Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
63 results
INT14107_CVE-2021-35042 preview

INT14107_CVE-2021-35042

GitHubvutiendat323/int14107_cve-2021-35042

Django-based CTF blog platform with integrated CVE-2021-35042 exploit tool for learning web application security and vulnerability exploitation.

ctfeducationexploitation+3
4 months ago
linux-smart-enumeration preview

linux-smart-enumeration

GitHubdiego-treitos/linux-smart-enumeration

Linux enumeration tool for pentesting and CTFs with verbosity levels

ctfinformation-gatheringpenetration-testing+2
4.0k4 months ago
crypto_identifier preview

crypto_identifier

GitHubacceis/crypto_identifier

Crypto tool for pentest and ctf : try to uncipher data using multiple algorithms and block chaining modes. Usefull for a quick check on unknown…

cryptographyctfencryption-decryption-tools+1
1278 years ago
CVE-2025-29775 preview

CVE-2025-29775

GitHubethicalpap/cve-2025-29775

Educational lab environment demonstrating SAMLStorm (CVE-2025-29775) vulnerability in xml-crypto library. Includes vulnerable SAML service provider,…

ctfeducationlabs-practice+3
11 year ago
lure preview

lure

GitHub0xusmanismail/lure

Local Linux binary analysis tool. Zero cloud. Zero root. See exactly what a binary does before you run it.

binary-analysisctfdynamic-analysis-sandboxing+4
27 days ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubcarlosaruy/cve-2025-55182

a critical Remote Code Execution (RCE) vulnerability in React Server Components (RSC). It also includes a realistic "Lab Environment" to safely test…

ctfeducationexploitation+6
9 months ago
autoblue preview

autoblue

GitHubatithkhawas/autoblue

AutoBlue - Automated EternalBlue (CVE-2017-0144 / MS17-010) exploitation tool leveraging Nmap and Metasploit for ethical hacking, penetration…

ctfeducationexploitation+5
41 year ago
jwtXploiter preview

jwtXploiter

GitHubdontpanico/jwtxploiter

Automated JWT security testing tool that exploits known CVEs, tampers with payloads, performs JKU/X5U injection, key confusion attacks, and verifies…

ctfexploitationpenetration-testing+2
2905 years ago
binwalk preview

binwalk

GitHubrefirmlabs/binwalk

Firmware Analysis Tool

binary-analysisctfdata-recovery+8
14.3k25 days ago
pwninit preview

pwninit

GitHubio12/pwninit

Automates setup of binary exploitation challenges by patching ELF binaries, fetching matching linkers, unstripping libc, and generating pwntools…

binary-exploitationctfexploitation+2
1.1k1 month ago
CVE-2025-8110 preview

CVE-2025-8110

GitHubixzodiak/cve-2025-8110

Gogs service Exploit and get the root user

ctfeducationexploitation+4
1 month ago
CVE-2025-8110-Silentium-HTB preview

CVE-2025-8110-Silentium-HTB

GitHubhassan-hamadi/cve-2025-8110-silentium-htb

CVE-2025-8110 Specifically for the Silentium box on HTB.

ctfeducationexploitation+3
4 months ago
ctf-party preview

ctf-party

GitHubnoraj/ctf-party

:triangular_flag_on_post: A CLI tool & library to enhance and speed up script/exploit writing with string conversion/manipulation.

ctfscripting-automationutilities-frameworks
907 days ago
DataSurgeon preview

DataSurgeon

GitHubdrew-alleman/datasurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

ctfdata-exfiltrationforensics+6
9042 years ago
mutillidae preview

mutillidae

GitHubwebpwnized/mutillidae

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an…

ctfeducationlabs-practice+3
1.5k2 months ago
AutoRecon preview

AutoRecon

GitHubautorecon/autorecon

Multi-threaded network reconnaissance tool that automates service enumeration, port scanning, and information gathering for penetration testing and…

ctfinformation-gatheringnetwork-mapping+3
6.1k9 months ago
CVE-2025-33073 preview

CVE-2025-33073

GitHubuziii2208/cve-2025-33073

Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.

ctfexploitationexploit-frameworks+4
679 months ago
DynastyPersist preview

DynastyPersist

GitHubtrevohack/dynastypersist

Linux persistence toolkit with 11 modules for SSH key backdoors, cronjobs, systemd services, LKM rootkits, and LD_PRELOAD privilege escalation.…

ctfpenetration-testingpersistence-mechanisms+3
16211 months ago
Previous1234Next