Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
109 results
DHEater preview

DHEater

GitLabdheatattack/dheater

Proof-of-concept denial-of-service tool that enforces Diffie-Hellman ephemeral key exchange over TLS and SSH to saturate server CPU, implementing…

cryptographyexploitationnetwork-security+3
29 days ago
dheater preview

dheater

GitHubc0r0n3r/dheater

Proof-of-concept denial-of-service tool that exploits the DHEat attack (CVE-2002-20001) by enforcing Diffie-Hellman key exchange against TLS and SSH…

cryptographyexploitationnetwork-security+1
21929 days ago
driftwood preview
Archived

driftwood

GitHubtrufflesecurity/driftwood

Private key usage verification

cryptographyencryption-decryption-toolspassword-cracking+2
4361 year ago
TERM1B1TB0T preview

TERM1B1TB0T

GitHubmykethearchangel/term1b1tb0t

A terminal based tool that monitors real-time Bitcoin transactions above or below a specified threshold.

cryptographygeneral-purpose-utilitiesinformation-gathering+2
129 months ago
AperiSolve preview

AperiSolve

GitHubzeecka/aperisolve

Automated steganalysis platform that detects hidden data in images using 16 parallel analyzers, bit-layer visualization, and an in-app wiki for CTF…

cryptographyctfeducation+2
8419 days ago
filekey preview

filekey

GitHubrockwellshah/filekey

Offline, open-source web app for passkey-based file encryption and sharing. AES-256-GCM/HPKE, no cloud, no accounts; encrypt to recipients with…

authenticationcryptographydata-recovery+2
48413 days ago
OWASP-WSTG-Rag preview

OWASP-WSTG-Rag

GitHubzilbonn/owasp-wstg-rag

OWASP Web Security Testing Guide RAG system with ChromaDB, MCP for Claude Code

ai-securityapi-security-testingauthentication+8
228 months ago
sshfinder preview

sshfinder

GitHubkabiri-labs/sshfinder

Parallel SSH service discovery and security auditor that scans any port, validates SSH banners, and audits authentication methods, weak cryptography,…

cryptographyinformation-gatheringnetwork-security+5
31 month ago
WAF_buster preview

WAF_buster

GitHubviperbluff/waf_buster

Disrupt WAF by abusing SSL/TLS Ciphers

cryptographypenetration-testingwaf-bypass+1
487 years ago
CTFs preview

CTFs

GitHubadamkadaban/ctfs

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

binary-exploitationcryptographyctf+9
8519 months ago
replica preview

replica

GitHubreb311ion/replica

Ghidra plugin that enhances reverse engineering by fixing missed disassembly, detecting functions, labeling crypto constants, and renaming functions…

binary-analysiscryptographymalware-analysis+2
3156 years ago
self-service-password preview

self-service-password

GitHubltb-project/self-service-password

Web interface to change and reset password in an LDAP directory

authenticationcryptographyidentity-access-management+1
1.3k1 day ago
pairing preview

pairing

GitHubnccgroup/pairing

Optimizations for Pairing-Based Cryptography

cryptographyeducationpapers-research
174 years ago
bitcoin preview

bitcoin

GitHubbitcoin/bitcoin

Full-node Bitcoin client that validates transactions and blocks on the peer-to-peer network, with integrated wallet, cryptographic security, and…

cryptographydigital-forensicsnetwork-security+1
90.1k0 days ago
collision-webshell preview

collision-webshell

GitHubphith0n/collision-webshell

A webshell and a normal file that have the same MD5

cryptographyeducationpayload-development+2
4104 years ago
rocacheck preview

rocacheck

GitHubtitanous/rocacheck

Go package that checks if RSA keys are vulnerable to ROCA / CVE-2017-15361

code-analysiscryptographyencryption-decryption-tools+2
168 years ago
CVE-2026-22016-IPFS-CID-Spoofing-via-Multihash-Length-Extension preview

CVE-2026-22016-IPFS-CID-Spoofing-via-Multihash-Length-Extension

GitHubgeorge0papasotiriou/cve-2026-22016-ipfs-cid-spoofing-via-multihash-length-extension

Python proof-of-concept demonstrating IPFS CID spoofing via multihash length extension, highlighting content-addressing verification flaws that can…

adversarial-attackcryptographyexploitation+3
29 days ago
cve-2020-0601_poc preview

cve-2020-0601_poc

GitHubgremwell/cve-2020-0601_poc

Proof-of-concept exploit for CVE-2020-0601 (Windows CryptoAPI spoofing) that generates rogue CA certificates to intercept HTTPS traffic, with…

cryptographyeducationexploitation+2
26 years ago
Previous1234567Next