-Header-Canonicalization-Flaw-

GitHubgeorge0papasotiriou/cve-2026-8080-dkim-signature-verification-bypass-header-canonicalization-flaw-
cryptographyemail-securityexploitation+1
18 days ago
CVE-2026-4567-Post-Quantum-KEM-Timing-Side-Channel-Kyber-Decapsulation- preview

CVE-2026-4567-Post-Quantum-KEM-Timing-Side-Channel-Kyber-Decapsulation-

GitHubgeorge0papasotiriou/cve-2026-4567-post-quantum-kem-timing-side-channel-kyber-decapsulation-
cryptographyexploitationvulnerability-analysis
18 days ago
sshfinder preview

sshfinder

GitHubkabiri-labs/sshfinder

Parallel SSH service discovery and security auditor that scans any port, validates SSH banners, and audits authentication methods, weak cryptography,…

cryptographyinformation-gatheringnetwork-security+5
321 days ago
CVE-2023-3350 preview

CVE-2023-3350

GitHubitres-labs/cve-2023-3350

Exploit for cryptographic Issue vulnerability on IBERMATICA RPS [CVE-2023-3350]

cryptographyeducationexploitation+6
23 days ago
O-Saft preview

O-Saft

GitHubowasp/o-saft

O-Saft - OWASP SSL advanced forensic tool

cryptographynetwork-securitypenetration-testing+1
38524 days ago
TLS-Attacker preview

TLS-Attacker

GitHubtls-attacker/tls-attacker

Java-based framework for systematic fuzzing and analysis of TLS libraries. Enables arbitrary protocol message crafting, modification, and testing of…

cryptographyfuzzingnetwork-security+2
87927 days ago
Previous12…9Next