Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
38 results
ufonet preview

ufonet

GitHubepsylon/ufonet

UFONet - Denial of Service Toolkit

command-and-controlcryptographyexploitation+6
2.5k9 days ago
OpenSC preview

OpenSC

GitHubopensc/opensc

Open source smart card tools and middleware. PKCS#11/MiniDriver

authenticationcryptographyencryption-decryption-tools+2
3.1k4 days ago
purrcrypt preview

purrcrypt

GitHubvxfemboy/purrcrypt

A fur-ociously secure encryption tool that encodes your secrets as adorable cat and dog sounds, using real elliptic curve cryptography with a playful…

command-and-controlcryptographyencryption-decryption-tools+2
6272 months ago
CovenantDecryptor preview

CovenantDecryptor

GitHubnaacbin/covenantdecryptor

Decrypts Covenant C2 communications by extracting RSA private keys from minidumps, recovering AES session keys, and converting network captures to…

command-and-controlcryptographydigital-forensics+4
372 years ago
mcp-server-attestation preview

mcp-server-attestation

GitHubstudiomeyer-io/mcp-server-attestation

Layer-2 supply-chain hardening for MCP servers — Ed25519-signed tool manifests, runtime spawn-attestation, default-deny argument sanitizer. Defends…

code-analysiscommand-and-controlcryptography+3
6 days ago
MALW preview

MALW

GitHubooscaar/malw

CVE-2007-4559 - Polemarch exploit

command-and-controlcryptographyexploitation+3
3 years ago
openshield preview

openshield

GitHubowasp/openshield

Open source CSPM for Azure - scan for misconfigurations and quantum-unsafe cryptography, map findings to CIS/NIST/ISO27001/SOC2, and fix them with…

cloud-securityconfiguration-auditingcryptography+4
585 days ago
CVE-2025-15467 preview

CVE-2025-15467

GitHubguiimoraes/cve-2025-15467

Command Execution PoC for OpenSSL Stack buffer overflow CVE-2025-15467

binary-exploitationcryptographyeducation+5
157 months ago
Matroschka preview

Matroschka

GitHubfbngrm/matroschka

Python steganography tool to hide images or text in images

cryptographyencryption-decryption-toolssteganography
4366 years ago
cookiemonster preview

cookiemonster

GitHubiangcarroll/cookiemonster

Decodes and unsigns vulnerable session cookies from Django, Flask, Laravel, Express, and JWT frameworks. Supports HMAC-based decoders, base64…

cryptographypenetration-testingvulnerability-analysis+1
9961 year ago
pivit preview

pivit

GitHubcashapp/pivit

Manage x509 certificates on PIV-enabled YubiKeys, generate keys and certificate requests, and sign or verify git commits and files.

authenticationcryptographyhardware-security
1003 months ago
intentshield preview

intentshield

GitHubmattijsmoens/intentshield

Pre-execution intent verification for AI agents. Audits what your AI is about to do, not what it says. Zero dependencies, deterministic, hash-sealed.

ai-securityanomaly-detectioncode-analysis+9
211 month ago
Loki preview

Loki

GitHubbitwise-01/loki

Remote Access Tool

command-and-controlcryptographyeducation+4
6284 years ago
zoshrinkC2 preview

zoshrinkC2

GitHubdemon-i386/zoshrinkc2

DNS over HTTPS targeted malware (only runs once)

command-and-controlcryptographyids-ips-evasion+3
963 years ago
Pulsar preview

Pulsar

GitHubjacopodl/pulsar

Data exfiltration and covert communication tool

command-and-controlcryptographydata-exfiltration+2
403 years ago
BlackBerryC2 preview

BlackBerryC2

GitHubdereeqw/blackberryc2

Encrypted command‑and‑control (C2) research framework for cybersecurity education, red team labs, and secure client‑server communication experiments.

command-and-controlcryptographyeducation+7
326 months ago
RedTeamCoin preview

RedTeamCoin

GitHubxyplex3/redteamcoin

Red Team Coin for crypto-mining operations.

command-and-controlcryptographyexploitation+3
267 months ago
BitLock-Crypto-Research preview

BitLock-Crypto-Research

GitHubdereeqw/bitlock-crypto-research

Framework de investigación sobre criptovirología avanzada. Implementación de Handshake ECDHE, cifrado autenticado AES-GCM y ejecución fileless en…

command-and-controlcryptographyeducation+6
47 months ago
Previous123Next