Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17 results
cipherscan preview

cipherscan

GitHubmozilla/cipherscan

A very simple way to find out which SSL ciphersuites are supported by a target.

configuration-auditingcryptographynetwork-security+1
2.0k1 year ago
ssl-certificate-expiry-date-checker preview

ssl-certificate-expiry-date-checker

GitHubpassword123456/ssl-certificate-expiry-date-checker

Scans SSL/TLS certificates for expiry dates, issuer details, and OCSP status. Sends notifications via webhook, Telegram, or Slack. Supports proxy per…

configuration-auditingcryptographylog-analysis+2
123 years ago
openhaystack preview

openhaystack

GitHubseemoo-lab/openhaystack

Build your own 'AirTags' 🏷 today! Framework for tracking personal Bluetooth devices via Apple's massive Find My network.

bluetooth-securitycryptographyeducation+5
13.7k1 month ago
OSINT-SPY preview

OSINT-SPY

GitHubsharadkumar97/osint-spy

Performs OSINT scan on email/domain/ip_address/organization using OSINT-SPY. It can be used by Data Miners, Infosec Researchers, Penetration Testers…

cryptographydns-subdomain-enumerationemail-harvesting+5
1.6k6 years ago
aes-finder preview

aes-finder

GitHubmmozeiko/aes-finder

Utility to find AES keys in running processes

binary-analysiscryptographyencryption-decryption-tools+2
1.1k9 years ago
badkeys preview

badkeys

GitHubbadkeys/badkeys

Tool to find common vulnerabilities in cryptographic public keys

cryptographyencryption-decryption-toolshash-analysis+3
37711h 30m ago
bruteforce-wallet preview

bruteforce-wallet

GitHubglv2/bruteforce-wallet

Try to find the password of an encrypted Peercoin (or Bitcoin, Litecoin, etc...) wallet file.

cryptographyencryption-decryption-toolspassword-cracking
4322 years ago
hello-ReGrade-security preview

hello-ReGrade-security

GitHubcurtail-inc/hello-regrade-security

Find the vulnerability your tests were never written to catch. A ReGrade demo modeling CVE-2023-5968: catch a password-hash leak by comparing an app…

api-security-testingcryptographydynamic-analysis-sandboxing+6
1 month ago
OpenPetya preview

OpenPetya

GitHubiss4cf0ng/openpetya

A Proof-of-Concept bootkit and UEFI boot application inspired by Petya ransomware, written in Assembly, C, and C++

binary-exploitationcryptographyeducation+4
27717 days ago
CipherGist preview

CipherGist

GitHubspyboy-productions/ciphergist

End-to-End Encrypted Messaging via GitHub Gists

cryptographyencryption-decryption-toolsprivacy+1
401 year ago
CrabCrypt preview

CrabCrypt

GitHubspyboy-productions/crabcrypt

AES-256-GCM file encryption tool with a Tkinter GUI, supporting PBKDF2 and Argon2 key derivation for secure, offline file protection.

cryptographyencryption-decryption-tools
281 year ago
shaha preview

shaha

GitHuboritwoen/shaha

Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more

cryptographyctfdata-recovery+5
56 months ago
sshfinder preview

sshfinder

GitHubkabiri-labs/sshfinder

Parallel SSH service discovery and security auditor that scans any port, validates SSH banners, and audits authentication methods, weak cryptography,…

cryptographyinformation-gatheringnetwork-security+5
32 months ago
cryptoptic preview

cryptoptic

GitHubnationwide-group-oss/cryptoptic

CodeQL-based scanner that inventories cryptographic function calls across repositories and GitHub organizations, producing a Cryptographic Bill of…

code-analysisconfiguration-auditingcryptography+6
6 days ago
CVE-2025-23134_fixes_code preview

CVE-2025-23134_fixes_code

GitHubthrilokh-q123/cve-2025-23134_fixes_code

The ASN1_STRING_set() function takes an `int` length, make sure the argument is not inadvertently truncated when it is called from asn1_ex_c2i().

code-analysiscryptographydefensive-tools+2
18 days ago
fang preview

fang

GitHubevilsocket/fang

A multi service threaded MD5 cracker

cryptographygeneral-purpose-utilitieshash-analysis+1
6810 years ago
CVE-2022-21449 preview

CVE-2022-21449

GitHubalexanderzinoni/cve-2022-21449

Educational Python project implementing elliptic curve cryptography (ECDSA, ECIES) and simulating exploitation of CVE-2022-21449, with visualizations…

cryptographyeducationexploitation+2
2 years ago