Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
527 results
Steganography-Online-Codec-JavaScript preview

Steganography-Online-Codec-JavaScript

GitHubpelock/steganography-online-codec-javascript

Steganographic online codec allows you to hide a password encrypted message within the images & photos using AES encryption algorithm with a 256-bit…

cryptographyencryption-decryption-toolsprivacy+2
34 months ago
private-membership preview

private-membership

GitHubgoogle/private-membership

Cryptographic protocol library enabling privacy-preserving set membership queries where the server learns neither the client's identifier nor the…

cryptographyencryption-decryption-toolsprivacy
6913 days ago
Feb2023-CVE-2021-21974-OSINT preview

Feb2023-CVE-2021-21974-OSINT

GitHubn2x4/feb2023-cve-2021-21974-osint

Analysis of the ransom demands from Shodan results

cryptographyinformation-gatheringosint+3
23 years ago
gpgsm-cve-2026-57062-cms-gcm-short-tag preview

gpgsm-cve-2026-57062-cms-gcm-short-tag

GitHubgoldendivider/gpgsm-cve-2026-57062-cms-gcm-short-tag

Proof-of-concept demonstrating a CMS AES-GCM short-tag authentication bypass in GnuPG's gpgsm (CVE-2026-57062). Forges a message that decrypts on…

cryptographyexploitationpenetration-testing+1
2 days ago
CVE-2025-1234-RSA-Key-Validation-Bypass preview

CVE-2025-1234-RSA-Key-Validation-Bypass

GitHubsimoesctt/cve-2025-1234-rsa-key-validation-bypass

A flaw in a popular RSA implementation allows attackers to bypass key validation by supplying a modulus that appears valid but is actually factorable…

binary-exploitationcryptographyeducation+3
6 months ago
CVE-2026-26012 preview

CVE-2026-26012

GitHubdulieno/cve-2026-26012

Proof-of-concept exploit for CVE-2026-26012, a broken access control in Vaultwarden that allows any organization member to enumerate and decrypt all…

cryptographyeducationexploitation+3
16 months ago
certificate-ripper preview

certificate-ripper

GitHubhakky54/certificate-ripper

🔐 A CLI tool to extract server certificates

cryptographygeneral-purpose-utilitiesinformation-gathering+1
9247 days ago
dheater preview

dheater

GitHubc0r0n3r/dheater

Proof-of-concept denial-of-service tool that exploits the DHEat attack (CVE-2002-20001) by enforcing Diffie-Hellman key exchange against TLS and SSH…

cryptographyexploitationnetwork-security+1
2191 month ago
CVE-2020-12712 preview

CVE-2020-12712

GitHub0xvedette/cve-2020-12712

Decrypts passwords stored in SOS JobScheduler (S)FTP profiles by exploiting the use of the profile name as the 3DES encryption key, enabling recovery…

cryptographyexploitationpassword-attacks+2
6 years ago
Ciphey preview

Ciphey

GitHubbee-san/ciphey

⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡

cryptographyctfeducation+3
21.6k6 days ago
crackle preview

crackle

GitHubmikeryan/crackle

Crack and decrypt BLE encryption

bluetooth-securitycryptographyencryption-decryption-tools+2
9715 years ago
ESPTouchCatcher preview

ESPTouchCatcher

GitHubsalgio/esptouchcatcher

eWeLinkESPT is a tool that automatically decodes and decrypts the WiFi network credentials transmitted to a supported ESP-based IoT device by the…

cryptographyexploitationhardware-iot-security+4
55 years ago
detection-tool-cve-2019-13000 preview

detection-tool-cve-2019-13000

GitHubacinq/detection-tool-cve-2019-13000

A tool that detect if your node has been victim of the invalid funding tx attack.

cryptographyforensicsincident-response+1
6 years ago
WAF_buster preview

WAF_buster

GitHubviperbluff/waf_buster

Disrupt WAF by abusing SSL/TLS Ciphers

cryptographypenetration-testingwaf-bypass+1
487 years ago
Vulnerable-to-Debian-OpenSSL-bug-CVE-2008-0166 preview

Vulnerable-to-Debian-OpenSSL-bug-CVE-2008-0166

GitHubdemining/vulnerable-to-debian-openssl-bug-cve-2008-0166

Search for BTC coins on earlier versions of Bitcoin Core with critical vulnerability OpenSSL 0.9.8 CVE-2008-0166

cryptographycurated-resourceseducation+3
93 years ago
ufonet preview

ufonet

GitHubepsylon/ufonet

UFONet - Denial of Service Toolkit

command-and-controlcryptographyexploitation+6
2.5k3 months ago
PQC-Scanner preview

PQC-Scanner

GitHubcyberjez/pqc-scanner

The PQC Network Scanner is a quantum‑focused network assessment tool that scans TLS/SSL certificates across enterprise environments to identify…

cloud-securitycryptographynetwork-security+2
188 months ago
copy-fail-checker preview

copy-fail-checker

GitHubsamanzamani/copy-fail-checker

Read-only Bash checker for the Copy Fail Linux kernel vulnerability (CVE-2026-31431)

cryptographyeducationexploitation+4
53 months ago
Previous12…30Next