Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
216 results
dismember preview

dismember

GitHubliamg/dismember

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

ctfforensicsinformation-gathering+2
675
4 years ago
htb-facts preview

htb-facts

GitHubmattiapertusati/htb-facts

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc

cloud-securityctfeducation+7
5 months ago
awesome-hacking preview

awesome-hacking

GitHubcarpedm20/awesome-hacking

A curated list of awesome Hacking tutorials, tools and resources

cryptographyctfcurated-resources+6
17.1k2 years ago
digital-forensics-lab preview

digital-forensics-lab

GitHubfrankwxu/digital-forensics-lab

Free hands-on digital forensics labs for students and faculty

ai-securityctfdigital-forensics+9
3.0k3 days ago
cloudgoat preview

cloudgoat

GitHubrhinosecuritylabs/cloudgoat

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

cloud-securityctfeducation+5
3.7k6 months ago
exploitgym preview

exploitgym

GitHubsunblaze-ucb/exploitgym

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

ai-securitybinary-exploitationctf+9
1.1k1 month ago
CVE-2022-29582-Exploit preview

CVE-2022-29582-Exploit

GitHubruia-ruia/cve-2022-29582-exploit

Exploit for CVE-2022-29582 targeting Google's Kernel CTF

binary-exploitationctfexploitation+2
764 years ago
CVE-2023-4427 preview

CVE-2023-4427

GitHubtianstcht/cve-2023-4427

Exploit for CVE-2023-4427 targeting Chrome 117 V8, using many cross-origin iframes to brute-force ASLR and achieve code execution. Provides…

binary-exploitationctfeducation+3
282 years ago
CVE-2026-4480-PoC preview

CVE-2026-4480-PoC

GitHubthecybergeek/cve-2026-4480-poc

Proof-of-concept exploit for CVE-2026-4480, an unauthenticated remote command execution in Samba's print subsystem via %J injection. Includes reverse…

ctfeducationexploitation+3
223 months ago
CVE-2026-31635 preview

CVE-2026-31635

GitHub0xblackash/cve-2026-31635

CVE-2026-31635

binary-exploitationctfeducation+2
94 months ago
CVE-2015-1328-GoldenEye preview

CVE-2015-1328-GoldenEye

GitHubelit3pwner/cve-2015-1328-goldeneye

Automated local privilege escalation exploit for CVE-2015-1328 targeting Ubuntu overlayfs, designed for CTF environments with a simple bash…

ctfexploitationpenetration-testing+2
101 year ago
CyberSecurity-Pentest-Lab preview

CyberSecurity-Pentest-Lab

GitHubgermarr93/cybersecurity-pentest-lab

CVE-2004-2687 (Distcc 3.2.1) exploitation, methodology & remediation — Metasploitable2 lab

ctfeducationexploitation+6
9 days ago
cve-2026-42945-nginx32-lab preview

cve-2026-42945-nginx32-lab

GitHubdinosn/cve-2026-42945-nginx32-lab

CVE-2026-42945 nginx 32-bit exploit lab ASLR enabled

binary-exploitationctfeducation+5
34 months ago
CVE-2026-43494 preview

CVE-2026-43494

GitHub0xblackash/cve-2026-43494

CVE-2026-43494

binary-exploitationctfeducation+3
24 months ago
Linux-Kernel-Dirty-Pipe-Exploitation-Logic-Bug- preview

Linux-Kernel-Dirty-Pipe-Exploitation-Logic-Bug-

GitHubbluedragonsecurity/linux-kernel-dirty-pipe-exploitation-logic-bug-

Exploiting CVE-2022-0847 - written by : Antonius (w1sdom)

binary-exploitationcode-analysisctf+5
37 months ago
devarea preview

devarea

GitHubledksv/devarea

HackTheBox DevArea walkthrough chaining CVE-2022-46364 Apache CXF SSRF, CVE-2025-54123 Hoverfly RCE, and SUID bash hijacking for root escalation.

ctfeducationexploitation+6
2 months ago
bx2-writeups preview

bx2-writeups

GitHubnanashibx2/bx2-writeups

Cybersecurity writeups, walkthroughs, and technical notes by Nanashi Bx2.

ai-securityctfcurated-resources+4
1 month ago
CVE-2026-42945_NginxRift preview

CVE-2026-42945_NginxRift

GitHubkentox493/cve-2026-42945_nginxrift

Automates CVE-2026-42945 exploitation in NGINX containers: verifies vulnerable targets, brute-forces heap offsets, executes commands, and opens an…

binary-exploitationcontainer-securityctf+5
11 month ago
Previous1…345…12Next