Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
72 results
ML-for-RNGs preview

ML-for-RNGs

GitHubnccgroup/ml-for-rngs

Demonstrates using machine learning to predict random number generator sequences, highlighting cryptographic weaknesses through adversarial analysis.

adversarial-attackai-securitycryptography+3
44
4 years ago
CVE-2026-22016-IPFS-CID-Spoofing-via-Multihash-Length-Extension preview

CVE-2026-22016-IPFS-CID-Spoofing-via-Multihash-Length-Extension

GitHubgeorge0papasotiriou/cve-2026-22016-ipfs-cid-spoofing-via-multihash-length-extension

Python proof-of-concept demonstrating IPFS CID spoofing via multihash length extension, highlighting content-addressing verification flaws that can…

adversarial-attackcryptographyexploitation+3
1 month ago
CVE-2026-22020-Weak-Seed-in-Quantum-Key-Distribution-Error-Correction preview

CVE-2026-22020-Weak-Seed-in-Quantum-Key-Distribution-Error-Correction

GitHubgeorge0papasotiriou/cve-2026-22020-weak-seed-in-quantum-key-distribution-error-correction

Python PoC demonstrating CVE-2026-22020: exploitable weak seed in quantum key distribution privacy amplification, reducing final key entropy.

adversarial-attackcryptographyexploitation+1
1 month ago
CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth- preview

CVE-2026-11109-Bluetooth-Classic-KNOB-Attack-Key-Negotiation-of-Bluetooth-

GitHubgeorge0papasotiriou/cve-2026-11109-bluetooth-classic-knob-attack-key-negotiation-of-bluetooth-

Python simulation of the Bluetooth Classic KNOB attack, showing encryption key-size downgrade and brute-force decryption of intercepted Bluetooth…

bluetooth-securitycryptographyeducation+3
1 month ago
dsa preview

dsa

GitHubalexmullins/dsa

Analysis of CVE-2016-3959 and a Proof of Concept Attack Against a Go SSH Server.

cryptographyeducationexploitation+2
110 years ago
BEAST-PoC preview

BEAST-PoC

GitHubmpgn/beast-poc

:muscle: Proof Of Concept of the BEAST attack against SSL/TLS CVE-2011-3389 :muscle:

cryptographyeducationexploitation+3
807 years ago
rollback_car_attack_proverif preview

rollback_car_attack_proverif

GitHubthomasarmel/rollback_car_attack_proverif

ProVerif proof of concept of the Rollback attack on car keyfob (CVE-2022-37418, CVE-2022-36945 and CVE-2022-37305)

cryptographyeducationexploitation+2
101 year ago
craw preview

craw

GitHubdavidc1212/craw

Robust audio watermarking framework embedding binary messages into magnitude spectrograms, with differentiable attack simulation, Q-Former pooling,…

cryptographymachine-learningpapers-research+1
519 days ago
CVE-2025-68621 preview

CVE-2025-68621

GitHubsivaadityacoder/cve-2025-68621

Educational PoC and analysis of CVE-2025-68621, a timing attack on Trilium Notes sync login. Demonstrates HMAC hash recovery via network timing…

cryptographyeducationexploitation+3
5 months ago
dheater preview

dheater

GitHubc0r0n3r/dheater

Proof-of-concept denial-of-service tool that exploits the DHEat attack (CVE-2002-20001) by enforcing Diffie-Hellman key exchange against TLS and SSH…

cryptographyexploitationnetwork-security+1
2201 month ago
poodle-PoC preview

poodle-PoC

GitHubmpgn/poodle-poc

:poodle: Poodle (Padding Oracle On Downgraded Legacy Encryption) attack CVE-2014-3566 :poodle:

cryptographyeducationencryption-decryption-tools+4
2673 years ago
power_analysis preview

power_analysis

GitHublord-feistel/power_analysis

Proof-of-concept demonstrating a power analysis side-channel attack against a vulnerable RSA implementation on Arduino (Atmega328P), with detailed…

cryptographyeducationembedded-systems-security+2
322 years ago
Digital-Signature-Forgery-Attack preview

Digital-Signature-Forgery-Attack

GitHubdemining/digital-signature-forgery-attack

How CVE-2025-29774 Vulnerabilities and the SIGHASH_SINGLE Bug Threaten Multi-Signature Wallet Operational Methods with Fake RawTX

cryptographyctfcurated-resources+3
41 year ago
DHEater preview

DHEater

GitLabdheatattack/dheater

Proof-of-concept denial-of-service tool that enforces Diffie-Hellman ephemeral key exchange over TLS and SSH to saturate server CPU, implementing…

cryptographyexploitationnetwork-security+3
1 month ago
hashcat preview

hashcat

GitHubhashcat/hashcat

World's fastest and most advanced password recovery utility

cryptographyencryption-decryption-toolshash-analysis+2
26.9k11h 19m ago
RsaCtfTool preview

RsaCtfTool

GitHubrsactftool/rsactftool

RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data

cryptographyctfeducation+3
7.1k1 day ago
miLazyCracker preview

miLazyCracker

GitHubnfc-tools/milazycracker

Mifare Classic Plus - Hardnested Attack Implementation for SCL3711 LibNFC USB reader

cryptographyexploitationhardware-hacking+2
3695 years ago
Phoenix-Rowhammer-Attack-CVE-2025-6202 preview

Phoenix-Rowhammer-Attack-CVE-2025-6202

GitHubdemining/phoenix-rowhammer-attack-cve-2025-6202

Phoenix Rowhammer Attack: Systemic Risk of Bitcoin Wallet Private Key Compromise in Global Blockchain Infrastructure Due to a Critical SK Hynix DDR5…

binary-analysiscryptographyexploitation+2
511 months ago
Previous1234Next